Dr. Christopher Schmitz
External Members
![]() |
|
Research Interests
- Information security risk management, particularly risk assessment
- Decision support in information security
Curriculum Vitae
Christopher Schmitz was a researcher in Professor Rannenberg’s research group. He holds a doctoral degree in computer science from the Goethe University Frankfurt. Prior to that, he obtained a Bachelor's and a Master's degree in business informatics from the Technical University of Darmstadt. Alongside his full undergraduate and graduate studies, he gained hands-on experience in penetration testing at the Fraunhofer Institute for Secure Information Technology (SIT).
Reviewing Activities
He also regularly served as a reviewer for the following journals, conferences and workshops:
- Computers & Security
- European Symposium on Research in Computer Security (ESORICS)
- International Conference on ICT Systems Security and Privacy Protection (IFIP SEC)
- IEEE International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom)
- International Conference on Risks and Security of Internet and Systems (CRiSIS)
- Nordic Conference on Secure IT Systems (NordSec)
- International Conference on Information and Communications Security (ICICS)
- Multikonferenz Wirtschaftsinformatik (MKWI)
- Sicherheit
- International Conference of the Biometrics Special Interest Group (BIOSIG)
- IFIP Conference on Information Technology in Disaster Risk Reduction (ITDRR)
- International Conference on Security Standardisation Research (SSR)
- International Workshop on Security (IWSEC)
- Open Identity Summit (OID)
- CyberHunt
- Sensyble
Publications
Refereed Publications
- Schmitz, Christopher; Schmid, Michael; Harborth, David; Pape, Sebastian. 2021. "Maturity Level Assessments of Information Security Controls: An Empirical Analysis of Practitioners' Assessment Capabilities", Computers & Security, Vol. (108), Elsevier.
- Schmitz, Christopher; Pape, Sebastian. 2020. "LiSRA: Lightweight Security Risk Assessment for Decision Support in Information Security", Computers & Security, Vol. (90), Elsevier.
- Pape, Sebastian; Schmitz, Christopher; Kipker, Dennis-Kenji; Sekulla, André. 2020. "On the Use of Information Security Management Systems by German Energy Providers", In: Fourteenth Annual IFIP WG 11.10 International Conference on Critical Infrastructure Protection (ICCIP 2020), Arlington, Virginia, USA.
- Schmitz, Christopher; Sekulla, André; Pape, Sebastian. 2020. "Asset-Centric Analysis and Visualisation of Attack Trees", In: Proceedings of the 7th International Workshop on Graphical Models for Security (GraMSec 2020), Boston, Massachusetts, USA.
- Sekulla, André; Schmitz, Christopher; Pape, Sebastian; Pipek, Voklmar. 2019. "Demonstrator zur Beschreibung und Visualisierung einer kritischen Infrastruktur", In: Human Practice. Digital Ecologies. Our Future. Proceedings of the 14th International Conference on Wirtschaftsinformatik (WI 2019), 2019, Siegen, Germany.
- Schmitz, Christopher; Sekulla, André; Pape, Sebastian; Pipek, Volkmar; Rannenberg Kai. 2018. "Easing the Burden of Security Self-Assessments", In: Proceedings of the 12th International Symposium on Human Aspects of Information Security & Assurance (HAISA 2018), Dundee, Scotland.
- Dax, Julian; Hamburg, Daniel; Kreusch, Michael; Ley, Benedikt; Pape, Sebastian; Pipek, Volker; Rannenberg, Kai; Schmitz, Christopher; Terhaag, Frank. 2016. "Sichere Informationsinfrastrukturen für kleine und mittlere Energieversorger", Multikonferenz Wirtschaftsinformatik (MKWI 2016), Teilkonferenz IT-Sicherheit für Kritische Infrastrukturen (Poster), Ilmenau, Germany.
- Dax, Julian; Ley, Benedikt; Pape, Sebastian; Schmitz, Christopher; Pipek, Volkmar; Rannenberg, Kai. 2016. "Elicitation of Requirements for an Inter-Organizational Platform to Support Security Management Decisions", In: Proceedings of the 10th International Symposium on Human Aspects of Information Security & Assurance (HAISA 2016), Frankfurt, Germany.
- Chehrazi, Golriz; Schmitz, Christopher; Hinz, Oliver. 2015. "QUANTSEC - Ein Modell zur Nutzenquantifizierung von IT-Sicherheitsmaßnahmen", In: Proceedings of the 12th International Conference on Wirtschaftsinformatik (WI 2015), Eds. Oliver Thomas; Frank Teuteberg, Osnabrück, Germany.
Others
- Pape, Sebastian; Pipek, Volkmar; Rannenberg, Kai; Schmitz, Christopher; Sekulla, André; Terhaag, Frank. 2018. "Stand zur IT-Sicherheit deutscher Stromnetzbetreiber", Technical Report, https://dokumentix.ub.uni-siegen.de/opus/volltexte/2018/1394/, Universität Siegen.
- Dax, Julian; Ley, Benedikt; Pape, Sebastian; Pipek, Volker; Rannenberg, Kai; Schmitz, Christopher; Sekulla, André. 2017. "Stand zur IT-Sicherheit deutscher Stromnetzbetreiber", Technical Report, http://dokumentix.ub.uni-siegen.de/opus/volltexte/2017/1185, Universität Siegen.
- Dax, Julian; Ivan, Ana; Ley, Benedikt; Pape, Sebastian; Pipek, Volker; Rannenberg, Kai; Schmitz, Christopher; Sekulla, Andre. 2017. "IT Security Status of German Energy Providers", Technical Report, https://arxiv.org/abs/1709.01254, Cornell University, arXiv.
Book Chapters
- Dax, Julian; Pape, Sebastian; Pipek, Volkmar; Rannenberg, Kai; Schmitz, Christopher; Sekulla, André; Terhaag, Frank. 2018. "Das SIDATE-Portal im Einsatz", State of the Art: IT-Sicherheit für Kritische Infrastrukturen, pp. 145-150, Universität der Bundeswehr, Neubiberg.
- Dax, Julian; Hamburg, Daniel; Pape, Sebastian; Pipek, Volkmar; Rannenberg, Kai; Schmitz, Christopher; Sekulla, André; Terhaag, Frank. 2018. "Sichere Informationsnetze bei kleinen und mittleren Energieversorgern (SIDATE)", State of the Art: IT-Sicherheit für Kritische Infrastrukturen, pp. 29, Universität der Bundeswehr, Neubiberg.
- Dax, Julian; Pape, Sebastian; Pipek, Volkmar; Rannenberg, Kai; Schmitz, Christopher; Sekulla, André; Terhaag, Frank. 2018. "Stand der IT-Sicherheit bei deutschen Stromnetzbetreibern", State of the Art: IT-Sicherheit für Kritische Infrastrukturen, pp. 69-74, Universität der Bundeswehr, Neubiberg.
- Hamburg, Daniel; Niephaus, Thorsten; Noll, Wolfgang; Pape, Sebastian; Rannenberg, Kai; Schmitz, Christopher. 2018. "SIDATE: Gefährdungen und Sicherheitsmaßnahmen", In: State of the Art: IT-Sicherheit für Kritische Infrastrukturen, Eds. Rudel, D. and Lechner, U., pp. 51, Universität der Bundeswehr, Neubiberg.