SMART: a Technology Readiness Methodology in the Frame of the NIS Directive

01/03/2022
by   Archana Kumari, et al.
0

An ever shorter technology lifecycle engendered the need for assessing new technologies w.r.t. their market readiness. Knowing the Technology readiness level (TRL) of a given target technology proved to be useful to mitigate risks such as cost overrun, product roll out delays, or early launch failures. Originally developed for space programmes by NASA, TRL became a de facto standard among technology and manufacturing companies and even among research funding agencies. However, while TRL assessments provide a systematic evaluation process resulting in meaningful metric, they are one dimensional: they only answer the question if a technology can go into production. Hence they leave an inherent gap, i.e., if a technology fulfils requirements with a certain quality. This gap becomes intolerable when this metric is applied software such as technological cybersecurity measures. With legislation such as the General Data Protection Regulation4 (GDPR) and the Network and Information Systems Directive5 (NIS-D) making reference to state of the art when requiring appropriate protection measures, software designers are faced with the question how to measure if a technology is suitable to use. We argue that there is a potential mismatch of legal aim and technological reality which not only leads to a risk of non-compliance, but also might lead to weaker protected systems than possible. In that regard, we aim to address the gaps identified with existing Technology Readiness Assessment (TRA)s and aim to overcome these by developing standardised method which is suitable for assessing software w.r.t. its market readiness and quality (in sum maturity).

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/09/2023

Exploring assessment method of technological advancement based on literature cross-citation

Assessing advancements of technology is essential for creating science a...
research
05/31/2021

A Meta-model for Process Failure Mode and Effects Analysis (PFMEA)

Short product lifecycles and a high variety of products force industrial...
research
03/10/2023

Watch the Gap: Making code more intelligible to users without sacrificing decentralization?

The potential for blockchain technology to eliminate the middleman and r...
research
10/13/2022

Space Trusted Autonomy Readiness Levels

Technology Readiness Levels are a mainstay for organizations that fund, ...
research
08/19/2020

Metamodel Quality Requirements and Evaluation (MQuaRE)

Models are the primary artifacts of model-driven software engineering (M...
research
08/29/2019

A Methodology for Analyzing Uptake of Software Technologies Among Developers

Motivation: The question of what combination of attributes drives the ad...
research
10/25/2021

Exposure of occupations to technologies of the fourth industrial revolution

The fourth industrial revolution (4IR) is likely to have a substantial i...

Please sign up or login with your details

Forgot password? Click here to reset