Research

Vulnerability Disclosure Policy

Main Areas of Research in SBA II

Secure Business Austria II (SBA II) aims to become the premiere research center for IT security in Austria. SBA II brings together the best national academic institutions and corporations and cooperates with leading universities and research institutions in our field of expertise all over the world. Our research addresses large corporations as well as small and medium-sized enterprises and private individuals.
Our main goal is to perform basic research in IT security with a clear heading towards a practical usage by our industrial partners or general use. We incorporate our partners’ own R&D efforts and bring in our basic research perspectives . SBA II has four main areas of research: (1) Governance, Risk and Compliance (2) Data Security and Privacy, (3) Secure Coding and Code Analysis and (4) Hardware and Network Security. Most of our projects in these four areas are highly interdependent and contain elements from these areas.

Our research program is designed as an integral approach to cover all important layers of security in information technology: the organizational layer (including the human factor), the business process layer, the logical layer, and the network and infrastructure layer. In brief, our overall goal is to expand the successful work of the center in crucial fields of research and to develop more secure and more robust IT systems in the foreseeable future. We strive to establish security as an enabling factor in Austria’s IT-driven businesses and try to move away from a reaction-driven arms race in which defenders constantly lag one step behind. The rationale for our research is (1) to protect information assets and (2) to enable new services.

Project Description Project Type Date Budget
K-Ind Projects e.g. Security Valuation, Anubis K-Ind 01.03.2006 01.03.2010 8.000.000€
Pathfinder Malicious Code Analysis and Detection FIT-IT 01.03.2007 01.08.2009 613.800€
Security Ontologies Formalizing information security knowledge FIT-IT 01.03.2008 28.02.2011 113.838€
PIPE Pseudonymization of Information for Privacy in e-Health FIT-IT 01.03.2008 01.07.2010 519.014€
Secure 2.0 Securing the Information Sharing on Web 2.0 FIT-IT 01.02.2009 31.01.2011 558.490€
FFG Innovation Cheque Supporting Austrian SMEs to start ongoing research and innovation activities - 01.07.2008 31.12.2008 50.000€
COMET Research in the Areas GRC, DSP, SCA and HNS - 01.04.2010 31.03.2014 10.000.000€
INFORM Research in a novel framework for Internet forensics suitable for Web 2.0 and cloud computing FIT-IT 01.04.2010 30.09.2012 440.229€
Silicon Malware Research on malware hidden in hardware components. KIRAS 01.11.2010 31.01.2012 121.867€
AFOR Study in digital forensic answering the questions:
Which judicial guidelines exist for digital evidence and how are they implemented?
How can different data sources be linked to increase the reliability of statements?
How can NIST-Guide (SP800-86) be applied to Austria?
KIRAS 01.01.2010 31.03.2011 150.127€
Moses4eGov Research of new model-based technologies that allow the highest degree of automation for the development of new applications for eGovernment while implementing the necessary security requirements. The project includes the research on the foundation technologies as well as demonstration of the applicability by implying a pilot project. KIRAS 01.03.2010 31.01.2012 948.182€
Aparsen Bringing together the work on digital preservation in Europe under a common vision FP7 01.01.2011 31.12.2014 338.680€
Timbus Digital preservation of business processes FP7 01.03.2011 28.02.2014 1.332.197€
INMOTOS Research on interdependency modeling tools and simulation based risk assessment of ICT critical infrastructures contingency plans CIPS 01.12.2010 30.11.2012 207.725€
MobseTip Application of model-based testing for security testing. Bridge 01.10.2011 30.09.2014 219.400€