WP6 – Risk Analysis and Mitigation Strategies

 Coordinated by
RES (M01-M16)

Objective

This work package researches and develops a methodology for continuous risk assessment process on the ICT supply chain, such that the system is continuously analyzed for potential weaknesses, and corresponding mitigation strategies can be enacted using BIECO solutions.

This WP has the following concrete objectives:

  1. To identify in an automated fashion main threats, including those that could also derive in a physical hazard in a cyber-physical system.
  2. To compute the severity of the consequences of threats and hazards.
  3. To make the link between systems’ internal security causes and their possible safety hazards explicit, e.g. in failure logic models such as Component Fault Trees.
  4. To define mitigation strategies.
  5. Out of both design time risk assessment models and mitigation strategies, runtime risk management models shall be synthesized systematically that are suitable to support runtime resilience mechanisms defined in WP4.
  6. Design and develop security, privacy and accountability measures for all the entities involved in the supply chain.

Envisioned mitigations range from process-based to architecture-based as well as related to the introduction of new patches and error detectors. The WP will ultimately produce a methodology and supporting tools for the systematic and automated i) analysis of risks, and ii) identification of mitigations that shall be equipped in the BIECO framework.

Deliverables

Outcomes

WP7 monthly meeting M18

WP7 monthly meeting M18

WP7 has closed its second task, finishing the security evaluation methodology that is intended to be instantiated in the last task of the WP. Currently, we are working very hard on the demo for the project intermediate review in which we will show pieces of the...

WP7 monthly meeting M17

WP7 monthly meeting M17

In the monthly meeting of 10th January, WP7 is working on the security evaluation methodology that should be finished by next month. We are reviewing the details of the deliverable that will contain all the information about the methodology. Regarding T7.3, 7bulls...

WP8 Monthly Meeting

WP8 Monthly Meeting

WP8 Monthly MeetingOn 7th of December 2021 WP8 partners have gathered for the regular monthly meeting of the work package. Some aspects were defined, like what endpoints will the tools use in relation with the orchestrator, and the initial architecture of the...

WP6 monthly meeting M16

WP6 monthly meeting M16

The 6th December took place the WP6 monthly meeting. During the meeting IESE summarized the status of T6.3 and D6.4. Additional enhancements to the T6.3 activities and further work were discussed. 7Bulls updated on the status of their tool and use case, and discussed...

Workshop “FUTURE PROOFING AND CERTIFYING SUPPLY CHAINS”

Workshop “FUTURE PROOFING AND CERTIFYING SUPPLY CHAINS”

The Clustering Workshop co-organized by EU-funded projects ASSURED, and CYRENE aims at bringing together projects that target Supply Chain Security, Resilience and Certification aspects, experts, members and consultants from standardization and certification bodies...

BIECO Project

SUBSCRIBE and become part of the BIECO community!

We don’t spam!

Share This