DIGITAL-ECCC-2027-DEPLOY-CYBER-11-AI4SME

Strengthening cybersecurity capacities of European SMEs with cybersecure AI-powered solutions

Status
open for submission
Programme
Digital Europe Programme (DIGITAL)
Action type
DIGITAL JU SME Support Actions
Opens
1 Sep 2026
Deadline
14 Jan 2027
Fetched
5 Sep 2026, 00:32 UTC
Plain-language summary

Support adoption and deployment of AI-powered cybersecurity tools tailored for European SMEs to enhance cyber resilience and risk management.

This call funds projects that develop and deploy AI-based cybersecurity solutions for SMEs in Europe. It aims to improve SMEs' ability to assess cyber risks, detect threats, and respond to incidents using user-friendly AI tools. The goal is to strengthen cybersecurity culture and resilience among SMEs.

Likely relevant for

  • SMEs in Europe
  • Cybersecurity technology developers
  • AI solution providers
  • SME support organizations
  • Cyber risk management experts

Project signals

Development or adaptation of AI cybersecurity software/hardwareDeployment of AI tools for SME cyber risk managementAutomation of cybersecurity processes for SMEsIntegration with Cyber Hub for incident reporting

What it funds

  • Development and deployment of AI-powered cybersecurity products, tools, and services for European SMEs
  • Automation of cybersecurity processes via SaaS toolkits tailored to SMEs
  • Functions including risk assessment, threat detection, incident response, and cyber-incident prediction
  • Integration of AI technologies to improve cybersecurity preparedness and resilience in SMEs

Expected outcomes

  • Increased adoption of innovative AI cybersecurity solutions by SMEs
  • Improved cyber risk management and resilience in SMEs
  • Enhanced cybersecurity culture and knowledge dissemination
  • Deployment of trustworthy AI-driven cybersecurity tools with human oversight and robustness

Who can apply / participate

  • SMEs
  • Research and technology organizations
  • Cybersecurity solution providers
  • SME support organizations
  • Consortia including relevant stakeholders
  • Check call document for specific consortium requirements
  • Eligible countries as per call document section 6
  • Refer to call document section 6 for detailed eligibility conditions
  • Exact consortium size and composition requirements
  • Specific country eligibility details

Must check before shortlisting

  • Eligibility criteria in call document section 6
  • Consortium requirements and country eligibility
  • Budget and funding conditions

Money

Total budget of approximately €20 million for this action in 2026, with individual grants ranging from €3 million to €5 million. Expected to fund around 5 projects.

  • Total budget for AI4SME action — 20000000EUR
    Budget allocated for 2026
  • Minimum grant per project — 3000000EUR
    Minimum funding per grant
  • Maximum grant per project — 5000000EUR
    Maximum funding per grant

Application notes

  • Single-stage submission model.
  • Proposal page limits and layout as described in call document section 5 and application form Part B.
  • Eligibility and admissibility conditions detailed in call document section 6.
  • Financial and operational capacity requirements in call document section 7.
  • Evaluation and award criteria and process in call document sections 8 and 9.
  • Legal and financial set-up described in call document section 10.
  • Prepare proposal according to page limits and layout requirements.
  • Check eligibility criteria and admissibility conditions.
  • Submit proposal via the Funding & Tenders Portal before the deadline.
  • Follow evaluation and award procedures as per call document.
  • Consult National Cybersecurity Coordination Centres or ECCC Applicants Direct Contact Centre for support.
  • Check detailed eligibility and consortium rules in call document before applying.
  • Ensure compliance with all submission requirements to avoid rejection.
  • Budget and funding conditions may vary; verify in official documents.

Derived from official EU Funding portal source · updated 1 Sep 2026, 11:20 UTC. Use this as a shortlisting aid; the official call text remains authoritative.

Official source text

Fine print from the EU source record. Expand when you need the original wording.

