Jason Hartley is lecturer in criminology at Griffith University in Brisbane, Australia. He is a former police officer with 23 years of experience, and has trained personnel for deployment in Timor Leste, the Solomon Islands, Iraq and Afghanistan. Jason specializes in, and has published on engagement with Muslim communities, Indigenous Polynesian approaches to rehabilitation and reducing recidivism, and Asian Organised Crime. Jason also completed a community internship in Hebron on the West Bank.
ITC541 Cybersecurity Intelligence and Counterintelligence
This unit develops advanced tradecraft for collecting, analysing and operationalising cyber-threat intelligence (CTI) and conducting counterintelligence (CI) operations. Students learn to profile adversary tactics, techniques and procedures (TTPs), leverage STIX/TAXII standards, orchestrate deception campaigns and assess legal-ethical constraints under Australian and international law. Practical labs use open-source intelligence (OSINT), malware sandboxing, MITRE ATT&CK mapping and threat-hunting playbooks. Students will be able to brief executives, collaborate with law-enforcement and disrupt hostile actors targeting critical infrastructure.
RELEVANT COURSES
* Core unit
CREDIT POINTS
10
STUDY MODES
On campus, online, hybrid
PREREQUISITE OR CO-REQUISITE
ITC401 Foundations of Cybersecurity and ITC402 Cybersecurity Management
UNIT LEARNING OUTCOMES
- Critically analyse intelligence requirements and legal constraints to scope cyber-threat investigations
- Collect and critically evaluate multi-source intelligence to attribute adversary campaigns
- Design and apply structured analytical products that drive proactive defence and risk decisions
- Create and implement counterintelligence and deception strategies that disrupt adversary objectives while maintaining ethical compliance
- Articulate and defend CTI findings and CI plans to technical, legal and executive audiences
CONTENT
- Intelligence cycle, requirements and Australian legal boundaries
- OSINT platforms, dark web harvesting and ethics
- Malware sandboxing, indicator extraction and YARA
- MITRE ATT&CK & D3FEND; adversary profiling
- STIX/TAXII standards; CTI automation & sharing communities
- Threat-hunting playbooks and ELK stack lab
- Deception technologies (honeypots, honey-tokens, canary files)
- Counter-intel doctrine: denial, deception & disruption
- Supply-chain intel and geopolitical analysis
- Reporting tradecraft: intelligence bulletins, heat-maps, risk scores
- Executive briefing simulations and red-team/blue-team exercise
- Emerging trends: AI-generated CTI, quantum-resilient CI
ASSESSMENT METHODS
- CTI Collection and Attribution Report – 20%
- Group Deception & CI Playbook Presentation – 40%
- Executive Intelligence Brief and Defence – 40%
PRESCRIBED READINGS
Check with the lecturer each semester before purchasing any texts












