Skip to main content

Building Trust in Ecosystems and Ecosystem Components

Objective

Nowadays most of the ICT solutions developed by companies require the integration or collaboration with other ICT components, which are typically developed by third parties. Even though this kind of procedures are key in order to maintain productivity and competitiveness, the fragmentation of the supply chain can pose a high risk regarding security, as in most of the cases there is no way to verify if these other solutions have vulnerabilities or if they have been built taking into account the best security practices.
In order to deal with these issues, it is important that companies make a change on their mindset, assuming an “untrusted by default” position. According to a recent study only 29% of IT business know that their ecosystem partners are compliant and resilient with regard to security. However, cybersecurity attacks have a high economic impact and it is not enough to rely only on trust. ICT components need to be able to provide verificable guarantees regarding their security and privacy properties. It is also imperative to detect more accurately vulnerabilities from ICT components and understand how they can propagate over the supply chain and impact on ICT ecosystems. However, it is well known that most of the vulnerabilities can remain undetected for years, so it is necessary to provide advanced tools for guaranteeing resilience and also better mitigation strategies, as cybersecurity incidents will happen. Finally, it is necessary to expand the horizons of the current risk assessment and auditing processes, taking into account a much wider threat landscape. BIECO is a holistic framework that will provide these mechanisms in order to help companies to understand and manage the cybersecurity risks and threats they are subject to when they become part of the ICT supply chain. The framework, composed by a set of tools and methodologies, will address the challenges related to vulnerability management, resilience, and auditing of complex systems.

Field of science

  • /natural sciences/computer and information sciences/computer security
  • /natural sciences/biological sciences/ecology/ecosystems

Call for proposal

H2020-SU-ICT-2019
See other projects for this call

Funding Scheme

RIA - Research and Innovation action

Coordinator

UNINOVA-INSTITUTO DE DESENVOLVIMENTO DE NOVAS TECNOLOGIAS-ASSOCIACAO
Address
Campus Da Caparica Quinta Da Torre
2829-516 Caparica
Portugal
Activity type
Research Organisations
EU contribution
€ 469 375

Participants (10)

FRAUNHOFER GESELLSCHAFT ZUR FOERDERUNG DER ANGEWANDTEN FORSCHUNG E.V.
Germany
EU contribution
€ 588 412,50
Address
Hansastrasse 27C
80686 Munchen
Activity type
Research Organisations
CONSIGLIO NAZIONALE DELLE RICERCHE
Italy
EU contribution
€ 435 000
Address
Piazzale Aldo Moro 7
00185 Roma
Activity type
Research Organisations
UNIVERSITATEA TEHNICA CLUJ-NAPOCA
Romania
EU contribution
€ 431 250
Address
Str Memorandumului 28
400114 Cluj Napoca
Activity type
Higher or Secondary Education Establishments
FUNDACION CENTRO TECNOLOXICO DE TELECOMUNICACIONS DE GALICIA
Spain
EU contribution
€ 441 750
Address
Lagoas Marcosende
36330 Vigo
Activity type
Research Organisations
UNIVERSIDAD DE MURCIA
Spain
EU contribution
€ 439 687,50
Address
Avenida Teniente Flomesta S/n - Edificio Convalecencia
30003 Murcia
Activity type
Higher or Secondary Education Establishments
RESILTECH SRL
Italy
EU contribution
€ 408 750
Address
Via B Gigli 27 Latignano Pisa
56021 Cascina
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
HOLISUN SRL
Romania
EU contribution
€ 429 375
Address
Strada Carbunari 8
430397 Baia Mare
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
TTTECH AUTO AG
Austria
EU contribution
€ 420 382,50
Address
Operngasse 17-21
1040 Vienna
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
7BULLS.COM SPOLKA Z OGRANICZONA ODPOWIEDZIALNOSCIA
Poland
EU contribution
€ 395 000
Address
Ul. Al. Szucha 8
00 582 Warszawa
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
INTERACTIVE FULLY ELECTRICAL VEHICLES SRL
Italy
EU contribution
€ 540 625
Address
Via Carle 1
12048 Sommariva Del Bosco Cn
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)