DIGITAL-ECCC-2025-DEPLOY-CYBER-09-CYBERAI
Cybersecure tools, technologies and services relying on AI -
Related topics
Drag to rearrange · hover a topic or connection to preview why it's linked, click to pin that panel open
Connected via , not directly to the current topic
No motivation recorded.
Center graph on this topic →Topics in this graph
-
HORIZON-CL4-2025-04-DATA-02 — Empowering AI/generative AI along the Cognitive Computing continuum (RIA) (AI/Data/Robotics Partnership)
Both deal with AI/GenAI; the HE focuses on advancing cognitive AI, the DEP topic uses AI for cybersecurity. The link is leveraging advanced AI capabilities for cybersécurity applications.
-
HORIZON-CL4-2025-03-DATA-08 — Large-scale pilots for supply end-to-end infrastructures integrating device, network computing and communication capabilities for Telco Edge Cloud deployments, as a basis for Connected Collaborative Computing Networks (3C networks) (RIA)
The large-scale pilot infrastructures can serve as realistic testbeds for coordinated cyber preparedness exercises, enabling projects to test threat detection, incident response, and resilience strategies.
-
HORIZON-CL4-2023-DATA-01-04 — Cognitive Computing Continuum: Intelligence and automation for more efficient data processing (AI, data and robotics partnership) (RIA)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
Topic Evolution
-
HORIZON-CL4-2025-04-DIGITAL-EMERGING-04 — Assessment methodologies for General Purpose AI capabilities and risks (RIA) (AI/Data/Robotics Partnership)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
Direct reference in work programme
-
HORIZON-CL4-2025-04-DATA-03 — Software Engineering for AI and generative AI (RIA) (AI/Data/Robotics Partnership)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
closely related topic
-
HORIZON-CL4-2025-03-DIGITAL-EMERGING-07 — Robust and trustworthy GenerativeAI for Robotics and industrial automation (RIA) (AI/Data/Robotics & Made in Europe Partnerships)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
closely related topic
-
HORIZON-CL4-2026-04-DIGITAL-EMERGING-19 — Challenge-Driven GenAI4EU Booster in Apply AI prioritised sectors (RIA) (AI/Data/Robotics Partnership)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
Proposals in telecommunication for HORIZON-CL4-2026-04-DIGITAL-EMERGING-19 should exploit potential synergies with projects funded under HORIZON-CL4-2025-03-DATA-08, HORIZON-CL4-2025-03-DATA-09 and HORIZON-CL4-2025-04-DATA-02.
-
HORIZON-CL4-2027-04-DATA-03 — New approaches for decentralized, federated and sustainable AI data processing (RIA)
Connected via HORIZON-CL4-2025-04-DATA-02, not directly to the current topic.
The 2027 topic should build on results of the 2025 topic.
-
HORIZON-CL4-2021-DATA-01-05 — Future European platforms for the Edge: Meta Operating Systems (RIA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Some building blocks for HORIZON-CL4-2025-03-DATA-08 can be found in HORIZON-CL4-2021-DATA-01-05
-
HORIZON-CL4-2025-03-DATA-09 — Alignment of stakeholders towards the supply-side large-scale pilot of end-to-end infrastructures integrating device, network computing and communication capabilities (CSA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
CSA and RIA related to the same area of activities
-
HORIZON-CL4-2025-03-DATA-11 — Open Internet Stack: development of technological commons/open-source 3C building blocks (RIA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Complementary actions in both topics
-
HORIZON-CL4-2025-03-DIGITAL-EMERGING-09 — Challenge-Driven GenAI4EU Booster (RIA) (AI/Data/Robotics Partnership)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Complementary actions in both topics
-
HORIZON-CL4-2021-DIGITAL-EMERGING-01-01 — Ultra-low-power, secure processors for edge computing (RIA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Some building blocks for HORIZON-CL4-2025-03-DATA-08 may be found in projects under HORIZON-CL4-2021-DIGITAL-EMERGING-01-01.
-
HORIZON-CL4-2026-04-HUMAN-02 — Web 4.0 architectural framework and Open Internet Stack applications for virtual worlds (RIA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Collaboration and synergies with initiatives such as Virtual Worlds, Web 4.0, 3C, Open Internet Stack, Digital Commons initiatives.
-
HORIZON-CL4-2027-04-DATA-08 — Demand-side 3C pilot demonstrators on converged Telco Edge Cloud Infrastructure (IA)
Connected via HORIZON-CL4-2025-03-DATA-08, not directly to the current topic.
Projects under HORIZON-CL4-2027-04-DATA-08 are expected to establish links to project results from HORIZON-CL4-2025-03-DATA-08.
Bold node = current topic · node color = call status · hover for details, click to pin · smaller, lighter topics are two steps away
Call text (as on F&T portal)
View on F&T portalExpected Outcome:
- Deployment of Artificial Intelligence and various AI-powered technologies as enablers for Cyber Hubs, CSIRTs, NCSCs, NIS SPOCs and others.
