Work programme
Six work packages over twenty-four months
From requirements and architecture, through the AI components and the framework itself, to validation in operating hospitals — and the communication, exploitation and standardisation that runs alongside all of it.
- work packages
- 6
- deliverables
- 14
- milestones
- 13
- person-months
- 1533
Timeline
How the work packages overlap
- WP1 · OSIM1–M24
- WP2 · TRYM1–M8
- WP3 · DOTM4–M15
- WP4 · OSIM7–M18
- WP5 · FHRSM12–M24
- WP6 · HOPEM1–M24
Today — month 4 of 24
Work packages
What each one does
Project Management
Overall management of the project and consortium: coordination and decision making, technical management, legal, financial and administrative duties, quality assurance and risk management.
Tasks
- T1.1Project coordination, decision making and conflict resolution(OSI)
Effort and budget management, scheduling and preparation of meetings, monitoring project activities through regular bottom-up reporting, and permanent contact with the Project Officer.
- T1.2Technical coordination(DOT)
Scheduling, organising and leading technical activities, coordinating development flow and maintaining close dialogue with the Project Coordinator.
- T1.3Administrative and operational management, including legal and ethical aspects(OSI)
Correct management from a legal, ethics and security perspective, including the design and execution of the Data Management Plan.
- T1.4Quality assurance(TRY)
Quality control of planned actions and schedules, benchmarking of milestones, and control of quality and consistency against technical and contractual aspects.
Deliverables
- D1.2Project HandbookSEN
- D1.1Data Management PlanSEN
Milestones
- MS1 Kick-off meeting and project setup (M4)
- MS2 1st Periodic Report (M12)
- MS3 2nd Periodic Report (M24)
Requirements elicitation, mapping, and architecture specification
Analysis of EU healthcare cybersecurity needs and regulations, description of the pilot infrastructures, the knowledge and capacity building plan, and the technical specification of the HEALTH-ER framework.
Tasks
- T2.1Analysis and mapping of healthcare cybersecurity needs and challenges(TRY)
A complete overview of EU healthcare security aspects, challenges, strategies and guidelines, classified and mapped to the design of the HEALTH-ER framework and services.
- T2.2End users' requirements including regulatory aspects(EPBS)
Collection of end-user requirements covering technical, operational, regulatory and legal aspects of hospitals, healthcare providers, industry partners, SMEs and medical device manufacturers.
- T2.3Platform design and technical specifications(DOT)
The reference architecture: core SOCaaS components, security solutions and services, and the knowledge and capacity services. Modular, scalable, flexible and interoperable, with open APIs and accessible user interfaces.
- T2.4Knowledge and capacity building plan(EU-INSPIRE)
Identification of key stakeholders and users, and definition of processes and tools for skills upscaling, training and awareness, mentoring and partnership building.
Deliverables
- D2.1Security analysis and mapping for EU healthcare needs and requirementsPU
- D2.2HEALTH-ER requirements and architecturePU
Milestones
- MS5 Plan for networking, training, knowledge and capacity building (M8)
- MS4 Definition of requirements, security tools, pilots and architecture specification (M8)
Innovative AI-based solutions, enablers and technical plans
Adaptation of hospital baseline tools, the AI-based attack prediction and behaviour analytics components, and the technical plans for resilience, business continuity and cost effectiveness.
Tasks
- T3.1Adaptations for connecting the platform with hospital security systems and baseline tools(DOT)
Identification and analysis of existing security systems and baseline tools inside the pilot hospitals, adjusted and enhanced to connect with the HEALTH-ER platform.
- T3.2Enhanced preparedness and AI-based attack prediction for medical systems and devices(OSI)
Behavioural models trained per system to deliver an estimated probability of anomalous behaviour, independent of the underlying protocols, data formats or architectures.
- T3.3AI-based user and entity behaviour analytics for healthcare(OSI)
A baseline of normal behaviour for users such as doctors, nurses and administrative staff, and for entities such as infusion pumps, EHR systems and IoT devices, with deviation detection.
