Description du projet Trustworthy ICT Afficher les objectifs du projet Masquer les objectifs du projet The Cloud offers attractive options to migrate corporate applications without the corporate security manager needing to manage or secure any physical resources. While this "ease" is appealing, several security issue arise:* Can the validity of corporate legal compliance regulations still be ensured over remote data storage?* With security sensitive data residing remotely with the Cloud Service Provider (CSP), can access of unauthorized CSP personnel to your data be restricted?* How does one assess a CSP's ability to meet the corporate security requirements and the security trades-offs offered by different CSPs?* Can one monitor and enforce the agreed Cloud security levels with the CSP?No comprehensive and easily usable solutions exist for these issues.SPECS solves this problem, offering:* Mechanisms to specify Cloud security requirements and assess the standalone and comparative security features offered by CSPs.* Ability to integrate desired corporate security services (eg. credential and access management) into Cloud services.* Systematic approaches to negotiate, monitor and enforce the security parameters specified in Service Level Agreements (SLA).* Approaches to develop and deploy security services that are "Cloud SLA-aware", implemented as an open-source Platform-as-a-Service (PaaS).Providing such comprehensible and enforceable security assurance by CSP's is a critical factor to deploy trustworthy Cloud ecosystems. Targeting ICT-2013.1.5 "Trustworthy ICT", SPECS will develop and implement an open source framework to offer Security-as-a-Service, by relying on the notion of security parameters specified in Service Level Agreements (SLA) and providing the techniques to systematically manage their life-cycle.The SPECS framework addresses both CSP's and users to provide techniques and tools for:a) Enabling user-centric negotiation of security parameters in Cloud SLA, along with a trade-off evaluation process among users and CSPs, in order to compose Cloud services fulfilling a minimum required security level.b) Monitoring in real-time the fulfillment of SLAs agreed with CSPs, notifying both users and CSPs, when a SLAs not being fulfilled.c) Enforcing agreed SLA in order to keep a sustained Quality of Security (QoSec) that fulfills the specified security parameters. SPECS' enforcement framework will also "react and adapt" in real-time to fluctuations in the QoSec by advising/applying the requisite countermeasures.The proposed framework will be based on an open-source core, and offer simple interfaces to motivate its adoption. It will offer a set of reusable PaaS components for service developers to enable them to integrate SPECS' SLA-oriented security mechanisms into existing Cloud services.Using real case studies SPECS will demonstrate that the contributed framework and architecture can be integrated "as-a-Service" into real life Cloud environments, with a particular emphasis on small/medium/federated CSP and end users. Champ scientifique natural sciencescomputer and information sciencescomputer securitynetwork securitynatural sciencesbiological sciencesecologyecosystems Programme(s) FP7-ICT - Specific Programme "Cooperation": Information and communication technologies Thème(s) ICT-2013.1.5 - Trustworthy ICT Appel à propositions FP7-ICT-2013-10 Voir d’autres projets de cet appel Régime de financement CP - Collaborative project (generic) Coordinateur CENTRO REGIONALE INFORMATION E COMMUNICATION TECHNOLOGY SCARL Contribution de l’UE € 612 136,00 Adresse VIA TRAIANO PALAZZO EX POSTE SNC 82100 Benevento Italie Voir sur la carte Région Sud Campania Benevento Type d’activité Research Organisations Contact administratif Massimiliano Rak (Prof.) Liens Contacter l’organisation Opens in new window Coût total Aucune donnée Participants (6) Trier par ordre alphabétique Trier par contribution de l’UE Tout développer Tout réduire TECHNISCHE UNIVERSITAT DARMSTADT Allemagne Contribution de l’UE € 565 720,00 Adresse KAROLINENPLATZ 5 64289 Darmstadt Voir sur la carte Région Hessen Darmstadt Darmstadt, Kreisfreie Stadt Type d’activité Higher or Secondary Education Establishments Contact administratif Neeraj Suri (Prof.) Liens Contacter l’organisation Opens in new window Site web Opens in new window Coût total Aucune donnée INSTITUTO CIENTIFICO DE INNOVACION Y TECNOLOGIAS APLICADAS DE NAVARRA Participation terminée Espagne Contribution de l’UE € 0,00 Adresse CARRETERA ARTICA KM 29 7 PLANTA 31013 BERRIOPLANO NAVARRA Voir sur la carte Type d’activité Private for-profit entities (excluding Higher or Secondary Education Establishments) Contact administratif Daniel Chavarri Artal (Mr.) Liens Contacter l’organisation Opens in new window Coût total Aucune donnée EMC INFORMATION SYSTEMS INTERNATIONAL UNLIMITED COMPANY Irlande Contribution de l’UE € 227 040,00 Adresse IDA INDUSTRIAL SITE P31 Ovens Voir sur la carte Région Ireland Southern South-West Type d’activité Private for-profit entities (excluding Higher or Secondary Education Establishments) Contact administratif Said Tabet (Dr.) Liens Contacter l’organisation Opens in new window Site web Opens in new window Coût total Aucune donnée INSTITUTUL E-AUSTRIA TIMISOARA Roumanie Contribution de l’UE € 220 800,00 Adresse BD. VASILE PARVAN 4-6 300223 Timisoara Voir sur la carte Région Macroregiunea Patru Vest Timiş Type d’activité Research Organisations Contact administratif Dana Petcu (Prof.) Liens Contacter l’organisation Opens in new window Coût total Aucune donnée XLAB RAZVOJ PROGRAMSKE OPREME IN SVETOVANJE DOO Slovénie Contribution de l’UE € 380 160,00 Adresse POT ZA BRDOM 100 1000 Ljubljana Voir sur la carte Région Slovenija Zahodna Slovenija Osrednjeslovenska Type d’activité Private for-profit entities (excluding Higher or Secondary Education Establishments) Contact administratif Laura Pipan Petan (Mrs.) Liens Contacter l’organisation Opens in new window Site web Opens in new window Coût total Aucune donnée CLOUD SECURITY ALLIANCE (EUROPE) LBG Royaume-Uni Contribution de l’UE € 394 144,00 Adresse MELVILLE STREET 34 EH3 7A Edinburgh Voir sur la carte Région Scotland Eastern Scotland Edinburgh Type d’activité Other Contact administratif John Howie (Dr.) Liens Contacter l’organisation Opens in new window Coût total Aucune donnée