计算机安全
认证
互操作性
计算机科学
块链
透明度(行为)
信息和通信技术
软件部署
试验台
欧洲联盟
杠杆(统计)
可扩展性
业务
万维网
软件工程
经济政策
机器学习
法学
数据库
政治学
作者
Ricardo Neisse,José L. Hernández-Ramos,Sara N. Matheu,Gianmarco Baldini,Antonio Skármeta,Vasilios A. Siris,Dmitrij Lagutin,Pekka Nikander
标识
DOI:10.1109/mic.2020.3002423
摘要
Cybersecurity certification is a core notion to support the mitigation of cybersecurity risks of Information and Communication Technologies (ICT). At the European Union (EU) level, the Cybersecurity Act establishes a common cybersecurity certification framework supporting the coexistence of different certification schemes across Member States. However, its realization needs to be sustained by technical approaches to enable ICT stakeholders from different sectors or countries to exchange cybersecurity information and evaluate the up-to-date security level of an ICT system throughout their lifecycle. Toward this end, we propose a blockchain-based platform using a novel interledger design, where ledgers associated with ICT artifacts, cybersecurity certificates, and vulnerabilities are interconnected. The main purpose is to leverage the advantages of blockchain in terms of distributed trust, transparency, and accountability, while at the same time coping with scalability, performance, and interoperability requirements. We analyze the impact of our platform in the current EU legislation and provide insights for its deployment.
科研通智能强力驱动
Strongly Powered by AbleSci AI