Great news for the COBALT team: the COBALT project partner, the European Cyber Security Organisation (ECSO), is organising an insightful webinar titled “Actions Beyond Words: Automating Audits for Streamlined Cybersecurity Compliance in Europe,” taking place on April 23, 2025, from 15:00 to 17:30 CEST. Additionally, our partner the University of Murcia (UMU) will present a case study during the event, providing a practical example that illustrates the project’s approach in action.
The event will focus on the increasing challenges organisations face in meeting cybersecurity compliance requirements and will showcase innovative approaches for automation using the Open Security Controls Assessment Language (OSCAL) — a machine-readable, standardised framework for documenting and assessing security controls.
COBALT is committed to developing a unified, agile framework for ICT security certification across sectors, and the themes of this webinar — including automation, compliance streamlining, and data-centric auditing — are of great interest for our project.
Agenda
- 15:00 – 15:10 – Beginning – Opening Remarks – ECSO
- 15:10 – 15:50 – Continuous Proactive Security with OSCAL: Going Beyond ‘Shift Left’ – Michaela Iorga, Supervisory Computer Engineer, Secure Systems and Applications Group, National Institute of Standards and Technology (NIST)
- 15:50 – 16:10 – Build with OSCAL: Use-cases for adoption and beyond – Fritz Kunstler, Principal Security Engineer, Amazon Web Services (AWS)
- 16:10 – 16:30 – OSCAL and European Cybersecurity Public Policy – Policy Analysis and Outreach Stream, ECSO
- 16:30 – 17:00 – Cobalt EU Initiative for Automated Compliance – Antonio Skarmeta, Full Professor, and Sara Nieves Matheu Garcia, Assistant Professor, University of Murcia
- 17:00 – 17:30 – Open Discussion – Moderated by ECSO
- 17:30 – 17:35 – Closing Remarks
Why Attend?
- Gain insights into automated compliance solutions and how OSCAL can reduce the burdens of manual auditing.
- Learn about the benefits of transitioning to machine-readable, data-centric frameworks for compliance.
- Understand the role of European stakeholders in adopting and developing practices to streamline cybersecurity compliance.
- Collaborate with industry leaders to define actionable steps for advancing cybersecurity in Europe.
Registration is required to attend. For more details and to register, please visit the ECSO events page