« Récap'Studio - Janvier/en » : différence entre les versions

De Wiki Campus Cyber
Aller à :navigation, rechercher
Page créée avec « *The ‘Detection in the Cloud’ Community of Interest is finalising its first deliverables. After more than 6 months' work, the documents produced by the Risk Mapping, Detection Support Panorama and Analyst Training WGs will soon be available. *The ‘Governance of configurations in the public cloud’ WG of the ‘Securing the Cloud’ Community of Interest has resumed its work after a month's break. A work plan has been drawn up by the members of the WG, with... »
Page créée avec « === AI Security CI=== *The community of interest met at the beginning of January to share the progress of the 2 working groups: Security by design of AI systems / Analysis of attacks on AI systems. *With regard to the Security by design of AI systems WG, work is continuing on the review of the recommendations in the ANSSI Guide ‘Security recommendations for a generative AI system’. In January, work focused on the following 2 topics: ‘Protecting AI systems... »
Ligne 34 : Ligne 34 :
*The ‘Governance of configurations in the public cloud’ WG of the ‘Securing the Cloud’ Community of Interest has resumed its work after a month's break. A work plan has been drawn up by the members of the WG, with the aim of producing a deliverable in September. The second WG launched as part of this Community of Interest is in the production phase and aims to produce its deliverable in March.  
*The ‘Governance of configurations in the public cloud’ WG of the ‘Securing the Cloud’ Community of Interest has resumed its work after a month's break. A work plan has been drawn up by the members of the WG, with the aim of producing a deliverable in September. The second WG launched as part of this Community of Interest is in the production phase and aims to produce its deliverable in March.  


<div lang="fr" dir="ltr" class="mw-content-ltr">
=== AI Security CI===  
=== CI Sécurité de l’IA===
*The community of interest met at the beginning of January to share the progress of the 2 working groups: Security by design of AI systems / Analysis of attacks on AI systems.  
*La communauté d'intérêt s’est réunie début janvier  pour partager l’avancée des 2 groupes de travail : Security by design des systèmes d’IA / Analyse des attaques sur les systèmes de l'IA.  
*With regard to the Security by design of AI systems WG, work is continuing on the review of the recommendations in the ANSSI Guide ‘Security recommendations for a generative AI system’. In January, work focused on the following 2 topics: ‘Protecting AI systems from interactions with users’ and ‘Securing AI systems developed from external code and data’.  
*Concernant le GT Security by design des systèmes d’IA, les travaux continuent sur la revue des recommandations du Guide de l’ANSSI « Recommandations de sécurité pour un système d’IA générative ». Les travaux se sont concentrés en janvier sur les 2 sujets suivants : « Protéger les systèmes d’IA face aux interactions avec les utilisateurs » et « Sécuriser les systèmes IA développés à partir de code et de données externes ».  
===CI CyberAgile===  
===CI CyberAgile===  
Les livrables des 3 groupes de travail sont toujours en cours de finalisation et de relecture pour une sortie début 2025 : Gouvernance (SSDLC) / Cartographie des technologies de support à la cybersécurité agile et évaluation des apports / Security champions et SME (guide pour aider les responsables de sécurité, les responsables de programmes de Sécurité Applicative ou DevSecOps à concevoir une organisation avec les principaux rôles qui composent un dispositif de Sécurité Applicative dans des projets Agiles).
The deliverables of the 3 working groups are still being finalised and reviewed for release in early 2025: Governance (SSDLC) / Mapping of technologies supporting agile cybersecurity and assessment of their contributions / Security champions and SME (guide to help security managers, Application Security programme managers or DevSecOps to design an organisation with the main roles that make up an Application Security system in Agile projects).
</div>


<div lang="fr" dir="ltr" class="mw-content-ltr">
<div lang="fr" dir="ltr" class="mw-content-ltr">

Version du 28 janvier 2025 à 17:47



News from communities of interest and working groups

BASF

The banking, insurance and financial services college presented its deliverables and work at BASF Connect on 8 January. The slides presented are available to download by clicking here.

The morning provided an opportunity for a variety of meetings and exchanges between the various members and colleges of the Cyber Campus.

CI PQC

The matrix for assessing a company's crypto-agility is currently being presented to the various French cyber players: ANSSI, ACN, coordination nationale pour la cybsersécurité, etc. Dissemination and use of the deliverable are also being discussed. The matrix will soon be made available to everyone. The methods for disseminating the results are still being studied. A plenary meeting of the PQC community of interest will soon be proposed to initiate new subjects to be launched in working groups.

CI Cyber crisis management and training

The co-committee meets every month to discuss the progress of the work. Some deliverables are undergoing final proofreading, while other documents are still in the production phase.

