Information Security

Information security involves ensuring that information is only available to those who are authorized to see it (confidentiality), that the accuracy of data is maintained (integrity), and that IT systems and other facilities are present and usable when and where they are needed (availability).
Secure software engineering
Software security is the practice of building software to be secure and to function properly under malicious attack. The main challenge when building secure systems is having a systematic approach to security throughout the entire development cycle – during the phases of requirement engineering, design, implementation, testing, maintenance, and further development. We develop methods and tools that support such an approach.
Mobile networks
Mobile users expect to be able to roam globally, without the consideration of borders or physical obstacles. In the future, the connection to networks and services will be through a variety of heterogeneous access networks, based on, for instance, wireless LAN or Bluetooth, in addition to enhanced cellular methods. We develop architectures that support secure communication and secure access to mobile networks.
Health care systems
Electronic storage and transmission of health care information imply major challenges related to information security. We are working on access control and privacy protection, and the health sector is one of the main application areas.
Integrated operations
The automation industry has traditionally been based on closed networks and proprietary systems. There is currently a change towards open, off-the-shelf systems and networks, and information security is an important concern related to this change. Our focus is on awareness and incident response, and also technical solutions for integrated operations, and the oil and gas industry is our main application area at the time.