Realizing the benefits of safety-security co-analysis through effective tool support

RUBICON aims to develop a proof-of-concept software tool for integrated safety-security risk analysis in technology, enhancing decision-making through advanced algorithms and multi-objective optimization.

Subsidie
€ 150.000
2024

Projectdetails

Introduction

Effective tool support for the joint analysis of safety and security risks is long overdue.

Importance of Risk Management

Risk management is an important activity to ensure the reliable functioning of technology, such as power plants and self-driving cars. Risks include both safety (accidental failures) and security aspects (malicious attacks). Historically, safety and security risks have been analyzed in isolation, despite often conflicting with each other.

Effective decision-making requires considering safety and security risks in combination, as measures that increase safety may decrease security and vice versa.

CAESAR Framework

My Consolidator Grant CAESAR has laid out the groundwork for a safety-security co-analysis framework:

  1. A graphical risk model, mapping how vulnerabilities and failures propagate and cause system-level disruptions.
  2. Efficient algorithms to compute risk metrics, indicating how well a system performs in terms of safety-security.
  3. Algorithms that quantify the uncertainty of the analysis algorithms.

RUBICON Project Goals

In RUBICON, I will develop a proof-of-concept (PoC) software tool that supports methods from CAESAR, advancing from TRL1 to TRL3. Key challenges to be tackled include:

  • Scaling up analysis methods to handle industry-size problems by tailoring algorithms to work with specific subclasses that appear in practice.
  • Improving the interpretability of calculated outcomes. We will develop diagnostic feedback methods based on counterexample analysis and importance factors.
  • Multi-objective optimization techniques. When dealing with multiple, interdependent parameters, conflicting requirements often arise due to resource constraints and varying priorities. RUBICON will develop optimal strategies to effectively balance such conflicts, exploiting and advancing Pareto-analysis.

Testing and Commercialization

The proof-of-concept tool will be tested and validated via lab and pilot studies across different industrial domains. A serious market analysis will lay out an actionable strategy to commercialize the PoC tool post-project.

Financiële details & Tijdlijn

Financiële details

Subsidiebedrag€ 150.000
Totale projectbegroting€ 150.000

Tijdlijn

Startdatum1-12-2024
Einddatum31-5-2026
Subsidiejaar2024

Partners & Locaties

Projectpartners

  • UNIVERSITEIT TWENTEpenvoerder

Land(en)

Netherlands

Vergelijkbare projecten binnen European Research Council

ERC Consolid...

Resilient and Sustainable Software Security

The RS³ project aims to enhance software security by developing resilient and sustainable countermeasures through innovative testing, secure compilers, attack mitigation, and hardware improvements.

€ 1.998.851
ERC Advanced...

Breaching the boundaries of safety and intelligence in autonomous systems with risk-based rationality

This project aims to develop a comprehensive risk-based autonomy framework for autonomous systems, enhancing safety and decision-making in marine environments through advanced modeling and human supervision.

€ 2.499.773
ERC Starting...

Systematic and computer-aided performance certification for numerical optimization

The project aims to enhance theoretical foundations of numerical optimization to bridge the gap between theory and practice, developing robust algorithms and certification tools for complex applications.

€ 1.497.650
ERC Consolid...

CertiFOX: Certified First-Order Model Expansion

This project aims to develop methodologies for ensuring 100% correctness in combinatorial optimization solutions by providing end-to-end proof logging from user specifications to solver outputs.

€ 1.999.928
ERC Starting...

SUrrogate measures for SAFE autonomous and connected mobility

SUperSAFE aims to develop a proactive safety evaluation method for the interaction between conventional and connected automated vehicles to enhance traffic safety and support European zero-fatality goals.

€ 1.500.000

Vergelijkbare projecten uit andere regelingen

Mkb-innovati...

Integrated Safety for Deeply Embedded Systems Software (ISAFE)

Het ISAFE-project ontwikkelt een geïntegreerde aanpak voor de kwalificatie van softwaretools in veiligheid kritische systemen, gericht op het voldoen aan veiligheidsstandaarden en het verbeteren van softwareontwikkeling.

€ 160.200
Mkb-innovati...

SCCOTS: Standard Cboost Components of the Shelf

Cboost onderzoekt de haalbaarheid van 'plug-and-play' AI-modules om digitalisering voor MKB toegankelijker te maken.

€ 20.000
Mkb-innovati...

Risk Signal

Het project onderzoekt de haalbaarheid van een machine learning-applicatie voor het signaleren van gevaarlijke situaties in bedrijfsomgevingen om incidenten te voorkomen.

€ 20.000
Mkb-innovati...

Risicomanager in bedrijf

Ontwikkeling van een innovatief risicomanagementplatform dat klanten helpt bij het begrijpen en managen van financiële en niet-financiële risico's voor betere bedrijfscontinuïteit.

€ 169.692
EIC Accelerator

REVOLUTIONISING INDUSTRIAL ROBOTICS WITH THE NEXT GENERATION ROBOT-SPECIFIC AI-POWERED SECURITY PLATFORM

RIS is an innovative AI-based Endpoint Protection Platform designed to secure industrial robots by detecting vulnerabilities and protecting against known and unknown threats.

€ 2.499.875