Research Security
Overview
- What is Research Security?
- Why is research security important for higher education institutes?
- How do export controls relate to research security?
- How does research integrity relate to research security?
- What do we mean by research security risks?
- What is happening nationally in terms of research security?
What is Research Security?
‘Research security’ refers to anticipating and managing risks such as the undesirable transfer of critical technology, exerting a malign influence on research, and ethical or integrity violations by third countries.
There has been greater focus on research security following the EU Council Recommendation of 23 May 2024 on enhancing research security. This recommendation reconfirmed Europe's commitment to openness but also called for a more nuanced approach to how we engage with global partners. It recognises the need to strike a balance between fostering international cooperation while also safeguarding its interests. The Council Recommendation highlights the need for an urgent response, and all Member States are expected to put a national approach in place without delay. Specifically, it recommends national authorities to develop research security policies, national funders to put in place robust safeguards and the research performers (such as universities) to introduce risk management processes.
Research security is included as a priority action in the next ERA policy agenda 2025-27, as adopted by the Council in May 2025, and new laws on research security are to be included in the forthcoming European Research Area (ERA) Act. The Act is intended to create legally blinding obligations and incentive for EU member states to create a single market for research. Work is underway to establish a European Centre of Expertise on Research Security and an EU due diligence platform for international partner assessment (Commission announces new measures to strengthen research security - Research and innovation).
Why is research security important for higher education institutes?
It is important that Irish Higher Education Institutes (HEIs) have research security measures in place to continue be seen as competitive and attractive partners in the context of global research collaboration.
Europe’s next Framework Programme for R&I (FP10 – Horizon Europe) has a greater focus on European competitiveness (Horizon Europe 2028 - 2034: twice bigger, simpler, faster and more impactful - Research and innovation) and research with dual-use potential (Research with dual-use potential in FP10 - Strategy and necessary safeguards) (R&I that can be utilised for both civilian and military application). There will be an increased need for robust institutional research security measures and supports if HEIs are to engage competitively in this new programme.
How do export controls relate to research security?
Multiple legal frameworks are relevant to research security, including data protection, intellectual property, export controls, and national security and investment. Export controls represent a component of research security that is provided for in legislation; export control laws regulate the transfer of listed items (controlled products and materials) to other countries, particularly countries outside the EU. Applying for and obtaining an export control licence, where required, is mandatory.
Since 2021, there has been a greater focus on export control in HEIs following the introduction of the new ‘dual use’ regulation (2021), and guidance for RPOs (2021). The Department of Trade, Enterprise and Employment (DETE) began actively engaging with HEIs from 2022, undertaking visits to assess compliance. First, DETE are working with HEIs to implement measures to enable compliance. However, as part of future audits, DETE will be seeking evidence that HES are actively engaging with, committed to, and compliant with export control regulations.
How does research integrity relate to research security?
The Research Security Guidelines for Ireland recognise that ‘research security and research integrity may intersect in certain areas, particularly around disclosure, transparency, and external influence, but remain distinct governance domains with separate objectives and institutional frameworks’. Together, research ethics, research integrity and research security ensure that research activities are responsible, safe and transparent. The guidelines recommend that ‘research integrity and research security governance should be appropriately aligned where areas of overlap arise’ and outlines that integrity risks with a security dimension include: ‘covert influence on research outputs or conclusions, manipulation of peer review processes, misrepresentation of funding sources or affiliations, and undisclosed conflicts of interest arising from foreign relationships.’ Existing initiatives, including the EU funded initiative CHAllenges and innovative chaNGes in research Ethics Reviews (CHANGER) advocate for the integration of research security into existing research governance structures, including research ethics processes for the rather than creating entirely new compliance systems (see policy brief ‘Challenges and recommendations for research security: Learning from research ethics and integrity’).
