Novel applications of AI and other enabling technologies for security operation centres

Closed

Programme Category

EU Competitive Programmes

Programme Name

Digital Europe Programme

Programme Description

Digital Europe Programme is the first EU programme that aims to accelerate the recovery and drive the digital transformation of Europe.

Worth €7.6 billion (in current prices), the Programme is a part of the next long-term EU budget, (the Multiannual Financial Framework), and it covers 2021 to 2027. It will provide funding for projects in five crucial areas: supercomputing, artificial intelligence, cybersecurity, advanced digital skills, and ensuring the wide use of digital technologies across the economy and society.

The Programme is fine-tuned to fill the gap between the research of digital technologies and their deployment, and to bring the results of research to the market – for the benefit of Europe’s citizens and businesses, and in particular SMEs. Investments under the Digital Europe programme supports the Union’s twin objectives of a green transition and digital transformation and strengthens the Union’s resilience and strategic autonomy.

Programme Details

Identifier Code

DIGITAL-ECCC-2024-DEPLOY-CYBER-06-ENABLINGTECH

Call

Novel applications of AI and other enabling technologies for security operation centres

Summary

This topic addresses enabling technologies (such as AI) for SOCs, including National SOCs which provide a central operational capacity and support other SOCs at national level and play a central role as a hub within a context of SOCs, and also Cross-border SOC platforms where such technologies can strengthen capacities to analyse, detect and prevent cyber threats and incidents, and to support the production of high-quality intelligence on cyber threats.

Detailed Call Description

These enabling technologies should allow more effective creation and analysis of Cyber Threat Intelligence (CTI), as well as faster and scalable processing of CTI and identification of patterns that allow for rapid detection and decision making.

Actions in this topic should develop and deploy systems and tools for cybersecurity based on enabling technologies (such as AI), addressing aspects such as threat detection, vulnerability detection, threat mitigation, incident recovery through self-healing, data analysis and data sharing. Activities should include at least one of the following:

  • Continuous detection of patterns and identification of anomalies that indicate potential threats, recognising new attack vectors and enabling advanced detection in an evolving threat landscape.
  • Creation of CTI based on novel threat detection capabilities.
  • Enhancing speed of incident response through real-time monitoring of networks to identify security incidents and generating alerts or triggering automated responses.
  • Mitigating malware threats by analysing code behaviour, network traffic, and file characteristics, reducing the window of opportunity for attackers to exploit malware.
  • Identification and management of vulnerabilities.
  • Recovery from incidents through self-healing capacities.
  • Reducing the chances of attacks and pre-emptively identifying weaknesses through automated vulnerability scanning and penetration testing.
  • Protecting sensitive data through the analysis of access patterns and detection of abnormal behaviour.
  • Enabling organisations to leverage and share CTI and other actionable information for analysis and insights without compromising data security and privacy, through anonymisation and de-identification. Tool and service providers are welcome to apply to this topic, also when in a consortium with National SOCs. Links with stakeholders in the area of High-Performance Computing should be made where appropriate, as well as activities to foster networking with such stakeholders.

These actions aim at creating or strengthening national and/or cross-border SOCs, which occupy a central role in ensuring the (cyber-)security of national authorities, providers of critical infrastructures and essential services.

Call Total Budget

€30.000.000

Financing percentage by EU or other bodies / Level of Subsidy or Loan

50%

Project budget (maximum grant amount):
indicatively between 3 and 5 million per project but other amounts are not excluded.

The grant awarded may be lower than the amount requested. The minimum budget for each topic as listed above is strongly recommended.

Thematic Categories

  • Justice - Security
  • Research, Technological Development and Innovation

Eligibility for Participation

  • Central Government
  • Local Authorities
  • Other Beneficiaries
  • Private Bodies
  • Researchers/Research Centers/Institutions
  • Small and Medium Enterprises (SMEs)
  • State-owned Enterprises
  • Training Centres

Eligibility For Participation Notes

In order to be eligible, the applicants (beneficiaries and affiliated entities) must:

  • be legal entities (public or private bodies)
  • be established in one of the eligible countries, i.e.:
    • EU Member States (including overseas countries and territories (OCTs)
    • EEA countries (Norway, Iceland, Liechtenstein)

Targeted stakeholders:

  • The target stakeholders are public and private actors, as well as consortia of either kind or combining them, which can support cyber threat detection and CTI sharing.
  • National authorities may associate themselves with private providers of technology services or equipment, in particular European SMEs, possibly in cooperation with network and technology providers, to pilot and develop security and interoperability aspects of innovative solutions, such as open, disaggregate and interoperable solutions.

Call Opening Date

16/01/2024

Call Closing Date

26/03/2024

National Contact Point(s)

Ministry of Research, Innovation and Digital Policy
Directorate of Research and Innovation
Eleana Gabriel
Telephone: +357 22 691918
Email: egabriel@dmrid.gov.cy