Founding offer · lifetime membership for a single £24, exclusive to our first members · closes 20 June Claim your place →
Global Research Partnerships £24 Lifetime Log inCreate free account

Funded Projects › H2020

EU-SEC · The European Security Certification Framework

H2020Status: CLOSED1 January 201731 December 2019EU funding €2,997,813Call H2020-DS-2016-2017

In recent years the ICT market has evolved toward a cloud-based approach. This shift together with the rapidly changing legal and regulatory landscape has heavily impacted security assurance, governance and compliance. The information security market players have tried to provide suitable solutions to cope with issues such as i) lack of means to provide higher level of assurance (e.g continuous monitoring and auditing), ii) privacy not adequately taken into account, iii) limited transparency and iv) lack of means to streamline risk management and compliance. In the certification space this has resulted in the creation of several schemas creating an additional problem, i.e. the proliferation of certification scheme. The project EU-SEC will improve the effectiveness and efficiency of existing approaches for assurance and compliance. The EU-SEC aims to create a framework under which existing, certification and assurance approaches can co-exist. The three core ideas behind the EU-SEC project are that an effective and efficient approach to trust, assurance and compliance has to: (1) balance the need of nations and business sectors to develop their specific certification schemas with the need of CSPs to reduce compliance costs (2) avoid that humans (auditors) do activities that can be performed by machines (e.g. collecting data) (3) make sure that accurate and reliable evidences/information are provided to relevant people, in a timely fashion, leveraging as much as possible automatic means. The EU-SEC framework will equip stakeholders in the ICT security ecosystem with a validated governance structure, a reference architecture, and the corresponding set of tools to improve the efficiency and effectiveness of their current approach to security governance, risks management, assurance and compliance. The EU-SEC aims to enhancing trustworthiness and transparency in the ICT supply chain through business cases developed and piloted by industrial partners.

Consortium · 14 organisations

coordinator

FRAUNHOFER GESELLSCHAFT ZUR FORDERUNG DER ANGEWANDTEN FORSCHUNG EV

DE · €893,450

participant

PRICEWATERHOUSECOOPERS AKTIENGESELLSCHAFT WIRTSCHAFTSPRUFUNGSGESELLSCHAFT

DE · €89,250

participant

SIXSQ SA

CH

thirdParty

FABASOFT AUSTRIA GMBH

AT

participant

CAIXABANK SA

ES · €182,875

thirdParty

NIXU AB

SE

thirdParty

NIXU CERTIFICATION OY

FI

participant

MINISTERSTVO FINANCII SLOVENSKEJ REPUBLIKY

SK · €155,625

participant

CLOUD SECURITY ALLIANCE (EUROPE) LBG

UK · €929,375

participant

FABASOFT R&D GMBH

AT · €174,738

thirdParty

FABASOFT INTERNATIONAL SERVICES GMBH

AT

participant

NIXU OY

FI · €406,875

participant

MINISTRSTVO ZA JAVNO UPRAVO

SI · €165,625

thirdParty

NIXU BV

NL

Research fields

View the official record on CORDIS →

← Find collaborators and more funded projects

Source: CORDIS, Publications Office of the European Union. Global Research Partnerships surfaces open EU research data to help you find collaborators; we are not affiliated with the European Union.