System security and data privacy

Module Code
Module Coordinators
Wolfgang Schmitt
Wolfgang Schmitt
Short Description
Basics on data privacy, Security standards, evaluation criteria and certification, Security engineering and management, Security services and their applications- especially, discretionary access control.
Learning Objectives

This lecture provides an introduction to the basic elements of data security and data privacy. The gained skills qualify students for professional work in the fields of security engineering, security management and data privacy in a team.

  • Scope of system security and data privacy
  • Elements of data privacy - data protection law, data protection registrar, "Vorabkontrolle", "Verfahrensverzeichnis"
  • Security process and baseline protection: vulnerability, threats, risc assessment, ...
  • Security standards and evaluation criteria
  • Security services and their applications
  • Access control to computer systems and networks
  • Security management
Duration in Semester
Instruction Language
Total Effort
6 CrP; an estimated 180 hours, of which approximately 60 are spent in class.
Weekly School Hours
Method of Instruction

Lecture 3 SWS, Practical Course 1 SWS

Requirements for the awarding of Credit Points

Examination: Written exam, optionally multiple choice; exceptionally oral exam (The form of the examination will be announced to the students in a timely and appropriate manner)

Evaluation Standard
according to examination regulations (§ 9)
  • Bundesamt für Sicherheit in der Informationstechnik: IT-Grundschutz,
  • C. Ecker: IT-Sicherheit, Oldenbourg
  • G. Schäfer: Netzsicherheit, dpunkt
  • W. Schmitt: Hilfsblätter zur Lehrveranstaltung
Prerequisite Modules