CI Mobility

A face-to-face kick-off workshop at the Campus Cyber, with a tour of the Campus Cyber and a presentation of the work of the SIA and the studio des communs.

CI Crypto-Actives

  • Preparing for DemoDay on 31 January with pitches from the two smart missions and two round tables.
  • Completion of the Pentest with DFNS
  • Posting of the RetEx of the pentext collaboration available here

CI Drones

  • The work of the ‘State of the art of attacks and defences on UAVs’ WG is continuing. The test plan is being drafted and the first drone operations should take place in February.

CI Cloud Security and Detection

  • The ‘Detection in the Cloud’ Community of Interest is finalising its first deliverables. After more than 6 months' work, the documents produced by the Risk Mapping, Detection Support Panorama and Analyst Training WGs will soon be available.
  • The ‘Governance of configurations in the public cloud’ WG of the ‘Securing the Cloud’ Community of Interest has resumed its work after a month's break. A work plan has been drawn up by the members of the WG, with the aim of producing a deliverable in September. The second WG launched as part of this Community of Interest is in the production phase and aims to produce its deliverable in March.

AI Security CI

  • The community of interest met at the beginning of January to share the progress of the 2 working groups: Security by design of AI systems / Analysis of attacks on AI systems.
  • With regard to the Security by design of AI systems WG, work is continuing on the review of the recommendations in the ANSSI Guide ‘Security recommendations for a generative AI system’. In January, work focused on the following 2 topics: ‘Protecting AI systems from interactions with users’ and ‘Securing AI systems developed from external code and data’.

CI CyberAgile

The deliverables of the 3 working groups are still being finalised and reviewed for release in early 2025: Governance (SSDLC) / Mapping of technologies supporting agile cybersecurity and assessment of their contributions / Security champions and SME (guide to help security managers, Application Security programme managers or DevSecOps to design an organisation with the main roles that make up an Application Security system in Agile projects).

Projets

The Osint Project

The Osint Project, la plateforme d'OSINT dédiée aux élèves de collèges et lycées. Retrouvez tous les challenges en ligne the-osint-project.fr TOP participe à la Semaine de la presse et des médias à l’école, organisé par le CLEMI du 25 au 29 mars 2025. De nouveaux challenges vont prochainement sortir sur le civisme en ligne et la lutte contre la désinformation. Si vous souhaitez plus d’infos sur TOP : top@campuscyber.fr

Projet "Wiki en vrai"

Retrouvez prochainement une sélection imprimée des livrables du Studio des Communs, mise à disposition dans le hall du Campus Cyber et au Showroom. Ces exemplaires seront destinés à la consultation sur place.

Cryptobox

La solution de stockage sécurisée Cryptobox est mise à disposition des groupes de travail et communautés d'intérêt. N'hésitez pas à contacter l'équipe du Studio des Communs pour l'ouverture de vos espaces de travail.

Cyber4Tomorrow

  • Deux nouvelles fiches-action sont venues enrichir le catalogue C4T : « Initier à la gestion de crise » et « Transmettre au grand public et aux PME les contacts utiles » . Ces fiches et les ressources associées sont proposées par le COMCYBER-MI, qui a rejoint le collectif C4T en décembre 2024.
  • Le CESIN a rejoint le mouvement C4T. Lors de la plénière du 17 janvier, le nouveau président, Fabrice Bru, a signé la Charte C4T et a enjoint les membres de l’association à intégrer le collectif.
  • Le Campus Cyber a été retenu parmi les finalistes du concours Grand Prix Impact du World Impact Summit pour la méthodologie de calcul et de réduction des émissions carbone associées à la cyber, actuellement en cours d’élaboration avec le soutien de l’ADEME. La méthodologie a été présentée à un jury d’experts au siège de la BPI. Rendez-vous fin mars pour l’annonce des résultats finaux !

Retrouvez le site de Cyber 4 Tomorrow

RSE

  • La feuille de route RSE 2025 de Campus Cyber a été élaborée en janvier 2025. Elle sera prochainement présentée aux équipes.

INsider

Le prochain INsider se déroulera le mardi 18 février de 11h30 à 12h15 – Présentation du plan de pentest générique pour la sécurité des drones par la CI Drones et Robots. Pour vous inscrire cliquez ici

  • Retrouvez tous nos INsiders, maintenant disponibles dans la Rubrique "Ressources" du wiki en cliquant ici
  • Vous souhaitez être ajouté à la liste de diffusion des INsiders et actualités du Studio des Communs ?
  • N’hésitez pas à nous envoyer un mail : communautes@campuscyber.fr