t.BA.MI.CSDS.23HS (Cyber Security and Data Protection) 
Module: Cyber Security and Data Protection
This information was generated on: 18 April 2024
No.
t.BA.MI.CSDS.23HS
Title
Cyber Security and Data Protection
Organised by
T InIT
Credits
4

Description

Version: 2.0 start 01 August 2023
 

Short description

This module provides students with fundamental knowledge in the areas of cyber security and data protection, particularly in the context of medical informatics. Students learn how to protect systems and data from attack and misuse, and how to develop and apply data protection policies and procedures.

Module coordinator

Martin Ochoa

Learning objectives (competencies)

Objectives Competences Taxonomy levels
The participants can identify who wants to hack their systems and why ("Threat Landscape"). F, SE K2
The participants will gain an overview of the current threat situation or attack patterns, can name current examples, and have applied individual attack patterns themselves in practical exercises. F K2, K3
The participants understand how data confidentiality, authenticity, and integrity can be achieved during their transmission, processing, and storage, and what to pay attention to in this context. F, M K2
The participants are familiar with various approaches to analyze and test the security of a service, system, or product, and have practically applied specific methods in practical exercises (e.g., vulnerability scanners). F K2, K4
The participants understand what a data protection policy is and know how to design mechanisms for its enforcement. F, M K2, K3

Module contents

This course introduces fundamental aspects of information security and data protection, with a special focus and examples from the healthcare sector. The theoretical lectures are complemented by practical exercises and group presentations. The following topics are covered in this lecture:

  • Introduction, CIA (Confidentiality, Integrity, Availability), System and Attacker Models, Threat Modeling
  • Access Control Policies
  • Crypto 1: Symmetric Cryptography
  • Crypto 2: Public Key Cryptography
  • Hashes and Integrity, TLS (Transport Layer Security) and Certificates
  • Network Security, Intrusion Detection
  • Software Security, OWASP Top 10
  • Operational Security, SIEMs (Security Information and Event Management), Threat Intelligence
  • Data Protection and Privacy
  • IoT Security in Healthcare

Teaching materials

Lecture slides, practial exercises

Supplementary literature

William Stallings, Computer Security, 4th Edition, Pearson, 2017 (not mandatory)
Sean P. Murphy, Healthcare Information Security and Privacy, 2015 (not mandatory)

Prerequisites

 

Teaching language

(X) German, materials in English

Part of International Profile

( ) Yes (X) No

Module structure

Typ 2a
  For more details please click on this link: T_CL_Modulauspraegungen_SM2025

Exams

Description Type Form Scope Grade Weighting
Graded assignments during teaching semester Exercises and group presentations Written/oral Typically 1 per semester week Grade 20%
End-of-semester exam Exam Written 90 min. Grade 80%

Remarks

 

Legal basis

The module description is part of the legal basis in addition to the general academic regulations. It is binding. During the first week of the semester a written and communicated supplement can specify the module description in more detail.
Course: Cyber Security und Datenschutz - Vorlesung
No.
t.BA.MI.CSDS.23HS.V
Title
Cyber Security und Datenschutz - Vorlesung

Note

  • No module description is available in the system for the cut-off date of 02 August 2099.