Skip to content

CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice

Network Basics and Security for CS Professional Elective 4.4

Network Basics and Security covers how computers connect and exchange data, and how those connections are attacked and protected. You study network types, the OSI and TCP/IP models, IP addressing and protocols, threats, security tools, cryptography and security frameworks. In the exam you explain each concept, apply it to a case and recommend controls.

What this chapter covers

This chapter is the technical base of Paper 4, Elective 1, option 4.4 (Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice). It explains how networks are built, how data moves across them, how attackers exploit them and which tools and standards defend them. You start with plain definitions and layered models, then move to threats and controls.

The chapter has two halves. The first half (network types, OSI and TCP/IP models, the internet, IP addressing and protocols) is descriptive and vocabulary-heavy. The second half (cyber threats, security tools, cryptography and frameworks) is applied. It asks what can go wrong and what a company should do about it.

It connects to the rest of the paper because the legal and compliance questions on cyber security rest on this technical understanding. When a question describes a phishing attack, a data breach or an insecure system, you need the technical terms to analyse the facts. Then you can link them to the legal provisions you study elsewhere in the paper and to your drafting and compliance advice.

Exam answers in this paper are written and case-based. A scenario will usually describe an incident, and you must identify the threat, name the control that fails or would have helped, and recommend a compliance step. Students who know the terms only by name lose marks because they cannot explain them in a sentence or apply them to facts. This chapter gives you that working vocabulary. It is also fairly stable and concept-driven, so steady effort here pays off, and it makes the legal chapters easier to follow.

Network Basics and Security: topics in the order to study them

  1. 1Computer Network Basics and TypesStart here because every later topic assumes you know what a network is, and the types (such as LAN, MAN and WAN) and topologies give you the basic vocabulary.
  2. 2OSI and TCP/IP Reference ModelsThe layered models give you a map of how data moves, and later you will place protocols, attacks and tools on that map.
  3. 3Internet, IP Addressing and Network ProtocolsOnce you know the layers, you can learn which protocols and addresses work at each layer and how the internet ties them together.
  4. 4Cyber Threats and Network AttacksWith the network understood, you can see where attacks strike, such as malware, phishing, denial of service and interception.
  5. 5Network Security Tools and ControlsControls make sense only after the threats are clear, so you learn firewalls, intrusion detection and prevention, access controls and similar measures as responses to specific attacks.
  6. 6Cryptography, Encryption and Digital SignaturesThis topic explains how confidentiality, integrity and authenticity are secured, and it needs the earlier ideas of data in transit and attacks on it.
  7. 7Cyber Security Frameworks and StandardsFinish with frameworks and standards, because they bring threats, tools and cryptography together into an organisation-wide approach to managing security.

How to prepare Network Basics and Security

Treat this chapter as a mix of definitions you must recall and scenarios you must analyse. Prepare for both.

  1. Read the chapter once in the study order above without making notes, so you see how the topics link.
  2. Build a one-page summary for each topic with the key terms, each in one plain sentence of your own.
  3. Draw the OSI and TCP/IP layers from memory and place protocols, attacks and security tools against the right layer.
  4. For every threat, write three lines: how it works, what damage it does and which control stops it.
  5. Practise two or three case-style questions per topic in the format of provision, analysis and conclusion, and write them in full within a time limit.
  6. Compare the frameworks and standards using the same headings, such as purpose, who uses it and what it requires, so you can answer comparison questions quickly.
  7. Revise using your one-page summaries every week until the exam, and redraw the layer diagram each time.

Common mistakes in Network Basics and Security

  • Memorising the OSI layers as a list without knowing what each layer does.

    Fix: Write one function and one example protocol or device for each layer, and practise placing attacks and tools on the layers.

  • Mixing up related terms such as virus, worm and trojan, or IDS and IPS.

    Fix: Keep a short comparison note for each pair that states the key difference in one line.

  • Treating encryption and digital signatures as the same thing.

    Fix: Remember the purpose of each: encryption hides content, while a digital signature proves who sent it and that it was not altered.

  • Naming a threat in a case answer but not recommending a control.

    Fix: End every answer with the control or compliance step that would prevent or reduce the problem.

  • Studying frameworks and standards only by name.

    Fix: For each one, note its purpose and how an organisation would use it, and use only the details given in your study material.

  • Skipping written practice and relying on reading.

    Fix: Write timed answers in full sentences and check that each has a definition, an application to the facts and a conclusion.

Last-day revision: Network Basics and Security

  • A network is a set of connected devices that share data and resources.
  • Know the main network types by size and reach, and the common topologies.
  • The OSI model has seven layers and the TCP/IP model has fewer; be able to map one to the other.
  • An IP address identifies a device on a network, and you must know the difference between IPv4 and IPv6.
  • Protocols are agreed rules for communication; link each common protocol to its purpose.
  • Malware, phishing, denial of service and interception are different attacks, so define each separately.
  • Firewalls filter traffic, while intrusion detection systems alert and intrusion prevention systems block.
  • Encryption protects confidentiality; digital signatures support authenticity, integrity and non-repudiation.
  • Symmetric encryption uses one shared key; asymmetric encryption uses a public and private key pair.
  • Frameworks and standards give an organisation a structured way to manage security risk.
  • In a case answer, name the threat, name the control, then give the compliance recommendation.

Network Basics and Security practice questions

Network Basics and Security in other exams

The same ground in other exams, if you are preparing for more than one or want another angle on it.

Network Basics and Security: frequently asked questions

Is Network Basics and Security a technical chapter?

It has technical content, but you are examined in writing, not by calculation. You need to explain concepts clearly and apply them to a case, so plain accurate definitions matter more than deep technical detail.

Which paper and elective does this chapter belong to?

It belongs to Paper 4, Elective 1, option 4.4, Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice. You choose one option in Elective 1, so study it only if you have picked 4.4.

Do I need to memorise all seven OSI layers?

Yes, you should know the names, order and function of each layer, as questions can ask for them directly or ask you to place a protocol or attack. A simple diagram that you can redraw from memory is the best way to retain them.

Is the Elective 1 paper open book?

Elective papers are open book examinations, as stated in the December 2026 time table. Even so, you cannot learn the chapter during the exam, so prepare well enough to find and use your material quickly.

How should I practise this chapter?

Write timed case-style answers for each topic. Identify the threat or issue, explain the concept, apply it to the facts and give a clear recommendation.