Incorporating security components into database courses

Mário André Mayerhofer Guimarães, Herbert J. Mattord, Richard Austin · 2004

This paper describes information security topics to be presented in a course that provides instruction on the principles of database technology. Besides the customary coverage of securing the contents of databases (which is often presented in most courses of this type) we propose that is necessary to include instruction on other topics, such as securing the DBMS software, patch and version management of the DBMS application itself, issues and best practices surrounding security of database enable applications, impact of the security of the underlying Operating System on the security of the DBMS and the data it contains, impact of network security on the secure usage of DBMS systems and the impact of security issues facing web and application servers that may be closely coupled to the database. The use of projects with and without lab support will be a final discussion point. The topics itemized above should be present in all introductory database course. More advanced courses, should find more extensive coverage of these topics which should often be elaborated through the use of projects and accompanying labs.

Read the paper · More papers on PaperTik