DIGITAL-ECCC-2024-DEPLOY-CYBER-06-ENABLINGTECH
Novel applications of AI and other enabling technologies for security operation centres -
Related topics
Drag to rearrange · hover a topic or connection to preview why it's linked, click to pin that panel open
Connected via , not directly to the current topic
No motivation recorded.
Center graph on this topic →Topics in this graph
-
DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOCSYS — Strengthening the SOC Ecosystem
The topic complements other current and previous actions aimed at establishing and operating Security Operation Centres (SOCs) and linking them. The aim is to provide SOCs with further applications to improve their operations.
-
DIGITAL-ECCC-2022-CYBER-03-SOC — Capacity building of Security Operation Centres
Connected via DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOCSYS, not directly to the current topic.
The topic complements other current and previous actions aimed at establishing and operating Security Operation Centres (SOCs) and linking them. The aim is to foster collaboration among SOCs on different (national and local) levels.
-
DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOC — National SOCs
Connected via DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOCSYS, not directly to the current topic.
The topic complements other current and previous actions aimed at establishing and operating Security Operation Centres (SOCs) and linking them. The aim is to support the establishment of national SOCs.
-
DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOCPLAT — Enlarging existing or Launching New Cross-Border SOC Platforms
Connected via DIGITAL-ECCC-2024-DEPLOY-CYBER-07-SOCSYS, not directly to the current topic.
The topic complements other current and previous actions aimed at establishing and operating Security Operation Centres (SOCs) and linking them. The aim is to foster collaboration among SOCs on different (national and local) levels.
Bold node = current topic · node color = call status · hover for details, click to pin · smaller, lighter topics are two steps away
Call text (as on F&T portal)
View on F&T portalDeliverables
- Deployment of Artificial Intelligence and Advanced Key Technologies as enablers for SOCs
- Tools for creation, analysis and processing of CTI that allow for faster and more scalable SOC operations
- Original European CTI feeds or services
This topic addresses enabling technologies (such as AI) for SOCs, including National SOCs which provide a central operational capacity and support other SOCs at national level and play a central role as a hub within a context of SOCs, and also Cross-border SOC platforms where such technologies can strengthen capacities to analyse, detect and prevent cyber threats and incidents, and to support the production of high-quality intelligence on cyber threats.
These enabling technologies should allow more effective creation and analysis of Cyber Threat Intelligence (CTI), as well as faster and scalable processing of CTI and identification of patterns that allow for rapid detection and decision making.
Scope:Actions in this topic should develop and deploy systems and tools for cybersecurity based on enabling technologies (such as AI), addressing aspects such as threat detection, vulnerability detection, threat mitigation, incident recovery through self-healing, data analysis and data sharing. Activities should include at least one of the following:
- Continuous detection of patterns and identification of anomalies that indicate potential threats, recognising new attack vectors and enabling advanced detection in an evolving threat landscape.
- Creation of CTI based on novel threat detection capabilities.
- Enhancing speed of incident response through real-time monitoring of networks to identify security incidents and generating alerts or triggering automated responses.
- Mitigating malware threats by analysing code behaviour, network traffic, and file characteristics, reducing the window of opportunity for attackers to exploit malware.
- Identification and management of vulnerabilities.
- Recovery from incidents through self-healing capacities.
- Reducing the chances of attacks and pre-emptively identifying weaknesses through automated vulnerability scanning and penetration testing.
- Protecting sensitive data through the analysis of access patterns and detection of abnormal behaviour.
- Enabling organisations to leverage and share CTI and other actionable information for analysis and insights without compromising data security and privacy, through anonymisation and de-identification. Tool and service providers are welcome to apply to this topic, also when in a consortium with National SOCs. Links with stakeholders in the area of High-Performance Computing should be made where appropriate, as well as activities to foster networking with such stakeholders.
Tool and service providers are welcome to apply to this topic, also when in a consortium with National SOCs. Links with stakeholders in the area of High-Performance Computing should be made where appropriate. In well justified cases, access requests to the EuroHPC high performance computing infrastructure could be granted.
