Authors:
Antonello Calabrò
1
;
Eda Marchetti
1
and
Sanaz Nikghadam-Hojjati
2
Affiliations:
1
Istituto di Scienza e Tecnologie dell’Informazione “A. Faedo”, CNR, Pisa, Italy
;
2
UNINOVA-CTS and LASI, Caparica, Portugal
Keyword(s):
Cybersecurity, Eternal Testing, Architecture.
Abstract:
This paper addresses the increasing complexity of cybersecurity and the need for compliance with evolving EU regulations, highlighting the limitations of traditional software and hardware development processes in managing security, trust, and long-term compliance. To bridge these gaps, the paper proposes a novel lifecycle and supporting architecture named ACCURATE (eternal infrastructure for security in software and hardware development and assessment). ACCURATE is inspired by the DevOps approach and integrates continuous real-time monitoring, detection, and vulnerability management throughout the entire lifecycle. ACCURATE is designed for software and hardware development, as well as post-development continuous assessment. The main novelty is conceiving the “Eternal” stage, focusing on ongoing post-deployment assessment and protection, ensuring systems remain resilient against emerging threats. ACCURATE aims to transform the security landscape by embedding continuous safeguarding me
chanisms throughout the development and operational stages, ultimately ensuring the integrity and reliability of both software and hardware systems in a rapidly evolving technological environment.
(More)