WP6 – Risk Analysis and Mitigation Strategies
Coordinated by
RES (M01-M16)
Objective
This work package researches and develops a methodology for continuous risk assessment process on the ICT supply chain, such that the system is continuously analyzed for potential weaknesses, and corresponding mitigation strategies can be enacted using BIECO solutions.
This WP has the following concrete objectives:
- To identify in an automated fashion main threats, including those that could also derive in a physical hazard in a cyber-physical system.
- To compute the severity of the consequences of threats and hazards.
- To make the link between systems’ internal security causes and their possible safety hazards explicit, e.g. in failure logic models such as Component Fault Trees.
- To define mitigation strategies.
- Out of both design time risk assessment models and mitigation strategies, runtime risk management models shall be synthesized systematically that are suitable to support runtime resilience mechanisms defined in WP4.
- Design and develop security, privacy and accountability measures for all the entities involved in the supply chain.
Envisioned mitigations range from process-based to architecture-based as well as related to the introduction of new patches and error detectors. The WP will ultimately produce a methodology and supporting tools for the systematic and automated i) analysis of risks, and ii) identification of mitigations that shall be equipped in the BIECO framework.
Deliverables
- D6.1 Blockly4SoS model and simulator WP6 (7 – RESILTECH) Report Public M10
- D6.2 Blockly4SoS user guide WP6 (7 – RESILTECH) Report Public M12
- D6.3 Risk Assessment and additional requirements WP6 (10 – 7BULLS) Report Public M24
- D6.4 Mitigations identification and their design WP6 (2 – Fraunhofer) Report Public M16
Outcomes
Bieco WP3 kickoff meeting
On 10th November 2020, we had a remote Kickoff Meeting for WP3 of the European cybersecurity project @bieco_org. We discussed about the architecture, requirements and use case definitions. Due to COVID-19 situation, the meeting was held online on Zoom platform....
Bieco WP6 – Kick off meeting
On 7th October 2020, a remote Kickoff Meeting for the WP6 of the European cybersecurity project @bieco_org took place. It was a great meeting with participants from Italy (RES, CNR and IFEVS), Portugal (UNI), Germany (IESE), Spain (UMU), and Poland (7B). Due to...
Bieco WP2 kickoff meeting
On 4th November 2020, we had a remote Kickoff Meeting for WP2 of the European cybersecurity project @bieco_org. We discussed about the architecture, requirements and use case definitions. It was a great meeting with participants from Portugal, Germany, Italy, Romania,...
ISTI DAY
ISTI DAY is the official annual meeting devoted to the communication and dissemination of the activities of the institute. The event is primarily targeted at the ISTI community, but anyone interested can join the event Typically the event includes a speech...
WP6 monthly meeting M3
The 2nd November took place the WP6 monthly meeting. We decided to start investigating possible contributions of the MUD standard in the System-of-Systems (SoS) modelling and in the definition of the interfaces between modelled components. The first WP6 monthly...
Bieco kickoff meeting – online
On 13th October 2020 , the BIECO consortium gathered to kickstart the Horizon 2020 project together, with participants from Portugal, Germany, Italy, Romania, Spain, Austria and Poland. Due to COVID-19 situation, the meeting was held online on Zoom platform. MEETING...