Susan Older: Selected Publications

Security and Access Control

IA and CS Education

  • The following paper describes a unique aspect of our Certificate of Advanced Study in Systems Assurance (CASSA), namely our emphasis on the mathematical and logical foundations for assurance. We describe the desired educational outcomes of our program and our experiences in teaching some of these courses, including the challenges we have faced and student response.
    Susan Older and Shiu-Kai Chin. "Building a Rigorous Foundation for Assurance into Information Assurance Education". Proceedings of the 6th National Colloquium for Information Systems Security Education, 2002. (Available as Postscript or PDF.)
  • The following article is an expanded version of a paper originally presented at the World Conference on Information Security Education (WISE). In it, we describe in detail two of the foundational courses in the CASSA program, discussing both what we teach and what our students are learning. More specifically, we discuss the desired educational outcomes for students in Modeling Concurrent Systems and Principles of Network Security, our observations of student achievement, and course and curricular changes that we have made as a result of those observations. In the process, we also advocate for the use of an outcome-based approach when developing IA courses and curricula.
    Susan Older and Shiu-Kai Chin. "Using Outcomes-based Assessment as an Assurance Tool for Assurance Education". Journal of Information Warfare, Volume 2, Issue 3, pages 86--100, 2003. (Available as PDF.)
  • This paper describes the Advanced Course in Engineering on Cyber Security (ACE-CS), which is a program designed to develop top ROTC cadets into the next generation of cyber security leaders. Modeled after the General Electric Advanced Course in Engineering, ACE-CS is a 10-week summer program that immerses students in the cyber-security discipline through a combination of intense coursework and internships.
    Kamal Jabbour and Susan Older. "The Advanced Course in Engineering on Cyber Security: A Learning Community for Developing Cyber-Security Leaders". Proceedings of the Sixth Workshop on Education in Computer Security, July 2004. (Available as PDF.)
  • Coming Soon The following paper describes an 8-hour "formal-methods boot camp" offered as part of the ACE-CS course.
    Shiu-Kai Chin and Susan Older. "A Rigorous Approach to Teaching Access Control". Proceedings of the First Annual Conference on Education in Information Security, September 2006. To appear.

