Research Roadmap and Agenda for Engineering Secure Future Internet Services

The Network of Excellence on Engineering Secure Future Internet Software Services and Systems (NESSoS) is an EC co-funded project that aims at constituting and integrating a long lasting research community on engineering secure software-based services and systems. The new roadmap and research agenda was published in February 2013. It also contains recommendations on the main research issues to tackle, including the focus on eHealth systems that consider security and privacy by design as foundational aspects.

As a matter of fact, eHealth is an area of rapid innovation, but designing the secure services for emergent eHealth solutions requires a large amount of effort and the collaboration of stakeholders with different views on security and privacy requirements.

The main motto behind NESSoS is "prevention is better than cure", indeed we can reduce the number of vulnerabilities in Future Internet services by having security and privacy "by design", that is right from the early phase of engineering lifecycle.

Current examples of the work being done within NESSoS in the area of eHealth include the development of tools for all phases of the development lifecycle, from the identification of privacy threats and requirement analysis, over the automatic generation of secure-by-design eHealth services from declarative models, to the run-time assurance of security compliance, even when changes in the process or in the requirements occur.

Security competes with flexibility and with availability in many particular situations. Thus NESSoS offers dynamic supervision and enforcement of trade-off policies, allowing for instance controlled access to resources in spite of known security threats, acceptable under some conditions in order to avoid life-threatening situations, use of work-flow models to describe the dynamics of a Patient-Monitoring Work-Flows, verification of work-flows with declarative authorisation policies that include revocation and delegation, and the automatic generation of orchestration of sub-systems, satisfying among others separation of duties requirements and secure recording of events.

Also, NESSoS is interested to data-related aspects, like the smart content generation via sensors that continuously monitor the physical activity or the nutritional intake, and the aggregation and use of data, for instance to recommend personalised insulin dosages.

Methods and tools from NESSoS are already being experimented in the context of several industrial solutions, such as yourEHRM from Atos and Soarian and Syngo from Siemens.

For further information, please visit:
http://www.nessos-project.eu

Most Popular Now

Do Fitness Apps do More Harm than Good?

A study published in the British Journal of Health Psychology reveals the negative behavioral and psychological consequences of commercial fitness apps reported by users on social media. These impacts may...

AI Tool Beats Humans at Detecting Parasi…

Scientists at ARUP Laboratories have developed an artificial intelligence (AI) tool that detects intestinal parasites in stool samples more quickly and accurately than traditional methods, potentially transforming how labs diagnose...

Making Cancer Vaccines More Personal

In a new study, University of Arizona researchers created a model for cutaneous squamous cell carcinoma, a type of skin cancer, and identified two mutated tumor proteins, or neoantigens, that...

AI can Better Predict Future Risk for He…

A landmark study led by University' experts has shown that artificial intelligence can better predict how doctors should treat patients following a heart attack. The study, conducted by an international...

A New AI Model Improves the Prediction o…

Breast cancer is the most commonly diagnosed form of cancer in the world among women, with more than 2.3 million cases a year, and continues to be one of the...

AI System Finds Crucial Clues for Diagno…

Doctors often must make critical decisions in minutes, relying on incomplete information. While electronic health records contain vast amounts of patient data, much of it remains difficult to interpret quickly...