Topic description

Expected Outcome: Support the adoption of market-ready innovative AI-powered cybersecurity solutions, including solutions developed in the framework of EU-supported research and innovation projects. Provide and deploy up to date AI-powered tools and services to organisations (in particular SMEs) to prepare, protect and respond to cybersecurity threats. Integrate AI technologies into cybersecurity processes to improve the security of ICT solutions, including providing innovative approaches to training employees to use AI solutions for cybersecurity. Deployment of cybersecure tools and technologies relying on trustworthy AI; AI driven cybersecurity tools; Integration of tools to protect and secure AI solutions. Objective: To support the market uptake and dissemination of innovative AI-powered cybersecurity solutions (notably in SMEs, possibly using results stemming from Horizon Europe projects or similar) and improve knowledge and auditing of cybersecurity preparedness. SMEs often lack the resources to assess cyber risks, develop cybersecurity strategies and implement solutions, leaving them vulnerable to cyberattacks. The resilience of organisations that fall into this category is key to the prosperity of the EU single market. Cyber risk assessment and management can be significantly enhanced and simplified with the application of AI-based tools and solutions. However, this requires an understanding of the evolving technology landscape, of the benefits of technology integration and of deployment prioritisation. Faced with organisational and financial constraints, the SMEs may be missing the opportunity to fully harness AI-powered solutions to advance their cybersecurity and resilience. Cybersecurity is the precondition for reliable, secure and resilient AI models and algorithms. Cybersecurity of AI is not just about protecting AI systems against threats such as poisoning and evasion attacks, as it also involves ensuring they have trustworthiness features such as human oversight and robustness – the ability to resist cyberattacks, as required by the EU’s AI Act for high-risk AI systems. The need for human oversight of AI has also been emphasised by experts. Also, the use of AI at the SME level supporting the integration of predictive algorithms can greatly support to a bottom-up approach when dealing with vulnerability detections, threat mitigation and more efficient coordinated incident response. Scope: This action aims to increase the maturity of cyber risk management and improve the cyber resilience and ultimately foster a technologically advanced culture of cybersecurity for SMEs in the EU. Actions in this topic should develop and deploy AI-powered products, tools and services for European SMEs, also enabling the detection/discovery of attack patterns. Proposals should cover the development or adaptation of the software/hardware and the validation of the solutions. It foresees the automation of fundamental cybersecurity processes, in particular in small market organisations, through a SaaS toolkit tailored to the needs of SMEs. This toolkit should allow SMEs to improve the key aspects of their cybersecurity by providing user-friendly tools for risk management [1], threat detection, incident response and notification, to improve their cyber hygiene and mitigate potential threats while protecting personal data. The cyber toolkit should also provide cyber-incident prediction and response functions to improve SMEs’ resilience. Activities should include at least one of the following: Uptake/adoption of AI-powered cybersecurity tools in organisations where this has not yet taken place. Development of user-friendly sets of tools (e.g. toolkit) based on AI to automate main cybersecurity processes in SMEs. Such a toolkit could provide automated functions such as: A function that supports the assessment and management of an SME’s cybersecurity risks. This function should perform a risk assessment, provide recommendations for risk mitigation, and identify options. An interface to existing tools that support the analysis and assessment of the extent of an SME’s cyber risk based on information gathered from digital infrastructure scanning and data provided by authorised users. A function that issues alerts on relevant vulnerabilities and threats based on the information collected by the risk management function. A function that connects SMEs to a Cyber Hub to report an incident and assist with recovery if possible. SME user interface for incident reporting associated with the cyber toolkit. Users can report an incident, get instructions on how to react and obtain information on how to obtain support for the response, with the use of AI assistants. [1] Interoperable EU Risk Management Framework, ENISA, 2023, available at: https://www.enisa.europa.eu/publications/interoperable-eu-risk-management-framework

Conditions and documents

Conditions

1. Admissibility conditions: Proposal page limit and layout

described in section 5 of the call document.

Proposal page limits and layout: described in Part B of the Application Form available in the Submission System.

2. Eligible countries

described in section 6 of the call document.

3. Other eligibility conditions

described in section 6 of the call document.

4. Financial and operational capacity and exclusion

described in section 7 of the call document.

5a. Evaluation and award: Submission and evaluation processes

described section 8 of the call document and the Online Manual.

5b. Evaluation and award: Award criteria, scoring and thresholds

described in section 9 of the call document.

5c. Evaluation and award: Indicative timeline for evaluation and grant agreement

described in section 4 of the call document.

6. Legal and financial set-up of the grants

described in section 10 of the call document.

Support information

For guidance and support related to this call, we recommend that you first contact the National Cybersecurity Coordination Centres (NCC) in your country, where available. The Network of NCCs includes one national centre from each of the 27 EU Member States plus Iceland and Norway. You may also address your questions to the ECCC Applicants Direct Contact Centre at applicants@eccc.europa.eu Funding & Tenders Portal FAQ – Submission of proposals . IT Helpdesk – Contact the IT helpdesk for questions such as forgotten passwords, access rights and roles, technical aspects of submission of proposals, etc. Online Manual – Step-by-step online guide through the Portal processes from proposal preparation and evaluation to reporting on your ongoing project. Valid for all 2021-2027 programmes.

Raw budget overview
{
  "budgetYearsColumns": [
    "2026"
  ],
  "budgetTopicActionMap": {
    "115381": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-REGCABH - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 2,
        "minContribution": 2500000,
        "maxContribution": 2500000,
        "budgetYearMap": {
          "2026": "5000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115382": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-COORDPREP - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 10,
        "minContribution": 1500000,
        "maxContribution": 1500000,
        "budgetYearMap": {
          "2026": "15000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115383": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-DUALUSE - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 3,
        "minContribution": 3000000,
        "maxContribution": 5000000,
        "budgetYearMap": {
          "2026": "10000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115384": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-EULEG - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 5,
        "minContribution": 3000000,
        "maxContribution": 5000000,
        "budgetYearMap": {
          "2026": "20000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115385": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-AI4SME - DIGITAL-JU-SME DIGITAL JU SME Support Actions",
        "expectedGrants": 5,
        "minContribution": 3000000,
        "maxContribution": 5000000,
        "budgetYearMap": {
          "2026": "20000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115386": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-NCC - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 4,
        "minContribution": 2000000,
        "maxContribution": 3000000,
        "budgetYearMap": {
          "2026": "11000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ],
    "115387": [
      {
        "action": "DIGITAL-ECCC-2027-DEPLOY-CYBER-11-CYBERAI - DIGITAL-JU-SIMPLE DIGITAL JU Simple Grants",
        "expectedGrants": 4,
        "minContribution": 3000000,
        "maxContribution": 5000000,
        "budgetYearMap": {
          "2026": "15000000"
        },
        "plannedOpeningDate": "2026-09-01",
        "deadlineModel": "single-stage",
        "deadlineDates": [
          "2027-01-14"
        ]
      }
    ]
  }
}