Chevron Left
返回到 实用安全

學生對 马里兰大学帕克分校 提供的 实用安全 的評價和反饋

4.5
2,066 個評分
496 條評論

課程概述

This course focuses on how to design and build secure systems with a human-centric focus. We will look at basic principles of human-computer interaction, and apply these insights to the design of secure systems with the goal of developing security measures that respect human performance and their goals within a system....

熱門審閱

IR

Jun 21, 2016

I like how in depth this gets. it explains it very well an in ways for people who are starting off in this field to get a basic understanding in exactly what we are learning. very well put together!

DG

Jun 29, 2016

Despite not being very fond of areas such as human-computer interaction, I found this course to be well-presented and useful. Definitely a necessity for anyone planning on building secure software.

篩選依據:

451 - 实用安全 的 475 個評論(共 483 個)

創建者 Piotr M

Nov 12, 2017

The course was really good when played at 1.5x speed, at the normal pace it was really too slow.

創建者 Ivan

Sep 08, 2017

Good course, but not really what I expected.

All materials are common things and knowledge.

創建者 Tom G

Jul 14, 2018

Some good info, but the course needs to be updated to correct long known mistakes.

創建者 Daniel K P

Oct 20, 2019

Needs more content ; present course repeats

information, too often

創建者 Giulio B

Jul 04, 2020

Very little useful information

創建者 Alberto R

Nov 21, 2016

Useful concepts. Quite simple.

創建者 Abner G

Dec 01, 2016

This course is about "good practices" for user interface design. If this is what you are looking for it may be worth your time, just be aware that the "production" (quality) of the videos is among the worst courses I have taken in Coursera. On the other hand, if you are looking for a heavy Cybersecurity related course I suggest you to stay away from this one, unless you are taking the specialization in which case you don't have other choice.

Content: 2.5/5

Videos Quality: 1/5

Practice/Theory ratio: 1/5

創建者 Ronald S

Sep 21, 2017

I did this entire course in about 25 minutes without watching the videos or reading anything. I would bet a person with general common sense could pass this. I had more trouble figuring out that received input in Python is always taken in the form of a string and must by converted into a floating point number or integer than I had passing this entire course. I'm not sure why this is in a cyber security track.

創建者 HJ B

Jun 20, 2020

Needs some serious revision. Lots of errors (e.g. week 2 summary of Cranor study completely botched), audio issues (loudness variability), quizzes (e.g., week 2 asks questions from week 3, questions/answers frequently imprecise), etc.

創建者 Tim B

Mar 22, 2017

There are many parts of the lectures that are very quiet and even with my speakers turned to max, I struggled to hear, while other parts were clear. The course is interesting, but I doubt that anyone would pay to attend this course.

創建者 Matas W

Mar 02, 2018

A large amount of this really didn't seem focused on Security. A large part was UX. The Quiz for week 2 contained a lot of material that wasn't covered until the following week.

創建者 Roger A

Jan 13, 2019

I have learn small about security and some basics about design, perhaps this training should be renamed to "design" instead security....

創建者 Vitor G

Mar 03, 2020

I was expecting a technical course, and this is more about concepts of usability.

創建者 Youssef S A M

Aug 14, 2018

i think that this course doesn't have the importance that i thought i would find.

創建者 Justin W

Jun 05, 2016

Reasonable class about designing user interfaces, not much about cybersecurity.

創建者 Benjamin H

Mar 31, 2020

Most of the course content simply states commen sens facts

創建者 Haochen L

Dec 06, 2016

I did not learn a lot.

創建者 Rene v h

Feb 22, 2020

Good starter cource.

創建者 Aslam K

Jun 16, 2016

This was an extremely elementary and thus disappointing course. While the importance of "Usability" was rightly emphasized, the representation in terms of examples, case studies, etc. was simplistic. I appreciated having my attention drawn to the pitfalls of HCI design and the consequent failure of the corresponding systems. However, the solutions were presented as if: 1.) there are always "correct" interface/usability choices; 2.) the "correct" choice is all that's needed for the system to be optimally functional; and 3.) there is never a tension between usability and effective functioning of a system (that can't be resolved with correcting the usability).

