4SECURail addresses the Open Call S2R-OC-IP2-2019 Demonstrator development for the use of Formal Methods in railway environment - Support to implementation of CSIRT to the railway sector.
The Open Call takes a two-fold perspective by working, on the one hand, on the Demonstrator for the use of Formal Methods (FM), and on the other hand, on the implementation of Computer Security Incident Response Team (CSIRT) for Railways.
The 4SECURail proposal answers to both technical topics, adopting common Management and Dissemination with a well-balanced effort.
The main objective of Work Stream 1 is to focus on TD2.7 by providing a demonstrator of state-of-the-art formal methods and tools to evaluate the learning curve and to perform a cost/benefit analysis of the adoption of formal methods in the railway industry.
The following overall objectives will be targeted:
- The development of the demonstrator consisting of the process to be followed to provide a formal validated model of a smart signalling system, and of a list of the most suitable tools to support such process.
- The identification of a railway signalling subsystem, described by means of standard interfaces, to be used as test case to exercise the formal methods demonstrator.
- The specification and evaluation of the cost/benefit ratio and learning curves for adopting the demonstrator in the railway environment.
The 4SECURail
Work Stream 2 SUPPORT TO IMPLEMENTATION OF CSIRT TO THE RAILWAY SECTOR will address TD2.11, establishing a CSIRT collaborative environment.
The CSIRT (Computer Security Incident Response Team) is a multi-layered model (Organisational, Operational, Technical Platform) developed in collaboration with the relevant stakeholders (Railway Chief Information Security Officers – CISOs, along with Railway IT overall management and concerns). The main aim of WS2 is to deliver a pilot CSIRT model for Railway, co-designed and owned by those stakeholders, along with a working pilot platform (Collaborative Environment) also co-designed with those stakeholders to ensure ownership and future uptake.
The Work Stream 2 specific objectives are:
- To define stakeholder requirements for a European Rail CSIRT collaborative activity, and to co-design with them a first draft CSIRT model for open consultation.
- To test and validate the draft CSIRT model, and to obtain sufficient feedback and co-design input to release the final CSIRT model to support organisational collaboration, as well as collaborative platform design.
- To identify relevant platforms to support CSIRT collaboration and, based on requirements and CSIRT model, specify and adapt to meet CSIRT needs.
- To test and updated the CSIRT collaborative environment so as to ensure meeting user needs.