- T3.4Technical plans for enhanced resilience, business continuity and cost effectiveness(TRY)
Structured, practical roadmaps tailored to the operational, financial and regulatory context of each healthcare provider, rather than generic templates.
Deliverables
- D3.2Technical plans for enhanced resilience, business continuity and cost effectivenessPU
- D3.1Report on AI Situational Awareness components and capabilitiesPU
Milestones
- MS7 Development of technical plans for enhanced resilience, business continuity and cost effectiveness (M15)
- MS6 First release of the AI Situational Awareness block (M15)
Development of the HEALTH-ER framework
The information exchange block, the AI-based SOCaaS platform for monitoring, orchestration, automation and response, the training and capacity-building services, and the first release of the framework.
Tasks
- T4.1Information exchange, CTI discovery and EU-compliant reporting(DOT)
EU-compliant reporting, CTI sharing and collaborative threat hunting, built on widely accepted standards to ensure interoperability beyond the borders of a single Member State.
- T4.2AI-based SOCaaS for security monitoring, orchestration, automation and response(OSI)
The adaptive SOAR, healthcare incident-response and business-continuity playbooks, and the AI situational awareness components, orchestrated into client-specific tenants.
- T4.3User training, knowledge and capacity building(EPBS)
Courses and education programmes, awareness workshops, mentoring and consulting, and a cyber-range training service adjusted to the healthcare sector.
- T4.4HEALTH-ER framework for resilient EU healthcare - first release(OSI)
Integration and delivery of the MVP, with preliminary validation of the individual blocks before deployment in the pilots.
Deliverables
- D4.2HEALTH-ER security framework for the EU healthcare sector (MVP)PU
- D4.1Security training, knowledge, and capacity building reportPU
Milestones
- MS9 HEALTH-ER first release ready (M18)
- MS8 Knowledge and capacity building tools and material ready (M18)
Validation activities and refinements towards deployment
The evaluation methodology, prototype demonstration and validation in real hospital infrastructures, assessment for different end users, and the refinements leading to the final release.
Tasks
- T5.1Evaluation methodology, setup and configuration of the trials(FHRS)
Final pilot definition, mapping end-user service requirements against the developed components, and the overall validation methodology and testing protocol.
- T5.2Prototype demonstration and validation(OSI)
Testing and validation of the integrated platform against configuration and integration quality, functionality, and protection against security attacks.
- T5.3Platform assessment for different end users(FPH)
Fully operational pilots assessed for performance gains, module and system performance, results against KPIs, lessons learned, and total cost of ownership.
- T5.4Refinements towards the final framework(OSI)
Agile development cycles producing incremental releases informed by a continuous flow of feedback from the validation activities.
Deliverables
- D5.1Trial scenario definitions and evaluation methodology specificationPU
- D5.2Validation activities and final release of the HEALTH-ER security frameworkPU
Milestones
- MS10 Evaluation methodology, validation plan and pilot design completed (M18)
- MS11 Validation activities complete and final release of the framework, solutions and services (M24)
Communication, Dissemination, Exploitation and Standardisation
The dissemination and communication strategy, the exploitation and IPR plan, and engagement with stakeholders, the European Commission, national authorities and standardisation bodies.
Tasks
- T6.1Communication and dissemination activities(HOPE)
The public web portal, leaflets, posters and slides, project branding, social media strategy, media content, newsletters, publications, workshops and events.
- T6.2Impact creation and exploitation of results(EPBS)
Market-oriented analysis, identification of exploitable results, the exploitation strategy and business models based on the Business Model Canvas, and monitoring of IPR issues.
- T6.3Stakeholder, EC and national authority engagement and standardisation(CYS)
A database of external institutional and domain-focused stakeholders, constant interaction, and engagement with standardisation fora to present and contribute results.