It is irresponsible to suggest, for example, that a user selected memorable password is generally adequately secure without also covering ways that an interface can guide/nudge the user to create a secure password. Wide recognition of the importance of this may be more recent than the studies covered in the course. There is nothing wrong with studying old, seminal research, even in this age of "Internet time," but I wish I wasn't left wondering what, if any, developments had occurred in the decade or so since that research took place.

As for tension between usability and security, it absolutely exists. For instance, PGP encryption is a reliable way to secure information, yet making it usable remains a challenge. This is not even mentioned in the entire course. In fact, this course would leave an otherwise uninformed student believing that there are usability solutions waiting to be applied to every cause of info insecurity if the techies would just look. I wish the course had at least acknowledged that there are cases where a slight compromise on usability might be necessary for the sake of appropriate security.

Lastly, for those designing an HCI for security, it is important to understand threat models. This concept is also missing from the course.

===

I reviewed this course (above) immediately after I finished it. I am now in the 3rd week of Software Security, the 2nd course in the Cybersecurity specialization, and am realizing that 2 stars was a generous assessment. Based on the prerequisites of the Software Security course, the Usable Security course, in its current form, is too elementary to be appropriate for people who have the experience/knowledge required for the rest of the courses in this specialization. As I explained above, the course relies heavily on decade-old research but does not cover any developments since. For instance, the usability issues covered in the studies are for ancient versions of browsers with no discussion of how the browsers and our infosec vulnerabilities have changed since those studies were published. Another example is the instructor's eschewing of password managers while many knowledgeable folks in the infosec community today recommend their use. The usability challenges of password managers and a discussion of how they might be mitigated would have been more appropriate.

創建者 Carina B

Feb 24, 2017

I am having a very difficult time finishing this course. I find the topic dull and the content uninteresting. It is the first course of the CyberSecurity Specialization .. I hope the other courses are not like this.

I rated it one star for a couple of reasons.

1- I have been in software for many years and I know about software design. I would NOT have expected to have a weeks long course on software design and usability when my desire is to learn about software security. I understand its importance, but this course should be part of a UI design course, NOT in a technical CyberSecurity specialization IMO.

2 - the course is all about theory, not about practical matters. Let's admit it - today's security software is not for the uninformed/experienced. Given this, again, I feel this course would be better served in another specialization about UI Design or for software design best-practices.

That is my .02. I am moving onto other courses before finishing the Usability Security..... I am aware that I will have to complete this course to get my certification. This alone will discourage me from purchasing a specialization in the future.

創建者 Joan C

Nov 18, 2016

Honestly i only finished week 1. I was sorely disappointed that the quizzes were locked. I wasn't aware that if you audit the course you were not allowed to complete the quizzes as other courses offer this option. From what I gather from week 1 the course topics seems really good. I think it would be great if you consider letting persons who audit take the quizzes otherwise what's the use - I mean i could always go on youtube and watch videos on the same topics, the difference with coursera courses is that you get the opportunity to test the knowledge gained by doing quizzes and assignment. I hope you will consider allowing everyone to take the quiz. My issue above is the reason why I gave the course a 1 out of 5.

創建者 June N

Apr 24, 2016

This is a course for students with little or no work experience. I've been in the industry for twenty years and found some good information, but the quizes aren't designed for experienced adult learners. Not being able to discuss with the professor why an answer is incorrect or even knowing exactly what about an answer makes it incorrect further distances the students from learning. Given that one essentially spends an extra work day each week on the course, I expected more value for my precious time. This week I decided the value isn't there. I might recommend the course for undergrad students but not for working adults.

創建者 Deleted A

Aug 24, 2017

This course is horribly, sloppily put together. The videos have inconsistent volume (sometimes they're loud, sometimes they're quiet) and they look like they were edited by a college student (don't you just LOVE that default Final Cut Pro font?)

On top of that, though this might be Coursera's fault, every video would get near the end and then immediately restart from the beginning, without actually reaching the end of the video. I found that incredibly annoying.

創建者 Hugo G

Apr 15, 2017

A shame it is part of the cybersecurity specialization. It is boring and full of obvious-psicology things like "passwords need to be secure but easy to remember". The instructor, at least, seems to have zero knowledge about software development. Everything we did in seven weeks could have been taught in one or two.

創建者 Benjamin S

Apr 05, 2016

The entirety of this course can be taught in a few sentences. If there is too great a sacrifice to productivity for the sake of security, then people will find a way around any security mechanisms in place. If something is difficult to use, then people will likely not use it.