Filter Search for grants
Call Navigation
Deadline expired
The deadline for this call has expired.
Call key data
Supporting The NIS Directive Implementation And National Cybersecurity Strategies
Funding Program
Digital Europe
Call number
DIGITAL-ECCC-2022-CYBER-03-NIS-DIRECTIVE
deadlines
Opening
15.11.2022
Deadline
15.02.2023 17:00
Funding rate
50 %; SME/KMU: 75 %
Call budget
€ 20,000,000.00
Estimated EU contribution per project
Project budget (maximum grant amount): between € 1,000,000.00 and € 5,000,000.00 per project
Link to the call
Link to the submission
Call content
short description
The action focuses on Member States and European capacity building and the enhancement of cross-border cooperation on cybersecurity at technical, operational and strategic levels. It is a continuation of work currently supported under the CEF Telecom programme.
Call objectives
Proposals should contribute to achieving these objectives:
- Development of trust and confidence between Member States.
- Effective operational cooperation of organisations entrusted with EU or Member State’s national level Cybersecurity, in particular cooperation of CSIRTs (including in relation to the CSIRT Network) or cooperation of Operators of Essential Services including public authorities.
- Better security and notification processes and means for Operators of Essential Services and for digital service providers in the EU.
- Improved security of network and information systems in the EU.
- More alignment and harmonisation of Member States’ implementations of the NIS Directive.
Expected effects and impacts
The action will focus on the support of at least one of the following priorities:
- User-centred implementation, validation, piloting and deployment of technologies, tools and IT-based solutions, processes and methods for monitoring, preventing, detecting and handling cybersecurity incidents (including in the context of cross-border cybersecurity threats and cross sector context) in EU Member States.
- Collaboration, communication, awareness-raising activities, knowledge exchange and training, including through the use of cybersecurity ranges, of public and private organisations working on the implementation of the NIS Directive.
- Twinning schemes involving originator and adopter organisations from at least 2 different Member States to facilitate the deployment and uptake of technologies, tools, processes and methods for effective cross-border collaboration preventing, detecting and countering Cybersecurity incidents.
- Robustness and resilience building measures in the cybersecurity area that strengthen suppliers’ ability to work systematically with cybersecurity relevant information or supplying actionable data to CSIRTs.
The support will target relevant Member State competent authorities, which play a central role in the implementation of the NIS Directive, Computer Security Incident Response Teams (CSIRTs) including sectorial CSIRTs, Security Operation Centres (SOC), Operators of Essential Services (OES), digital service providers (DSP), industry stakeholders (including Information Sharing and Analysis Centres- ISACs), and any other actors within the scope of the NIS Directive.
Furthermore, Member States can define additional critical sectors, including public administrations, and identify operators for their countries.
In addition, the NIS Directive applies to providers of the following types of digital services (DSP):
- Online marketplace;
- Online search engine;
- Cloud computing service.
The action may support amongst other the continuation of the kind of cybersecurity activities funded through the CEF Telecom programme, building where relevant on the results from the CEF projects. Furthermore, synergies with actions such as the European “cyber-shield”, should be explored.
Support will be provided amongst other for the on boarding to the CEF Cybersecurity Core Service Platforms of public and private organisations working on the implementation of the NIS Directive and are potential users of the CEF Cybersecurity Core Service Platforms.
read more
Expected results
Proposals are expected to deliver on at least two of the following results:
- Enable the Member States to limit the damage of cybersecurity incidents, including economic, social, environmental, or political damage, while reducing the overall costs of cybersecurity for individual Member States and for the EU as a whole;
- Improve compliance with the NIS Directive, higher levels of situational awareness and crisis response in Member States;
- Contribute to enhanced cooperation, preparedness and cybersecurity resilience of the EU.
The action will also lead to the interconnection of the centres in charge of guaranteeing the cybersecurity of the operator of important service.
Eligibility Criteria
Regions / countries for funding
Iceland (Ísland), Liechtenstein, Norway (Norge)
eligible entities
Non-Profit Organisation (NPO) / Non-Governmental Organisation (NGO), Other, Private institution, incl. private company (private for profit), Public Body (national, regional and local; incl. EGTCs), Research Institution incl. University, Small and medium-sized enterprise (SME)
Mandatory partnership
Yes
Project Partnership
Proposals must be submitted by minimum 3 independent applicants (beneficiaries; not affiliated entities).
other eligibility criteria
In order to be eligible, the entities must be:
- be legal entities (public or private bodies)
- be established in one of the eligible countries (i.e.: EU Member States (including overseas countries and territories) or EWR-Staaten (Norwegen, Island, Liechtenstein))
Natural persons are NOT eligible (with the exception of self-employed persons, i.e. sole traders, where the company does not have legal personality separate from that of the natural person.
International organisations are not eligible, unless they are International organisations of European Interest within the meaning of Article 2 of the Digital Europe Regulation (i.e. international organisations the majority of whose members are Member States or whose headquarters are in a Member State).
Entities which do not have legal personality under their national law may exceptionally participate, provided that their representatives have the capacity to undertake legal obligations on their behalf, and offerguarantees for the protection of the EU financial interests equivalent to that offered by legal persons.
EU bodies — EU bodies (with the exception of the European Commission Joint Research Centre) can NOT be part of the consortium.
Associations and interest groupings — Entities composed of members may participate as ‘sole beneficiaries’ or ‘beneficiaries without legal personality’. Please note that if the action will be implemented by the members, they should also participate (either as beneficiaries or as affiliated entities, otherwise their costs will NOT be eligible).
Additional information
Topics
Relevance for EU Macro-Region
EUSAIR - EU Strategy for the Adriatic and Ionian Region, EUSALP - EU Strategy for the Alpine Space, EUSBSR - EU Strategy for the Baltic Sea Region, EUSDR - EU Strategy for the Danube Region
UN Sustainable Development Goals (UN-SDGs)
project duration
36 months
Additional Information
Proposal page limits and layout:
The application form will have two parts:
- Part A to be filled in directly online (administrative information, summarised budget, call-specific questions, etc.)
- Part B to be downloaded from the Portal submission system, completed and re-uploaded as a PDF in the system (contains the technical description of the project);
mandatory annexes and supporting documents:
- ownership control declaration
- declaration confirming beneficiaries are considered OES/DSP by their Member State
Page limit (part B): 70 pages
Call documents
Call Document DIGITAL-ECCC-2022-CYBER-03Call Document DIGITAL-ECCC-2022-CYBER-03(730kB)
To see more information about this call, you can register for free here
or log in with an existing account.
Log in
Register now