The overall claim of DHARMA is the research on novel approaches for dynamic risk assessment and management, and the design and development of a distributed platform cooperatively making dynamic risk management in real time, in order to achieve protection of most vulnerable assets at any time. The following figure shows a conceptual workflow of the DHARMA project.
This platform will be able to compute real-time risk assessments of any organization, report about countermeasures and residual risk, use this information for automatically react against security incidents and inform other trusted organizations about such security incidents collaboratively. The general process should be as follows. There is a set of sensors, internal or external for the organization, which measure different parameters involved in the risk assessment process, such as the level of power consumption, the level of noise, the network traffic, the incoming security threats, etc. Any change on one of them might modify the levels of impact and risk, so they need to be monitored in a continuous way and, when any alteration is detected, the corresponding sensor will inform about that to the distributed dynamic risk assessment controller. This component will normalize, correlate, process and analyse the received data, and, as a result, this will reassess the level of impact and risk at current time. Once new values are obtained, the controller will send this information to different output components responsible for risk treatment.