Lecture 4: April 6, 2026
Reading:
text
, §14, [1]
Assignments:
Homework 1, due April 10, 2026
Greetings and felicitations!
Principles of secure design (
con’t
.)
Simplicity and restrictiveness
Principle of open design
Principle of separation of privilege
Principle of least common mechanism
Principle of least astonishment
Privacy
What it is
Relationship to confidentiality
Principles of privacy by design
Proactive not reactive; preventive not remedial
Privacy as the default setting
Privacy embedded into design
Full functionality — positive-sum, not zero-sum
End-to-end security — full lifecycle protection
Visibility and transparency — keep it open
Respect for user privacy — keep it user-centric
Access Control Matrix
References
A. Cavoukian, “Privacy by Design: The Seven Foundational Principles,”
The Sedona Conference Institute
(May 2010). {\sc url}:
https://www.thesedonaconference.org/sites/default/files/conference_papers/Recommended%20%5B08b%5D%20Privacy%20By%20Design_Cavoukian.pdf
.
Matt Bishop
Office: 2209 Watershed Sciences
Phone: +1 (530) 752-8060
Email:
mabishop@ucdavis.edu
ECS 153A, Computer & Information Security & Privacy I
Version of April 7, 2026 at 3:32PM
You can also obtain a PDF version of this.