MSc Cyber Security (Software Security)

  • MSc

Overview

New approaches to building software - such as continuous delivery, cloud-based scalability, the use of AI-augmented tooling, and open source - have accelerated technological innovation. Modern software now underpins vast, complex systems across society, from energy and finance to healthcare and smart transport. This new software ecosystem has also given rise to new forms of security threats, malware, AI-powered attacks and system vulnerabilities.

As software becomes more interconnected and increasingly incorporates AI-enabled components, the approach to identify, prioritise and mitigate vulnerability risks at scale equally needs to be increasingly sophisticated. There is also a heightened need for accountability, privacy, and demonstrably effective regulatory compliance measures.

The consequence is an increased worldwide demand for software security experts who are able to understand the security challenges that modern software brings and who have the skills required to protect software-intensive businesses from the large-scale impacts of disruption.

What does the programme cover?

A strong ethos of rigorous experimental and empirical cybersecurity and privacy research underpins the MSc, facilitated by a state-of-the-art testbed for studying threats and vulnerabilities related to data flows in software and its dependencies (supply chain) and engineering pipelines.

Leveraging our bespoke teaching equipment, you'll learn to apply the foundational software techniques necessary to protect interdependent software systems and will develop the skills for engineering scalable solutions. You'll explore real-world problems that are practical and challenge-oriented but underpinned by rigorous research.

This MSc enables you to:

  • Develop a deep understanding of fundamental concepts, design principles, building blocks and methods to understand and mitigate cyber threats.
  • Gain hands-on experience in articulating software security issues by working with devices, systems and networks in realistic environments.
  • Analyse cybersecurity problems and challenges from a variety of vantage points: networks, systems, and human factors.
  • Explore software security with AI as well as the security of AI software.
  • Implement software solutions that proactively and reactively address security and privacy issues by default.

You will be taught at our cutting-edge Temple Quarter Enterprise Campus, where enhanced links with businesses will provide you with real-world knowledge, networks and skills. You'll also benefit from access to a wide range of facilities at our vibrant Clifton Campus.

We also offer a related programme in Cyber Security (Infrastructures Security).

Programme structure

The MSc consists of compulsory units in cyber security, network security, systems security, software security analysis, and secure software engineering.

To complete your studies you will undertake an individual research project proposed by project supervisors. This unit will provide you with first-hand experience in planning, running, documenting, and presenting a substantial piece of original work in the field of software security. This will typically include reading and synthesising academic literature, developing a hypothesis and validating it through hands-on experimental or implementation work.

The projects offered each year will vary and each will have a different focus under the overarching umbrella of Software Security. The projects are defined with guided input from our industry partners to ensure they meet the evolving practices and needs of the industry.

The units are taught in intensive week-long blocks. Part-time study will require daytime attendance on campus for the full week when a unit is being taught.

Visit our programme catalogue for full details of the structure and unit content of this programme.

Entry requirements

You will typically need an upper second-class honours degree or international equivalent in Computer Science, Electrical or Electronic Engineering, Cyber Security, Information Security or Software Engineering. Other disciplines will be considered on a case-by-case basis.

Applicants from other related subjects are required to have studied modules relevant to the programme at minimum of 60%, or international equivalent:

Relevant Modules:

  • Algorithms
  • Cloud Native Systems
  • Computer Security
  • Continuous Integration Continuous Deployment/Delivery (CICD)
  • Data Privacy/Security
  • Data Structures
  • Databases/Structured/Unstructured Databases
  • DevOps
  • JavaScript
  • Network Security
  • Operating Systems
  • Programming (one from the list below)
  • Requirements Engineering
  • Secure Coding
  • Service Orientated Architectures
  • Software Maintenance
  • Software Analysis
  • Software Architecture
  • Software Design
  • Software Development
  • Software Process
  • Software Security
  • Software Tools
  • Structured Programming
  • System Security
  • Systems Analysis
  • Systems Development
  • Systems Engineering
  • Systems Programming
  • Unstructured Programming
  • Web applications.

Suitable Programming modules (One module from this list):

  • Ansible
  • Assembly Language
  • C/C ++
  • Cloud Computing
  • Docker
  • Java
  • Kubernetes
  • Machine Learning Fundamentals
  • Object Orientated Programming
  • Parallel Programming
  • Problem Solving and Programming
  • Programming Fundamentals
  • Programming Lab
  • Python
  • Scala
  • Serverless computing
  • Shell Scripting
  • Terrafoam.

MATLAB, FORTRAN, Basic or Visual Basic will not be considered suitable for this programme.

We will consider your application if your interim grades are currently slightly lower than the programme's entry requirements and may make you an aspirational offer. This offer would be at the standard level, so you would need to achieve the standard entry requirements by the end of your degree. Specific module requirements would still apply.

We will also consider your application if your final overall achieved grade is slightly lower than the programme's entry requirement.

If your achieved grade is lower than our entry requirements, your application may be more likely to receive an offer if you have additional relevant work experience or qualifications. If you have at least one of the following, please include your CV (curriculum vitae / résumé) when you apply, showing:

  • evidence of significant, relevant work experience with a minimum of two years (full or part-time) experience within a computer science or electronic/electrical engineering role or as a software developer. Examples include software testers (especially penetration testing), technical role in cybersecurity, system engineer, security officer, data protection officer, information officer, product manager
  • a relevant postgraduate qualification.

Specific module requirements would still apply.

See international equivalent qualifications on the International Office website.

Read the programme admissions statement for important information on entry requirements, the application process and supporting documents required.

Go to admissions statement

If English is not your first language, you will need to reach the requirements outlined in our profile level D.

Further information about English language requirements and profile levels.

Fees and funding

Home: full-time
£19,600 per year
Home: part-time (three years)
£6,533 per year
Home: part-time (two years)
£9,800 per year
Overseas: full-time
£38,000 per year

Fees are subject to an annual review. For programmes that last longer than one year, please budget for up to an 8% increase in fees each year.

More about tuition fees, living costs and financial support.

Alumni discount

University of Bristol students and graduates can benefit from a 25% reduction in tuition fees for postgraduate study. Check your eligibility for an alumni discount.

Funding and scholarships

Further information on funding for prospective UK and international postgraduate students.

Career prospects

This programme is informed by the skills gap identified by industry. Following graduation from this MSc, students will have the skills to play a fundamental role in delivering cyber security on a large scale through their careers.

Graduates may find roles in, or as: software security engineer or analyst, security software developer, network security engineer, penetration testing and security audit. You will be capable of critically evaluating and synthesising research literature, developing and deploying systems, and communicating with others in your field and other disciplines. Top graduates from this degree will be able to proactively advance the development of software security or move on to doctoral studies in cyber security.