Loading…
Loading grant details…
| Funder | European Commission |
|---|---|
| Recipient Organization | Consiglio Nazionale Delle Ricerche |
| Country | Italy |
| Start Date | Sep 01, 2024 |
| End Date | Aug 31, 2027 |
| Duration | 1,094 days |
| Number of Grantees | 14 |
| Roles | Participant; Coordinator |
| Data Source | European Commission |
| Grant ID | 101168144 |
The growing level of interconnectedness of digital services and infrastructures creates tight and recursive security interdependencies between their providers, which are challenging to address due to the fragmentation of cybersecurity operations. This requires each provider to improve the security posture of its suppliers.
However, existing practice, largely based on human interaction for disclosing vulnerabilities, reporting alerts, and suggesting remediations, demonstrates to be largely ineffective and risky.The MIRANDA project aims at operationalising awareness and remediation controls for service supply chains, by addressing feasibility, acceptance, and compliance issues.
To this purpose, MIRANDA develops a Cybersecurity Digital Twin (CDT) to model and capture the security posture of such interconnected systems, which is used to detect, hunt, and remediate threats and attacks.
The CDT will feature: i) functional and topological representation of digital services; ii) bidirectional control/monitoring data flow with real systems; iii) modelling and behavioural prediction of individual components and whole systems; iv) opaque representation of suppliers’ assets based on confidentiality and privacy requirements.
The framework also encompasses the necessary security controls to safely exchange data and controls between providers.
On top of the CDT abstraction, MIRANDA builds adaptive and automated processes for threat hunting, detection of lateral movements, and eradication of the root causes of attacks.Validation of individual components and the overall MIRANDA platform will be conducted in three relevant Use Cases, covering different platforms for Smart City services.
The purpose will be to demonstrate the adaptability to the evolving context and the effectiveness to stop latest-generation cyber kill-chains and lateral movements across digital chains. The Project will also consider the new business and operational models that are required to run the platform.
Naukowa I Akademicka Siec Komputerowa - Panstwowy Instytut Badawczy; Ait Austrian Institute of Technology Gmbh; Space Hellas Anonymi Etaireia Systimata Kai Ypiresies Tilepikoinonionpliroforikis Asfaleias - Idiotiki Epicheirisi Parochis Yperision Asfa; Dimos Athinaion Epicheirisi Michanografisis; Gioumpitek Meleti Schediasmos Ylopoiisi Kai Polisi Ergon Pliroforikis Etaireia Periorismenis Efthynis; Stelar Security Technology Law Research Ug (Haftungsbeschrankt) Gmbh; Consiglio Nazionale Delle Ricerche; One Source Consultoria Informatica Lda; Politecnico Di Torino; Wobcom Gmbh Wolfsburg Fur Telekommunikation Und Dienstleistungen; Logstail Single Member Privatecompany; Sphynx Analytics Limited; Mindicity S.R.L. Societa Benefit; Plaixus Limited
Complete our application form to express your interest and we'll guide you through the process.
Apply for This Grant