- JOB
- Italy
Job Information
- Organisation/Company
- Fondazione Bruno Kessler
- Research Field
- Other
- Researcher Profile
- Other Profession
- Positions
- PhD Positions
- Application Deadline
- Country
- Italy
- Type of Contract
- Temporary
- Job Status
- Full-time
- Offer Starting Date
- Is the job funded through the EU Research Framework Programme?
- Not funded by a EU programme
- Is the Job related to staff position within a Research Infrastructure?
- No
Offer Description
A well-known and documented issue in cybersecurity compliance is the difference in levels of abstraction and language between policymaking and implementing technical controls.
Moreover, cybersecurity compliance frameworks merely serve to acknowledge the presence, or the lack thereof, of security controls, not their effectiveness against real-world adversarial behavior. This conflation carries a twofold consequence: (i) the assumption that certification and compliance predict security carries significant regulatory weight but remains empirically untested, and (ii) after full compliance is achieved, the residual threat landscape is never empirically measured, thus leaving compliant organizations exposed to unquantified risk.
The main objective of this PhD is to explore innovative frameworks for bridging the gap between regulatory and engineering language and quantifying both the threat coverage of security controls and the residual threat landscape. These objectives will be achieved through the use of agentic artificial intelligence, lifecycle graph modeling of attack surfaces, probabilistic coverage scoring techniques, and real-world validation.
Where to apply
Requirements
- Research Field
- Other
- Education Level
- Master Degree or equivalent
Additional Information
Work Location(s)
- Number of offers available
- 1
- Company/Institute
- Fondazione Bruno Kessler
- Country
- Italy
- Geofield
Contact
- State/Province
- Trento
- City
- Trento
- Website
- Street
- Via Santa Croce 77
- Postal Code
- 38122