Unit of competency Outline

Date retreived
23/07/2026 1:32 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Identify and confirm cyber security incidents

Identify and confirm cyber security incidents

Unit of competency
National Code
ICTCYS402
State Code
OBV16
TGA Status
Current
DTWD Status
Approved
Current Release Number
1.00
Current Release Date
21/07/2020
State Implementation and Classification
Approved Date
15/01/2021
Field of Education
029901 - Security Science
Original Release Date
15/01/2021
Nominal Hours
35
Description
This unit describes the skills and knowledge required to identify, confirm and report cyber security incidents in an organisation.It applies to individuals who work in information technology security, and gather logs from systems, networks and applications to identify the occurrence of incidents in any business environment.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Identify cyber security incidents
  • 1.1 Identify and review legislative requirements and organisational procedures and policies applicable to cyber security incidents and incident response plans
  • 1.2 Obtain and analyse system, network and application infrastructure and logs according to organisational security procedures
  • 1.3 Analyse and test application and confirm assumptions of incidents according to organisational security procedures
  • 1.4 Discuss differences between network and systems incidents with required personnel
2. Confirm cyber security incidents
  • 2.1 Confirm whether incidents are network or systems related
  • 2.2 Discuss and confirm incident with required personnel
  • 2.3 Identify and discuss potential changes required to system, network and application
3. Report and document cyber security incidents
  • 3.1 Report cyber security incident to required personnel, according to legislative requirements and organisational policies and procedures
  • 3.2 Document exposed vulnerability and changes, solutions and actions discussed according to organisational policies and procedures
No information
No information
No information
State Code National Code Title Type
AE196 ICTSS00101 Cyber Incident Response Skill Set Skill set
BFF9 ICT40120 Certificate IV in Information Technology Qualification