There may be tensions between research security and open science. For example, the former may require restricted access and controlled sharing. However, there is also alignment - both are concerned with generating trust in research, protecting public confidence, transparency and openness, due diligence, stewardship, accountability and a culture of responsible conduct. The G7 Common Values and Principles on Research Security and Research Integrity, affirms ‘that openness and security are complementary and mutually reinforcing, and that protecting research security requires partnership between governments, funders, institutions, and researchers.’ The EU Council Recommendation of 23 May 2024 on enhancing research security reaffirms the principle of open science, that research should be ‘as open as possible, as closed as necessary’. For more details on open science see: Open Research at University College Cork.
What do we mean by research security risks?
The risks presented by research security include but are not limited to:
- theft of research data (lost work, effort, professional recognition and possible monetary loss, reputational damage);
- over-reliance on a single source of funding (risk of leverage, pressurising, free speech, academic freedom implications);
- loss of IP and potential revenue;
- legal or administrative non-compliance (exposure to administrative sanctions, litigation, or criminal charges).
More specifically, failure to comply with export control regulation can result in fines, criminal prosecution, product recalls, suspension, or revocation of UCC’s import or export privileges and a serious disruption of university research activity.
What is happening nationally in terms of research security?
In response to the Council Recommendation, DFHERIS undertook a consultation process (Nov. 2024 – Nov. 2025) to develop national guidance which were published 7 September 2026: Research Security Guidelines for Ireland.
Institutions are expected to embed research security within their institutional risk management processes and to devise the appropriate opportunity and risk assessment framework for their organisation while respecting academic freedom and institutional autonomy. Researchers at all levels are expected to know what research security is and to be aware of any security risks associated with their research.
UCC Guidance and Processes
Guidance and Policies
Two internal documents developed within UCC are specifically relevant to research security. All researchers should read and be familiar with these documents. They outline what is required from a researcher perspective.
- UCC Export Control Internal Compliance Programme (ICP)
- UCC Research Security Framework and Due Diligence Process
Several other policies are also relevant to research security. These can be accessed here or directly at the links below.
- UCC Research Data Management Policy
- Open Access to Publications
- Code of Research Conduct
- Intellectual Property Policy
For access to further resources and guidance for researchers as they are developed, please see our internal SharePoint:
- Research security: Training and Resources
- Export control: Key Resources
For details of the processes which have been put in place to support the identification of export control considerations and research security risks and concerns, see our internal SharePoint:
- UCC Research Security Framework and Due Diligence Process: UCC Research Due Diligence Process - Funded Research
- UCC Export Control ICP: Procedures and Controls
Research Security Working Group
A Research Security Working Group is in the process of being established to advise on the implementation of the Research Security Guidelines for Ireland, along with research security governance, oversight, guidance and training.
Resources
Training
- Epigeum Research Integrity Training, which includes a specialist module (module 14) on export control.
- Introductory training on export control Export Controls Training for Researchers.
Publications
- OECD: Integrity and Security in the Global Research Ecosystem (2022) (OECD)
- G7 Common Values and Principles on Research Security and Research Integrity
- European Commission Recommendation on Enhancing Research Security (2024) (European Parliament)
- UKRI Trusted Research and Innovation Guidance (2025) (UK Research and Innovation)
- UK National Protective Security Authority Trusted Research Guidance (2025) (National Protective Security Authority)
- NSF Research Security Framework (NSF - U.S. National Science Foundation)
- Research security guidance from the U.S. Office of Science and Technology Policy
- OECD Research Security Portal (stip.oecd.org)
- The NIST Safeguarding International Science framework
- Forensic scientometrics and emerging integrity-security threats. (arXiv)
- Steneck, N.H. (2023) Research Integrity and Security: Moving Towards Alignment. Journal of Research Ethics, 15(2), 134-150
- Resnik, D.B. (2022). Balancing Openness and Data Security in Research. Science and Engineering Ethics, 28(4), 45-63
- Policy Brief: Challenges and recommendations for research security: Learning from research ethics and integrity
More specific resources to undertake due diligence are included in the UCC Research Security Framework and Due Diligence Process.
UCC Research
Aistriú Taighde
Contact us
Office of Vice President for Research & Innovation, 4th Floor, Block E, Food Science Building University College Cork, T12 K8AF