|  | 
        
        
          |  |  |  |  | 
            Master of Eng. in Automation & IT
 |  |  Automation & IT
  Course  Modules  Communication and Security Industrial Communication and Information Security
Qualification aims 
This module enables students to design, manage, and secure industrial automation systems by equipping them with the knowledge of industrial communication components, IT-security systems, real-time Ethernet solutions, and cybersecurity practices, thereby preparing them to protect critical infrastructure against cyber threats and adapt to emerging technologies.
 Students can
 
identify and describe the key components of industrial communication systemsevaluate, plan and configure industrial IT-security systemsimplement secure communication practicesevaluate the impact of emerging technologies 
by 
understanding the principles of real-time ethernet solutions and their applications in automation including e.g. TSN, PROFINET and OPC UAunderstanding the difference of horizontal and vertical communicationgaining detailed knowledge and experience in PROFINET regarding concept, engineering, diagnosis and maintenanceunderstanding the requirements and functionality of network devices and controllersanalyzing and evaluating network traffic in real-time applications by means of toolsinstalling and configuring network devicesplanning and commissioning of network installationsunderstanding connectivity architectures, current technologies and protocols for industrial applicationsunderstanding the special prerequisites of industrial IT technologies vs. office environmentsevaluating the pros and cons of various protocolsunderstanding industrial security objectives (availability, integrity, confidentiality)analyzing security objectives in IT and industrial automation scenarioscomprehending international security standards for automation such as IEC 62443 or VDI 2182determining and evaluating system security vulnerabilitiesunderstanding and applying risk analysis methods to develop and evaluate measuresevaluating typical threats, risks and measures in industrial automation scenariosdeveloping methods to determine vulnerabilitiesunderstand encryption methodology incl. signaturesestimating security tool limitationsunderstanding, planning and configuring firewall technologyapplying principles of cybersecurity to industrial networksrecognizing relationships between topics such as safety and security 
to 
be able to design, manage and maintain industrial automation systemsprotect critical automation and information systems against cyber threatsanticipate and prepare for future challenges 
 
Module Content 
Industrial Communication 
Ethernet-based industrial communication (focus on PROFINET)Functional principles of ethernet-based field bus systemsNew trends and developments such as TSNNetwork analysis of real-time Ethernet networksNetwork devices (switches, routers)Architecture of plant networks vs. corporate networksIntegration of plant network and corporate networkPractical part:PROFINET engineering and commissioning workshopConfiguring network devicesDesigning and configuring PROFINET applications including M2M 
 
 
IT/OT-Security 
Introduction into basic terms of IT/OT securityThe Information security management systemInternational standards on IT security, e.g. IEC 62443, ISO 27001Cryptographic procedures as mechanisms to achieve security objectives current cryptographic standardsIT/OT-related European regulations such as NIS2, CRAPrinciples and mechanisms of authenticationTCP/IP based network and service security (weaknesses, attacks, examples)Firewall and IPS systems (application level gateways, packet filters, remote access)Specific requirements and conditions of industrial automationThreads and risk assessment, introduction into secure product designSecurity aspects of Ethernet based automation protocolsFunctional security limitations and interfacesDesign aspects and typical architectures of secure automation devices and systemsVulnerability Test and development of test cases for benchmarks and aditsSecurity & Safety 
 
Bibliography 
Klasen, F. et al.; Industrial Communication with Fieldbus and Ethernet VDE Verlag, 2011, ISBN 978-3-8007-3358-3Anderson, Ross: Security Engineering, John Wiley & Sons Inc, 2001Eckert, Claudia: IT-Sicherheit. Konzepte Verfahren Protokolle, Oldenbourg, 2006Schneier, Bruce: Practical Cryptography, John Wiley & Sons, 2003Schneier, Bruce: Secrets & Lies. IT-Sicherheit in einer vernetzten Welt, Dpunkt Verlag, 2006http://www.securityfocus.com (aktuelle Sicherheitsmeldungen)Normen und Richtlinien: Manufacturing and Control Systems Security ISA SP99 VDE/VDI 2182IEC 62443 norm seriesBSI Publications on ISO 27001 / “BSI Grundschutz”Pohlmann, Norbert: Cyber-Sicherheit, Springer Verlag, 2022Schulz, Thomas: Cyber-Sicherheit für vernetzte Anwendungen in der In-dustrie 4.0, Vogel Verlag, 2020Kobes, Pierre: Leitfaden Industrial Security, VDE Verlag, 2024 
 
 |