The systems, tools and services developed under this topic will be made available for licencing to National and/or Cross-Border SOC platforms under favourable market conditions.
These actions aim at creating or strengthening national and/or cross-border SOCs, which occupy a central role in ensuring the (cyber-)security of national authorities, providers of critical infrastructures and essential services. SOCs are tasked with monitoring, understanding and proactively managing cybersecurity threats. In light of the crucial operative role of SOCs for ensuring cybersecurity in the Union, the nature of the technologies involved as well as the sensitivity of the information handled, SOCs must be protected against possible dependencies and vulnerabilities in cybersecurity to pre-empt foreign influence and control. As previously noted, participation of non-EU entities entails the risk of highly sensitive information about security infrastructure, risks and incidents being subject to legislation or pressure that obliges those non-EU entities to disclose this information to non-EU governments, with an unpredictable security risk. Therefore, based on the outlined security reasons, the actions relating to SOCs are subject to Article 12(5) of Regulation (EU) 2021/694, in consistency with WP 2021/2022.
News flashes
For information on the evaluations results of this call we invite you to consult the Flash call info (evaluation results) in the following link.
For information on the evaluations results of this call we invite you to consult the Flash call info (evaluation results) in the following link.
Opening date: 2024-01-16 (2 years ago)
Closing date: 2024-03-26 (2 years ago)
Procedure: single-stage
Budget: 30,000,000
Expected grants: 0
This call topic has been appended 4 times by the EC with news.
-
2024-07-17
for information on the evaluations resul... -
2024-07-17
for information on the evaluations resul... -
2024-01-16
the submission session is now available... -
2024-01-16
the submission session is now available...
DIGITAL-ECCC-2024-DEPLOY-CYBER-06
Call topics are often grouped together in a call. Sometimes this is for a thematic reason, but often it is also for practical reasons.
There are 5 other topics in this call:
Showing the latest information. Found 6 versions of this call topic in the F&T portal.
Information from
- 2025-07-01_03-20-21
- 2025-01-29_03-20-06
- 2024-11-23_03-20-12
- 2024-11-04_17-26-59
- 2024-09-30_21-21-11
- 2024-03-30_14-27-11
Check the differences between the versions.
Annotations
Events
Hand-picked events relevant to this call topic.
No events yet
There are currently no events linked to this call topic.
Timeline
Grant agreement signed · 26 Nov 2024 (1 year ago)
All expected milestones for this call have passed.
Call opens
16 Jan 2024
Call closes
26 Mar 2024
Outcome expected
26 Aug 2024 · est.
Work programme published
30 Sep 2024
Call published
30 Sep 2024
Grant agreement signed
26 Nov 2024 · est.
-
Call opens
16 Jan 2024 · 2 years ago
Submissions can be made from this date.
-
Call closes
26 Mar 2024 · 2 years ago
Deadline to submit a proposal.
-
Outcome expected Estimated
26 Aug 2024 · 2 years ago
The maximum time to inform applicants of the evaluation outcome is five months after the call closes.
-
Work programme published
30 Sep 2024 · 2 years ago
Topics are listed in the Work Programme before the call opens. Spotting this early gives you a head start on partner search and proposal planning.
-
Call published
30 Sep 2024 · 2 years ago
This topic was first published in TopicTree.
-
Grant agreement signed Estimated
26 Nov 2024 · 1 year ago
The maximum time to sign the grant agreement is three months after applicants are informed of the outcome.
Funded Projects
Loading...
Project information comes from CORDIS (for Horizon 2020 and Horizon Europe) and will be sourced from F&T Portal (for Digital Europe projects)
Ecosystem bubbles
This call topic is part of the following thematic bubbles.
AI, Data & Robotics
This large ecosystem bubble includes all the call topics in the field of AI, data and robotics from H2020, Horizon Europe Cluster 4 and Digital Europe...
Cybersecurity
This ecosystem bubble contains call topics related to cybersecurity from H2020, Horizon Europe Cluster 4 and Digital Europe. In Horizon Europe, there...
High Performance Computing
Call topics for high performance computing are largely located in the EuroHPC Joint Undertaking (JU). This also includes AI Factories (HPC resources d...