Skip to main content
CORDIS - Forschungsergebnisse der EU
CORDIS

Agile conformance assessment for cybersecurity CERTIFication enhanced by Artificial Intelligence

Projektbeschreibung

KI-gestützte IKT-Zertifizierung

Aktuell kosten Cyberangriffe jedes Jahr etwa 5,5 Billionen EUR, sodass dringend robustere Cybersicherheit notwendig ist. Das Team des EU-finanzierten Projekts CERTIFAI stellt sich der Herausforderung. Übliche Konformitätsbewertungen reichen in der schnelllebigen Technologielandschaft von heute nicht mehr aus, sodass Produkte anfällig für Cyberbedrohungen sind. Über CERTIFAI soll dieser Ansatz mit einem offenen Software-Rahmen revolutioniert werden, in dem IKT-Produkte und -Dienstleistungen dauerhaft mithilfe von KI geprüft und erneut zertifiziert werden. Aufbauend auf den Anforderungen und Normen aus dem EU-Rechtsakt zur Cybersicherheit gewährleistet das CERTIFAI-Team, dass zertifizierte Produkte für die gesamte Nutzungsdauer konform sind. Mit diesem bahnbrechenden Projekt wird ein sichereres und vertrauenswürdigeres digitales Umfeld in der Europäischen Union geschaffen, in dem Privatpersonen wie Unternehmen vor allgegenwärtigen Cyberbedrohungen sicher sind.

Ziel

According to the EU Cyber Resilience Act, “hardware and software products are increasingly subject to successful cyberattacks, leading to an estimated global annual cost of cybercrime of EUR 5.5 trillion by 2021”. This is due to a low level of cybersecurity, reflected by widespread vulnerabilities and inadequate approaches for identifying and mitigating the rapidly and constantly evolving cyber threats and vulnerabilities, as well as ensuring continuous compliance with regulations, industry standards, and best practices. To reduce the impact of cyberattacks and increase the resilience of digital technologies, it is essential to assess the conformity to security standards of ICT products, services, and processes throughout their life cycle. However, the traditional conformity assessment process is predominantly a static and expensive one-time assurance activity that does not cater to the needs of agile product delivery, which promotes continuous product updates and upgrades, and often changes in requirements. Each such update opens doors to product vulnerabilities, and consequently poses cyber risks for product users and companies’ reputation. To avoid these issues, it is essential to enable a partial and continuous lean re-certification of ICT products, services, and processes, to empower manufacturers to prevent, detect, counter and quickly respond to cyber threats.
In response to these challenges, the CERTIFAI project will develop an open software framework for cost-effective AI-driven continuous assessment and (re-)certification of ICT products and services, paving the way for a more secure and trustworthy EU’s digital world. Building on the EU Cybersecurity Act, CERTIFAI will leverage the established cybersecurity requirements, standards, and technical specifications to deliver an efficient approach for ensuring that a product, once certified, will continue to be compliant with relevant standards throughout its life cycle.

Koordinator

FUNDACION TECNALIA RESEARCH & INNOVATION
Netto-EU-Beitrag
€ 629 337,50
Adresse
PARQUE CIENTIFICO Y TECNOLOGICO DE GIPUZKOA, PASEO MIKELETEGI 2
20009 DONOSTIA-SAN SEBASTIAN (GIPUZKOA)
Spanien

Auf der Karte ansehen

Region
Noreste País Vasco Gipuzkoa
Aktivitätstyp
Research Organisations
Links
Gesamtkosten
€ 629 337,50

Beteiligte (10)