Governance, Risk and Compliance
Create a free account to unlock full content!
By registering, you agree to our Privacy Statement and Terms and Conditions.
Program Overview
Course Overview
The course CYBR 373, Governance, Risk and Compliance, offers a detailed exploration of risk management in cybersecurity. It covers concepts from basic principles to advanced applications, including practical exercises on security controls, incident response, and policy development. The course also includes in-depth discussions on security governance, ethics, legal environments, and cloud security, as well as cultural considerations and Māori Data Sovereignty principles.
Course Details
- Dates: 6 July 2026 to 8 November 2026
- Starts: Trimester 2
- Fees:
- NZ$1,269.45 for domestic students
- NZ$5,806.35 for international students
- Lecture Start Times:
- Tuesday 12.00pm
- Friday 12.00pm
- Campus: Kelburn
- Estimated Workload: Approximately 150 hours or 8.3 hours per week for 18 weeks
- Points: 15 points
Entry Restrictions
- Prerequisites: CYBR 271
- Corequisites: None
- Restrictions: None
Course Structure
Taught By
The course is taught by the School of Engineering and Computer Science — Faculty of Science and Engineering.
Disclaimer
This course outline may be subject to change.
Key Dates
Important dates, including mid-trimester teaching breaks, can be found on the University's key dates calendar. Assessment dates will be announced once the course has begun.
Course Learning Objectives
Students who pass this course will be able to:
- Apply knowledge of risk assessment and management frameworks.
- Apply information related to security controls, policies, and strategies in effective implementation of incident response and disaster recovery activities.
- Outline and discuss the major concepts related to data governance and legal compliance aspects, including Māori data sovereignty.
How This Course Is Taught
This course is offered in-person, with two in-person lectures per week. There is a final group assessment requiring in-person attendance.
Assessment
- Final Examination: Individual, 60%
- Risk and Incident Handling Case Study: Group Work, 25%
- Governance, Policy and Privacy Case Study: Individual, 15%
Mandatory Requirements
There are no mandatory requirements for this course.
Group Work
The first case study requires team work on a complex case study. The assessment marks for the project are split into individual marks (10% of the final course mark) and group marks (15% of the final course mark), where all group members receive the same mark. Students are expected to be physically available on the day of their group presentation.
Lecture Times and Rooms
Lecture times are scheduled from 6 July 2026 to 8 November 2026, with breaks in between.
What You'll Need to Get
No specific texts or equipment are required for this course.
Past Versions of This Course
Older versions of this course may be accessible through the course archive.
Student Feedback
Previous students' feedback on this course can be found in the student feedback database.