- Novel cybersecurity tools based on AI that have been developed, tested and validated in relevant conditions and made available to Cyber Hubs, CSIRTs, NCSCs, NIS SPOCs and others.
- Enhanced information sharing and collaboration amongst National and Cross-Border Cyber Hubs, CSIRTs, NCSCs, NIS SPOCs and others relevant stakeholders, supported by CTI produced by AI-powered tools.
- Tools for automation of cybersecurity processes such as the creation, analysis and processing of CTI, to enhance operations of the Cyber Hubs.
- Original European CTI feeds or services.
- Ensure that the most advanced and innovative secure AI solutions are developed and implemented for NIS sectors.
- Secure AI solutions and tools, complying with EU legislation. Promote the mitigation of risks associated with the misuse of AI by malicious actors, with a focus on AI ethics and secure deployment.
- Contribution to the standardisation and certification of cybersecure, trustworthy AI technologies.
Objective:
This topic addresses AI-based technologies (including GenAI) for national authorities and competent authorities, including National and Cross-Border Cyber Hubs, CSIRTs, public bodies and private entities from the NIS 2 directive, NCCs1, etc. They play a key role in providing central operational capacity to European cybersecurity ecosystems. They may also provide primary input data for AI/ML-based cybersecurity tools and solutions, which can strengthen such authorities’ capacity to analyse, detect and prevent cyber threats and incidents, and to support the production of high-quality intelligence on cyber threats. In particular, the adoption of generative AI2 could be a challenge and an opportunity for cybersecurity3 processes and applications.
These enabling technologies should allow for more effective creation and analysis of Cyber Threat Intelligence (CTI), automation of large-scale processes, as well as faster and scalable processing of CTI and identification of patterns that allow for rapid detection and decision making.
The security of AI itself, especially for the systems in the learning phase, also needs to be addressed, including the misuse of AI by malicious actors. This includes carrying out risk assessments and mitigation of cybersecurity risks inherent to AI technologies, implementing supply chain security, etc., and complying with the AI Act, intellectual property legislation and the GDPR.
In addition to being secure, the AI technologies being developed should perform well, and be robust and trustworthy. In particular, having trustworthy AI solutions will help in the deployment phase, where social acceptance is essential.
1If applicable and in line with individual national strategies.
2Cybersecurity in the age of generative AI, September 2023, available at: https://www.mckinsey.com/featured-insights/themes/cybersecurity-in-the-age-of-generative-ai.
3The Need For AI-Powered Cybersecurity to Tackle AI-Driven Cyberattacks, April 2024, available at: https://www.isaca.org/resources/news-and-trends/isaca-now-blog/2024/the-need-for-ai-powered-cybersecurity-to-tackle-ai-driven-cyberattacks.
Scope:
Actions in this topic should develop and deploy systems and tools for cybersecurity1, based on AI technologies2, addressing aspects such as threat detection, vulnerability detection, threat mitigation, incident recovery through self-healing, data analysis and data sharing. These activities must also comply with intellectual property rights (IPR) and the GDPR, depending on the type of information handled. The AI solutions proposed should also be cybersecure.
Activities should include at least one of the following:
- Continuous detection of patterns and identification of anomalies that can potentially indicate emerging threats, recognising new attack vectors and enabling advanced detection in an evolving threat landscape, including in ICT or in Operational Technology infrastructures using open technologies.
- Creation of CTI based on novel threat detection capabilities.
- Enhancing speed of incident response through real-time monitoring of networks to identify security incidents and generating alerts or triggering automated responses.
- Mitigating malware threats by analysing code behaviour, network traffic, and file characteristics, reducing the window of opportunity for attackers to exploit malware.
- Identification of vulnerabilities and support for management considering multiple sources of information.
- Cybersecure tools and solutions that provide risk-reduction in the crossover between AI, IoT and smart grids or other manufacturing chains.
- Support for recovery from incidents through self-healing capacities.
- Reducing the chances of attacks and pre-emptively identifying weaknesses through automated vulnerability scanning and penetration testing.
- Protecting business sensitive data through the analysis of access patterns and detection of abnormal behaviour.
- Enabling organisations to leverage and share CTI and other actionable information for analysis and insights without compromising data security and privacy, through anonymisation.
- Tools and solutions that provide product security or cybersecurity by design/default in line with CRA requirements.
- Tool and service providers are welcome to apply for this topic, also when in a consortium with Cyber Hubs. Links with stakeholders in the area of High-Performance Computing should be made where appropriate, as well as activities to foster networking with such stakeholders. In well justified cases, access requests to the EuroHPC high performance computing infrastructure could be granted.
- The systems, tools and services developed under this topic will be made available for licensing to National and/or Cross-Border Cyber Hubs platforms, CSIRTs, competent authorities, and other relevant authorities under favourable market conditions.
