CompTIA Security+ 2008

    CITY & GUILDS LIMITED
    Vocational

    This topic covers CompTIA Security+ 2008 objectives including systems security, network infrastructure, access control, assessments, cryptography, and organisational security.

    1
    Learning Outcomes
    3
    Assessment Guidance
    3
    Key Skills
    1
    Key Terms
    5
    Assessment Criteria

    Assessment criteria

    City & Guilds Level 2 Award in ICT Systems and Principles

    Topic Overview

    The City & Guilds Level 3 Diploma in ICT Systems Support is a vocational qualification designed to equip students with the practical skills and theoretical knowledge needed to support and maintain ICT systems in a professional environment. This diploma covers a broad range of topics including hardware installation, software configuration, network management, and user support. It is ideal for those aiming to become IT support technicians, helpdesk analysts, or network administrators, providing a solid foundation for entry-level roles in the IT industry.

    Throughout the course, students learn to diagnose and resolve technical issues, manage operating systems, and implement security measures. The curriculum emphasizes hands-on experience, with assessments often involving real-world scenarios such as setting up a small network or troubleshooting a faulty PC. By the end of the diploma, students should be confident in using tools like command-line interfaces, remote desktop software, and diagnostic utilities. This qualification also prepares students for further study, such as a Level 4 apprenticeship or a foundation degree in IT.

    In the wider context of computer science, ICT systems support focuses on the operational side of technology—ensuring that systems run smoothly and users can work efficiently. While computer science delves into algorithms and programming, this diploma bridges the gap between development and end-user experience. It is a practical, career-focused qualification that addresses the growing demand for skilled support professionals in businesses, schools, and public sector organisations.

    Key Concepts

    Core ideas you must understand for this topic

    • Hardware and Software Troubleshooting: Systematic approach to identifying and resolving issues with components like RAM, hard drives, and operating systems, using tools such as Event Viewer and diagnostic software.
    • Network Configuration and Management: Setting up IP addresses, subnet masks, and DNS; understanding TCP/IP, DHCP, and wireless standards; configuring routers and switches for local area networks (LANs).
    • User Support and Communication: Effective techniques for handling helpdesk tickets, active listening, and explaining technical solutions to non-technical users, including remote assistance tools.
    • Security Best Practices: Implementing antivirus software, firewalls, user permissions, and data backup strategies; understanding threats like malware, phishing, and social engineering.
    • Operating System Administration: Installing, configuring, and maintaining Windows and Linux OS; managing user accounts, file systems, and system updates via command line and GUI.

    Learning Objectives

    What you need to know and understand

    • Understand Systems Security, Understand Network Infrastructure, Understand Access Control, Understand Assessments & Audits, Understand Cryptography, Understand Organizational Security

    Assessment Criteria

    Key criteria assessors look for in your portfolio

    • Identifies security threats and vulnerabilities in systems and networks.
    • Describes access control models and authentication methods.
    • Explains cryptography concepts and their applications.
    • Applies security assessment techniques such as vulnerability scanning.
    • Understands organisational security policies and procedures.

    Assessment Guidance

    Guidance for achieving higher grades

    • 💡Memorise common port numbers and protocols.
    • 💡Understand the CIA triad (Confidentiality, Integrity, Availability).
    • 💡Practice identifying attack types and mitigation strategies.
    • 💡When answering troubleshooting questions, always follow a logical step-by-step process: identify the problem, establish a theory of probable cause, test the theory, implement a solution, verify functionality, and document findings. This structured approach earns full marks.
    • 💡For network questions, memorise the OSI model layers (especially Physical, Data Link, Network, Transport, and Application) and be able to map common protocols (e.g., HTTP, TCP, IP) to their layers. Examiners love this detail.
    • 💡In user support scenarios, demonstrate soft skills explicitly in your answers. For example, say 'I would listen to the user's description, ask clarifying questions, and then explain the solution in simple terms.' This shows you understand the role beyond technical fixes.

    Common Mistakes

    Common errors to avoid in your coursework

    • Confusing symmetric and asymmetric encryption.
    • Overlooking physical security controls.
    • Misunderstanding the principle of least privilege.
    • Misconception: 'If a computer won't turn on, the power supply is always faulty.' Correction: Always check the power cable, socket, and surge protector first. A loose connection or tripped breaker is more common than a dead PSU.
    • Misconception: 'More RAM always makes a computer faster.' Correction: While RAM helps with multitasking, adding RAM beyond the system's needs (e.g., 32GB for basic office work) yields no benefit. The bottleneck could be the CPU, hard drive, or software limitations.
    • Misconception: 'Antivirus software alone guarantees security.' Correction: Security is layered—antivirus is just one part. Users must also apply updates, use strong passwords, avoid suspicious links, and enable firewalls. Social engineering attacks bypass antivirus entirely.

    Frequently Asked Questions

    Common questions students ask about this topic

    Pass / Merit / Distinction Evidence Checklist

    How your portfolio evidence is graded for CITY & GUILDS LIMITED CompTIA Security+ 2008

    Every vocational unit is marked against named criteria rather than an exam percentage. Your tutor's brief lists the exact codes for this unit — here is what each band is asking you to do.

    Pass (P)

    Demonstrate baseline knowledge, accurate terminology, and core practical application.

    Merit (M)

    Provide detailed analysis, structured explanations, and clear workplace reasoning.

    Distinction (D)

    Deliver thorough evaluation, original problem solving, and fully justified recommendations.

    Before You Start

    Prior knowledge that will help with this topic

    • Basic understanding of computer hardware components (CPU, RAM, storage) and their functions.
    • Familiarity with common operating systems like Windows and basic file management (creating folders, copying files).
    • Some experience with using the internet and email, as networking concepts build on this.

    Coursework AI Review

    Paste your assignment brief and check your draft against its P/M/D criteria

    Key Terminology

    Essential terms to know

    • Understand Systems Security, Understand Network Infrastructure, Understand Access Control, Understand Assessments & Audits, Understand Cryptography, Understand Organizational Security

    Ready to learn?

    AI-powered learning tailored to this unit