Du är offline. Det här är en skrivskyddad version av sidan.
Hoppa till huvudinnehåll
KTH Exjobbportal
Växla navigering
Uppdrag
Prenumerera
Om KTH Exjobbportal
Om KTH Exjobbportal
För uppdragsgivare
För studenter
FAQ
Svenska
English
Svenska
Logga in
Ansök med e-post
Ansök med URL
Uppdrag
Rubrik
*
*
Organisation/Företag
*
Plats
*
Uppdrag
*
Beskrivning
*
*
Background and Motivation: In cybersecurity engineering, “defensibility” is a concept on the rise that intends to complement the concept of "security". Even though the difference between the two are not entirely clear cut, defensibility is encompassing how difficult it is for a defender to transform a system environment into a (sufficiently) secure state. In the area of threat modeling models are produced to analyse security. This project aims to connect threat models to defensibility, and more specifically with threat models defined in the Meta Attack Language (MAL) (https://github.com/mal-lang). MAL models specify system architectures and possible attack paths over the architecture as well as potential defenses for mitigating the modelled attacks. Now we would like to also be able to use these models for assessing defensibility. Objectives: This project amis to extend the MAL formalism and a prototype toolchain so that it is possible This thesis aims to (a) define a formal notion and metrics of defensibility tailored to MAL-based threat models, and (b) develop a prototype toolchain to apply the metrics on the models. The project will : - Survey the literature on defensibility to arrive at state-of-the-art definition of "defensibility", and clarify how it differs from security, resilience and other related concepts. - Extract relevant properties and dimensions of the defensibility definition (e.g. cost of reconfiguring an architecture, attack detection capability, and more) and suggest queries or algorithms for measuring them on a MAL-model. - Select one or more representative domains or systems from literature with externally estimated levels of defensibility, reproduce them to demonstrate similar results from the model-based estimates. - Develop a toolchain that can automatically calculate the defensibility metric on a a MAL model. How to apply: Send your CV and University course grades to Mathias Ekstedt (mekstedt@kth.se). For questions about the project, send an email to the same address. Applications will be evaluated continuously
Det finns inga poster att visa.
Du har inte behörighet att visa de här posterna.
Fel när begäran slutfördes.
Läser in ...
Skapa
×
Stäng
Redigera
×
Stäng
Visa information
×
Stäng
Ta bort
×
Stäng
Vill du radera den här posten?
Fel
×
Stäng
Ett fel har uppstått.
Sista ansökningsdatum
*
*
Publiceringsdatum
*
*
Omfattning
30 hp
15 hp
15-30 hp
Applikationskanal
*
e-post
URL
Båda
E-post för ansökan
*
*
Appens URL
*
Ansökningshandlingar
*
CV, University grades