
Loading…

Loading…
Patch cadence, vendors, and plants that cannot staff a SOC—not automatic CISSP.
Online or on campus

Midwest SMEs lose years to ransomware while job descriptions copy coastal SOC theatre. This degree starts with the closet rack, the MSP contract, and the accountant who is also the admin. You will map crown-jewel data in a 40-person firm, write an incident phone tree, and treat OT-adjacent plants as a change-control problem you do not pretend to PE-stamp. Crownshire’s York campus sits in a labour market of manufacturers, health clinics, and credit unions. Dual-pathway students declare primary mode. English-medium waiver includes U.S. regionally accredited bachelor's. HLC and DEAC remain the institutional story; this MSc is not a NSA or CISA product. Assessment stays on defensive operations and governance; exploit development is not a marketed skill and is not the capstone. You will write an incident phone tree a plant manager can follow at 2 a.m. and an MSP exit plan that does not assume a twenty-person SOC. Faculty will fail a capstone that copies a Fortune-50 architecture onto a forty-person firm. Winter single-admin failure is a design problem. Public pages will not display CISSP, vendor, or agency seals as if they were Crownshire awards. The award is academic. It is not automatic CISSP, not authorisation to attack systems, not a clearance. Assessment stays defensive operations and governance literacy. MSc Midwest SME Cyber Operations is taught as one award, not a list of unrelated modules. The published length is 18 months, and the credit total is 36. Students move from Asset Inventories that a 40-Person Firm Can Maintain through Asset Inventories that a 40-Person Firm Can Maintain; Ransomware as an Operations and Cash Problem; Identity, Email, and Backup as the Actual Perimeter; Patch, Change, and Maintenance Windows on a Plant Calendar; Logging that Someone Will Actually Read; Tabletop Exercises without Hollywood Scripts, and finish on Public Claims: No Fake Agency Seals. Each course has a question, a method, and a submission. In this field, students map one named system, write a threat model, and specify the controls that would stop the most likely path. Reading is control catalogues, incident write-ups, and a short technical standard. The artefact a marker expects is a defensive design with a test plan and a statement of residual risk. The award is built so that a graduate can do the following in practice: Design patch, backup, and access cadence for SME scale Write incident communication without clearance theatre Brief leadership on MSP and vendor risk Teaching assumes the student can read a source, attempt a problem before the seminar, and revise after feedback. Attendance at live seminars is part of the design. The capstone or final course must use the methods of the earlier courses; a project that ignores them does not pass. The pages for each course name the topics that are examined. Those topics are the syllabus. A brochure line is not a substitute for them.
Thirty-six credits: SME threat and asset literacy, operations cadence, vendors and OT-adjacent caution, and a capstone playbook. Three-credit courses. No exploit labs as a marketed skill.
Complete your MSc Midwest SME Cyber Operations fully online from anywhere in the world with faculty-led modules and flexible scheduling.
Attend seminars and access facilities in person at Crownshire University. Campus tuition and campus examinations are charged.
| Code | Course | Credits · hours |
|---|---|---|
| MLT1301 | Asset Inventories that a 40-Person Firm Can Maintain Students map assets, adversaries, and likely attack paths for one named system. The module is Asset Inventories that a 40-Person Firm Can Maintain.
| 3 |
| MLT1302 | Ransomware as an Operations and Cash Problem Students specify identity, logging, and network controls, and state what each control does not stop. The module is Ransomware as an Operations and Cash Problem.
| 3 |
| MLT1303 | Identity, Email, and Backup as the Actual Perimeter Students run a tabletop incident and record decisions, evidence, and recovery. The module is Identity, Email, and Backup as the Actual Perimeter.
| 3 |
| MLT1304 | Ethics and Law Literacy (Not a Hacking Licence) Students deliver a defensive design with a test plan and a statement of residual risk. The module is Ethics and Law Literacy (Not a Hacking Licence).
| 3 |
| Code | Course | Credits · hours |
|---|---|---|
| MLT1305 | Patch, Change, and Maintenance Windows on a Plant Calendar Students map assets, adversaries, and likely attack paths for one named system. The module is Patch, Change, and Maintenance Windows on a Plant Calendar.
| 3 |
| MLT1306 | Logging that Someone Will Actually Read Students specify identity, logging, and network controls, and state what each control does not stop. The module is Logging that Someone Will Actually Read.
| 3 |
| MLT1307 | Tabletop Exercises without Hollywood Scripts Students run a tabletop incident and record decisions, evidence, and recovery. The module is Tabletop Exercises without Hollywood Scripts.
| 3 |
| MLT1308 | Winter Staffing and Single-Admin Failure Students deliver a defensive design with a test plan and a statement of residual risk. The module is Winter Staffing and Single-Admin Failure.
| 3 |
| Code | Course | Credits · hours |
|---|---|---|
| MLT1309 | MSP Contracts, Access, and Exit Students map assets, adversaries, and likely attack paths for one named system. The module is MSP Contracts, Access, and Exit.
| 3 |
| MLT1310 | OT-Adjacent Caution without PE Pretence Students specify identity, logging, and network controls, and state what each control does not stop. The module is OT-Adjacent Caution without PE Pretence.
| 3 |
| MLT1311 | Vendors, Clinics, and Credit-Union Constraints Students run a tabletop incident and record decisions, evidence, and recovery. The module is Vendors, Clinics, and Credit-Union Constraints.
| 3 |
| MLT1312 | Insurance Questionnaires as Management Data Students deliver a defensive design with a test plan and a statement of residual risk. The module is Insurance Questionnaires as Management Data.
| 3 |
| Code | Course | Credits · hours |
|---|---|---|
| MLT1313 | Board and Owner Briefings in Plain Language Students map assets, adversaries, and likely attack paths for one named system. The module is Board and Owner Briefings in Plain Language.
| 3 |
| MLT1314 | Incident Comms and Regulator-Adjacent Honesty Students specify identity, logging, and network controls, and state what each control does not stop. The module is Incident Comms and Regulator-Adjacent Honesty.
| 3 |
| MLT1315 | Public Claims: No Fake Agency Seals Students run a tabletop incident and record decisions, evidence, and recovery. The module is Public Claims: No Fake Agency Seals.
| 3 |
| MLT1316 | Capstone: Midwest SME Cyber Operations Playbook Students deliver a defensive design with a test plan and a statement of residual risk. The module is Capstone: Midwest SME Cyber Operations Playbook.
| 3 |
Modules are assessed through a published mix of coursework, applied projects, and examinations. Exam windows are announced in advance so students in other time zones are not forced into overnight sittings. Alternative arrangements are available where documented.
The published duration is 18 months. Teaching language: English. Actual time-to-complete depends on mode and any recognised prior learning.
You may study this award fully online from your country, or — where published — on campus at Crownshire. Online study does not require a student visa. Campus study may.
Degree tuition for this award is published as £0 / tuition-free on the online pathway. Examination or administrative fees may apply at checkout — never an annual tuition invoice. Check the Fees page for any extras.
Requirements are grouped on this page (academic, English, documents). Equivalent qualifications are considered. English may be waived after prior English-medium study.
Assessment is typically a mix of coursework, projects, and examinations. Doctoral awards include a thesis or dissertation and an oral examination. Details sit in the programme specification and module outlines.
Recognition of the award for local employment, professional licence, or ministry attestation is decided by your employer or regulator. Crownshire University publishes verification pages for certificates. We do not claim automatic equivalence in every country.
Start an application on this website. Progress is saved from the first step. Admissions: admissions@crownuni.com.
Recognized & Accredited