Deliverables
- D6.1Report on Dissemination, Exploitation, Standardisation & SustainabilityPU
- D6.2Project Outputs and KPIs M12 (Y1)SEN
- D6.4Project Outputs and KPIs M24 (Y2)SEN
- D6.3Final report on Dissemination, Exploitation, Standardisation & SustainabilityPU
Milestones
- MS12 Plan for dissemination, exploitation, standardisation and sustainability activities (M6)
- MS13 Dissemination, exploitation, standardisation and sustainability activities (M24)
Deliverables
All fourteen, with dissemination levels
Public deliverables are published here as they are approved. Sensitive deliverables are listed for transparency but are only available to the consortium and the granting authority, as set out in Annex 1 of the Grant Agreement.
| Code | Title | WP | Lead | Due | Level | Status |
|---|---|---|---|---|---|---|
| D1.2 | Project Handbook | WP1 | OSI | M4 | Sensitive | Planned |
| D1.1 | Data Management Plan | WP1 | OSI | M4 | Sensitive | Planned |
| D2.1 | Security analysis and mapping for EU healthcare needs and requirements | WP2 | TRY | M5 | Public | Planned |
| D6.1 | Report on Dissemination, Exploitation, Standardisation & Sustainability | WP6 | HOPE | M6 | Public | Planned |
| D2.2 | HEALTH-ER requirements and architecture | WP2 | EU-INSPIRE | M8 | Public | Planned |
| D6.2 | Project Outputs and KPIs M12 (Y1) | WP6 | OSI | M12 | Sensitive | Planned |
| D3.2 | Technical plans for enhanced resilience, business continuity and cost effectiveness | WP3 | TRY | M15 | Public | Planned |
| D3.1 | Report on AI Situational Awareness components and capabilities | WP3 | OSI | M15 | Public | Planned |
| D5.1 | Trial scenario definitions and evaluation methodology specification | WP5 | FHRS | M18 | Public | Planned |
| D4.2 | HEALTH-ER security framework for the EU healthcare sector (MVP) | WP4 | OSI | M18 | Public | Planned |
| D4.1 | Security training, knowledge, and capacity building report | WP4 | EU-INSPIRE | M18 | Public | Planned |
| D6.4 | Project Outputs and KPIs M24 (Y2) | WP6 | OSI | M24 | Sensitive | Planned |
| D6.3 | Final report on Dissemination, Exploitation, Standardisation & Sustainability | WP6 | EPBS | M24 | Public | Planned |
| D5.2 | Validation activities and final release of the HEALTH-ER security framework | WP5 | OSI | M24 | Public | Planned |
Milestones
Thirteen checkpoints
- 1Kick-off meeting and project setupDelivery of D1.1 and D1.2WP1OSIM4
- 12Plan for dissemination, exploitation, standardisation and sustainability activitiesDelivery of D6.1WP6HOPEM6
- 5Plan for networking, training, knowledge and capacity buildingDelivery of D2.2WP2EU-INSPIREM8
- 4Definition of requirements, security tools, pilots and architecture specificationDelivery of D2.1 and D2.2WP2TRYM8
- 21st Periodic ReportDelivery of technical reportWP1OSIM12
- 7Development of technical plans for enhanced resilience, business continuity and cost effectivenessDelivery of D3.2WP3TRYM15
- 6First release of the AI Situational Awareness blockDelivery of D3.1WP3OSIM15
- 10Evaluation methodology, validation plan and pilot design completedDelivery of D5.1WP5FHRSM18
- 9HEALTH-ER first release readyDelivery of D4.2WP4OSIM18
- 8Knowledge and capacity building tools and material readyDelivery of D4.1WP4EU-INSPIREM18
- 13Dissemination, exploitation, standardisation and sustainability activitiesDelivery of D6.3WP6EPBSM24
- 11Validation activities complete and final release of the framework, solutions and servicesDelivery of D5.2WP5OSIM24
- 32nd Periodic ReportProject's final reportWP1OSIM24