- These actions aim at providing AI-powered cybersecurity capabilities for National and/or Cross-Border Cyber Hubs and for national authorities encompassing Cyber Hubs, CSIRTs, which occupy a central role in ensuring the cybersecurity of national authorities, providers of critical infrastructures and essential services. These entities are tasked with monitoring, understanding and proactively managing cybersecurity threats. In light of their crucial operative role in ensuring cybersecurity in the Union, the nature of the technologies involved as well as the sensitivity of the information handled, Cyber Hubs must be protected against possible dependencies and vulnerabilities in cybersecurity to pre-empt foreign influence and control.
- Tools to protect and secure AI solutions in line with the EU legislative framework and considering integration of requirements for robustness, performance, trust and balanced AI autonomy.
- Contribute to the cybersecurity certification of AI-driven cybersecurity solutions and systems. The primary objective of cybersecurity certification for AI systems within the EU is twofold: to mitigate cybersecurity risks inherent in AI technologies and to demonstrate compliance with the EU’s comprehensive legislative framework, including the AI Act. By establishing a standardised, transparent, and rigorous certification process, the EU seeks to foster trust in AI technologies among users, developers, and regulators alike.
1 Multilayer Framework for Good Cybersecurity Practices for AI, ENISA, June 2023, available at: https://www.enisa.europa.eu/publications/multilayer-framework-for-good-cybersecurity-practices-for-ai.
2Cybersecurity of AI and Standardisation, ENISA, March 2023, available at: https://www.enisa.europa.eu/publications/cybersecurity-of-ai-and-standardisation.
News flashes
The call DIGITAL-ECCC-2025-DEPLOY-CYBER-09 covered the following four topics:
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-CYBERAI – Cybersecure tools, technologies and services relying on AI.
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-UPTAKE – Uptake of innovative cybersecurity solutions for SMEs.
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-CABLEHUBS – Regional Cable Hubs.
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-COORDPREP – Coordinated preparedness testing.
The evaluation results are summarised below.
CYBERAIThe Call DIGITAL-ECCC-2025-DEPLOY-CYBER-09 has closed on the 31/03/2026.
140 proposals have been submitted.
The breakdown per topic is:
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-UPTAKE: 71 proposals
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-CYBERAI: 57 proposals
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-CABLEHUBS: 5 proposals
- DIGITAL-ECCC-2025-DEPLOY-CYBER-09-COORDPREP: 7 proposals
Evaluation results are expected to be communicated in June 2026.
Opening date: 2025-10-28 (11 months ago)
Closing date: 2026-03-31 (6 months ago)
Procedure: single-stage
Budget: 15,000,000
Expected grants: 4
Contribution: 3,000,000 - 5,000,000
This call topic has been appended 3 times by the EC with news.
-
2026-10-08
flash evaluation resultsthe call digital... -
2026-10-08
the call digital-eccc-2025-deploy-cyber-... -
2026-10-08
the submission session is now available...
DIGITAL-ECCC-2025-DEPLOY-CYBER-09
Call topics are often grouped together in a call. Sometimes this is for a thematic reason, but often it is also for practical reasons.
There are 3 other topics in this call:
Showing the latest information. Found 4 versions of this call topic in the F&T portal.
Information from
- 2026-07-23_06-20-49
- 2026-05-28_06-20-32
- 2026-04-01_06-20-22
- 2025-10-28_15-26-57
Check the differences between the versions.
Annotations
Events
Hand-picked events relevant to this call topic.
No events yet
There are currently no events linked to this call topic.
Timeline
Outcome expected · 31 Aug 2026 (1 month ago)
Next: Grant agreement signed, 1 month from now (01 Dec 2026, estimated)
Work programme published
28 Oct 2025
Call published
28 Oct 2025
Call opens
28 Oct 2025
Call closes
31 Mar 2026
Outcome expected
31 Aug 2026 · est.
Grant agreement signed
01 Dec 2026 · est.
-
Work programme published
28 Oct 2025 · 11 months ago
Topics are listed in the Work Programme before the call opens. Spotting this early gives you a head start on partner search and proposal planning.
-
Call published
28 Oct 2025 · 11 months ago
This topic was first published in TopicTree.
-
Call opens
28 Oct 2025 · 11 months ago
Submissions can be made from this date.
-
Call closes
31 Mar 2026 · 6 months ago
Deadline to submit a proposal.
-
Outcome expected Estimated
31 Aug 2026 · 1 month ago
The maximum time to inform applicants of the evaluation outcome is five months after the call closes.
-
Grant agreement signed Estimated
01 Dec 2026 · 1 month from now
The maximum time to sign the grant agreement is three months after applicants are informed of the outcome.
Funded Projects
Loading...
Project information comes from CORDIS (for Horizon 2020 and Horizon Europe) and will be sourced from F&T Portal (for Digital Europe projects)
Ecosystem bubbles
This call topic is part of the following thematic bubbles.