
Loading…

Loading…
Defend systems and build a cybersecurity career foundation
Online or on campus

Cybersecurity careers reward structured foundations. This graduate certificate builds defensive fluency: threat landscapes, network security architecture, cryptography and access control, governance and risk, and incident response. Labs emphasise practical configuration and analysis skills without assuming prior security certifications. The incident response capstone lab integrates detection, containment and communication. Credits stack toward the MSc Cybersecurity. Graduate Certificate in Cybersecurity is taught as one award, not a list of unrelated modules. The published length is 9 months, and the credit total is 15. Students move from Cybersecurity Foundations & Threat Landscape through Cybersecurity Foundations & Threat Landscape; Network Security & Defensive Architecture; Identity, Cryptography & Access Control; Governance, Risk, Compliance & Security Policy; Incident Response Capstone Lab, and finish on Incident Response Capstone Lab. Each course has a question, a method, and a submission. In this field, students map one named system, write a threat model, and specify the controls that would stop the most likely path. Reading is control catalogues, incident write-ups, and a short technical standard. The artefact a marker expects is a defensive design with a test plan and a statement of residual risk. The award is built so that a graduate can do the following in practice: Analyse threats and prioritise defensive controls Design layered network security architectures Apply access control and cryptographic controls correctly Teaching assumes the student can read a source, attempt a problem before the seminar, and revise after feedback. Attendance at live seminars is part of the design. The capstone or final course must use the methods of the earlier courses; a project that ignores them does not pass. The pages for each course name the topics that are examined. Those topics are the syllabus. A brochure line is not a substitute for them.
Designed for IT professionals and career switchers with technical curiosity. Complements the BSc Cybersecurity pathway for degree holders seeking a shorter postgraduate credential before a full MSc.
Faculty spotlight
Industry CERT and security architecture practitioners co-teach labs with academic cybersecurity faculty.
Study online
Online tuition is free. Online examinations are free. There is no exam fee for online study.

On-campus study
Prefer to learn at our Edinburgh campus? Campus tuition and campus examinations are charged. The published campus price is on each programme page.
| Code | Course | Credits · hours |
|---|---|---|
| CY401 | Cybersecurity Foundations & Threat Landscape Cybersecurity Foundations & Threat Landscape (CY401) is a 3-credit course on Graduate Certificate in Cybersecurity, with 30 notional learning hours. By the end, students can map one named system, write a threat model, and specify the controls that would stop the most likely path, using Cybersecurity Foundations & Threat Landscape as the working context rather than a generic management example. The course is taught in three movements. First, students establish the terms and the decision the course is about. Second, they apply the method to a case, dataset, text, or design and compare it with a weaker alternative. Third, they revise the work after feedback and state what the conclusion cannot support. Preparation uses control catalogues, incident write-ups, and a short technical standard. Seminar time is for the decision, not for reading the materials aloud. Assessment is a defensive design with a test plan and a statement of residual risk. A pass requires a clear method, evidence a marker can check, and an explicit limit. Credit is not awarded for summary alone.
| 3 · 30 h |
| CY402 | Network Security & Defensive Architecture Network Security & Defensive Architecture (CY402) is a 3-credit course on Graduate Certificate in Cybersecurity, with 30 notional learning hours. By the end, students can map one named system, write a threat model, and specify the controls that would stop the most likely path, using Network Security & Defensive Architecture as the working context rather than a generic management example. The course is taught in three movements. First, students establish the terms and the decision the course is about. Second, they apply the method to a case, dataset, text, or design and compare it with a weaker alternative. Third, they revise the work after feedback and state what the conclusion cannot support. Preparation uses control catalogues, incident write-ups, and a short technical standard. Seminar time is for the decision, not for reading the materials aloud. Assessment is a defensive design with a test plan and a statement of residual risk. A pass requires a clear method, evidence a marker can check, and an explicit limit. Credit is not awarded for summary alone.
| 3 · 30 h |
| CY403 | Identity, Cryptography & Access Control Identity, Cryptography & Access Control (CY403) is a 3-credit course on Graduate Certificate in Cybersecurity, with 30 notional learning hours. By the end, students can map one named system, write a threat model, and specify the controls that would stop the most likely path, using Identity, Cryptography & Access Control as the working context rather than a generic management example. The course is taught in three movements. First, students establish the terms and the decision the course is about. Second, they apply the method to a case, dataset, text, or design and compare it with a weaker alternative. Third, they revise the work after feedback and state what the conclusion cannot support. Preparation uses control catalogues, incident write-ups, and a short technical standard. Seminar time is for the decision, not for reading the materials aloud. Assessment is a defensive design with a test plan and a statement of residual risk. A pass requires a clear method, evidence a marker can check, and an explicit limit. Credit is not awarded for summary alone.
| 3 · 30 h |
| CY404 | Governance, Risk, Compliance & Security Policy Governance, Risk, Compliance & Security Policy (CY404) is a 3-credit course on Graduate Certificate in Cybersecurity, with 30 notional learning hours. By the end, students can map one named system, write a threat model, and specify the controls that would stop the most likely path, using Governance, Risk, Compliance & Security Policy as the working context rather than a generic management example. The course is taught in three movements. First, students establish the terms and the decision the course is about. Second, they apply the method to a case, dataset, text, or design and compare it with a weaker alternative. Third, they revise the work after feedback and state what the conclusion cannot support. Preparation uses control catalogues, incident write-ups, and a short technical standard. Seminar time is for the decision, not for reading the materials aloud. Assessment is a defensive design with a test plan and a statement of residual risk. A pass requires a clear method, evidence a marker can check, and an explicit limit. Credit is not awarded for summary alone.
| 3 · 30 h |
| CY405 | Incident Response Capstone Lab Incident Response Capstone Lab (CY405) is a 3-credit course on Graduate Certificate in Cybersecurity, with 30 notional learning hours. By the end, students can map one named system, write a threat model, and specify the controls that would stop the most likely path, using Incident Response Capstone Lab as the working context rather than a generic management example. The course is taught in three movements. First, students establish the terms and the decision the course is about. Second, they apply the method to a case, dataset, text, or design and compare it with a weaker alternative. Third, they revise the work after feedback and state what the conclusion cannot support. Preparation uses control catalogues, incident write-ups, and a short technical standard. Seminar time is for the decision, not for reading the materials aloud. Assessment is a defensive design with a test plan and a statement of residual risk. A pass requires a clear method, evidence a marker can check, and an explicit limit. Credit is not awarded for summary alone.
| 3 · 30 h |
Modules are assessed through a published mix of coursework, applied projects, and examinations. Exam windows are announced in advance so students in other time zones are not forced into overnight sittings. Alternative arrangements are available where documented.
The published duration is 9 months. Teaching language: English. Actual time-to-complete depends on mode and any recognised prior learning.
You may study this award fully online from your country, or — where published — on campus at Brigant. Online study does not require a student visa. Campus study may.
Degree tuition for this award is published as £0 / tuition-free on the online pathway. Examination or administrative fees may apply at checkout — never an annual tuition invoice. Check the Fees page for any extras.
Requirements are grouped on this page (academic, English, documents). Equivalent qualifications are considered. English may be waived after prior English-medium study.
Assessment is typically a mix of coursework, projects, and examinations. Doctoral awards include a thesis or dissertation and an oral examination. Details sit in the programme specification and module outlines.
Recognition of the award for local employment, professional licence, or ministry attestation is decided by your employer or regulator. University of Brigant publishes verification pages for certificates. We do not claim automatic equivalence in every country.
Start an application on this website. Progress is saved from the first step. Admissions: admissions@brigant.uk.
Recognised & Accredited