MTech Database Security syllabus for 3 Sem 2020 scheme 20SCE332

Module-1 Introduction 0 hours

Introduction:

Introduction to Databases, Security Problems in Databases Security Controls Conclusions. Security Models 1: Introduction, Access Matrix Model, Take-Grant Model, Acten Model, PN Model, Hartson and Hsiao's Model, Fernandez's Model, Bussolati and Martella's Model for Distributed databases.

Module-2 Security Models 2 0 hours

Security Models 2:

Bell and LaPadula's Model, Biba's Model, Dion's Model, Sea View Model, Jajodia and Sandhu's Model, The Lattice Model for the Flow Control conclusion. Security Mechanisms: Introduction, User Identification/Authentication, Memory Protection, Resource Protection, Control Flow Mechanisms, Isolation, Security Functionalities in Some Operating Systems, Trusted Computer System, Evaluation Criteria.

A d v e r t i s e m e n t
Module-3 Security Software Design 0 hours

Security Software Design:

Introduction, A Methodological Approach to Security, Software Design, Secure Operating System Design, Secure DBMS Design, Security Packages, Database Security Design.

Module-4 Statistical Database Protection & Intrusion Detection Systems 0 hours

Statistical Database Protection & Intrusion Detection Systems:

Introduction, Statistics, Concepts and Definitions, Types of Attacks, Inference Controls, evaluation Criteria for Control Comparison, Introduction IDES System, RETISS System, ASES System Discovery.

Module-5 Models For The Protection Of New Generation Database Systems 1 0 hours

Models For The Protection Of New Generation Database Systems 1:

Introduction, A Model for the Protection of Frame Based Systems, A Model for the Protection of Object-Oriented Systems, SORION Model for the Protection of Object-Oriented Databases. Models For The Protection Of New Generation Database Systems 2: A Model for the Protection of New Generation Database Systems, the Orion Model, Jajodia and Kogan's Model, A Model for the Protection of Active Databases Conclusions.

 

Course outcomes:

At the end of the course the student will be able to:

  • Carry out a risk analysis for a large database
  • Implement identification and authentication procedures, fine-grained access control and data encryption techniques
  • Set up accounts with privileges and roles
  • Audit accounts and the database system

 

Question paper pattern:

The SEE question paper will be set for 100 marks and the marks scored will be proportionately reduced to 60.

  • The question paper will have ten full questions carrying equal marks.
  • Each full question is for 20 marks.
  • There will be two full questions (with a maximum of four sub questions) from each module.
  • Each full question will have sub question covering all the topics under a module.
  • The students will have to answer five full questions, selecting one full question from each module.

 

Textbook/ Textbooks

1 Database Security and Auditing Hassan A. Afyoun CENGAGE Learning 2009

2 Database Security Castano Pearson Education

 

Reference Books

1 Database security Alfred Basta, Melissa Zgola CENGAGE learning