Schedule

Secure System Engineering and Management: A Data-Driven Approach

By Mike Hicks

February 25, 2026

This schedule will flesh out as the semester progresses.

Jump to next class.

DateTopic / SpeakerReadings & handoutsSlidesAssignment
Jan 15Introduction and syllabus
  • S. Keshav. How to Read a Paper. ACM SIGCOMM Computer Communication Review, Volume 37, Number 3, July 2007.
Jan 20Attacks: Vulnerability exploitation
Jan 22Attacks: Exploiting the human Proj 1: Security Breach Communication & Persuasion Video
Due: Feb 9
Jan 27Speaking and writing well (generally, and for security)
Jan 29Cybersecurity economics
Feb 3Cybersecurity as a scientific pursuit
Feb 5Data Analysis: Hypothesis Testing, Effect Sizes, and Regression #1
Feb 10Data Analysis: Hypothesis Testing, Effect Sizes, and Regression #2 Proj 2: Analyzing the Vulnerability Landscape with NVD and CISA KEV Data
Due: Feb 24
Feb 12Measurements of security #1 (vulnerability oriented)
Feb 17Measurements of security #2 (ops and end-user oriented)
Feb 19Security by Design Overview
Feb 24Threat Modeling (up to this point covered on midterm) Proj 3: Threat Modeling a Networked Insulin Pump
Due: Mar 23
Feb 26Secure Design: Principles and Controls #1
Mar 3Midterm in class
Mar 5, 10, 12No class Spring Break
Mar 17Secure Design: Principles and Controls #2
Mar 19Fuzzing
Mar 24Memory safe programming Proj 4: Find and Fix Bugs with Fuzzing **Updated**
Due: Apr 6
Mar 26Code Integrity, Supply Chain Security, Vulnerability Remediation
Mar 31Intrusion Detection & Security Operations
Apr 2Securing IT at Penn
  • Guest lecture by Sam Jenkins, ISC, Penn
Apr 7Cybersecurity for LLMs Proj 5: Network Intrusion Detection with Suricata and Zeek
Due: Apr 20
Apr 9LLMs and attack/defense activities
Apr 14What does a CISO do (at Penn)?
Apr 23Cyber insurance and security risk
May 7 (Thursday)Final exam
Posted on:
February 25, 2026
Length:
5 minute read, 972 words
See Also: