Students build the foundational vocabulary of the course and then apply it to protecting physical locations. They learn to identify social engineering attacks and types of adversaries, describe the phases of a cyberattack, work through the risk assessment process, and recognize strategies for managing risk, types of security controls, and why defense-in-depth matters. Students then focus on physical security, since an adversary with physical access can often bypass technical controls. They identify physical vulnerabilities and attacks, apply managerial controls, and learn to detect breaches and place security devices like cameras and sensors for maximum effectiveness.