Moving Target Defense to Improve The Security of

il y a 2 semaines


Brest, France IMT Atlantique Temps plein

**Moving Target Defense to improve the security of virtualised networks**:

- Réf
- **ABG-111219**
- Sujet de Thèse- 16/02/2023- Autre financement public- IMT Atlantique- Lieu de travail- Brest - Bretagne - France- Intitulé du sujet- Moving Target Defense to improve the security of virtualised networks- Champs scientifiques- Informatique
- Mots clés- cybersecurity**Description du sujet**:
**Research Context**:
Virtualised networks have become a major target of cyber attacks that aim at e.g. gaining unauthorised access to data or making networking services unavailable. While virtualisation provides a certain flexibility, it is also associated with an increased attack surface due to the complexity of the software stack and the security risks inherent in sharing hardware resources. Firewalls or IDS/IPS approaches, while effective, are static and cannot be deployed on a massive scale without inducing prohibitive resource usage. The static nature of virtualised network infrastructures - including defensive infrastructures - makes it easier for attackers that have sufficient time to investigate structural vulnerabilities in the network and launch attacks. Moving Target Defense (MTD) consists on adapting the environment in order to prevent or delay an attack on a system. The concept, existing on other context for years, has been applied to networking in the last decade. More recently, the advent of virtualisation technologies has offered new opportunities for this techniques along with more vulnerabilities from the security perspective, bringing both solutions and new challenges.

**PhD Research Project**

In this context, this thesis is focused on Moving Target Defense (MTD) solutions applied to virtualised networks. The ultimate goal being the development of diverse and dynamic configurations of network systems in order to reduce the attack surface, increase the attacker's uncertainty and thus the complexity required to complete the attack..

From this perspective, it is crucial to **model the attacker-defender** interactions to formally analyse the MTD strategies to be implemented. Tools such as game theory and artificial intelligence have shown to be well fitted for this objective, while scalabillity of the solutions remains a challenge not yet well addressed by the literature.

Another paramount aspect when defining strategies, is to make these defense strategies **dynamic** and **unpredictable** so as to mask the state of virtualised infrastructures and make vulnerabilities difficult to exploit and infrastructures more resilient to the ever more diverse attacks. In this regard, the main challenges are related to the **formal definition of new reconfiguration strategies that do not allow the attacker to anticipate the strategies** and therefore to circumvent them, or even to understand the changes made to defend the virtualised network.

Moreover, appropriate decisions must analyse the risks and actions costs in order to maximise the security provided while ensuring that the performance impact is minimised. Indeed, there is a delicate **trade-off** between the cost and the impact that this defensive policy may have on the performance of the virtualised network, which must be budgeted for and minimised, while on the contrary, the attacker's effort must be maximised and his/her chances of identifying targets, gathering information and carrying out successful attacks, minimised. The definition of pertinent performance metrics is a a crucial preliminary step towards this objective.

In addition to _what_ to move (defining the set of new configurations to be applied) and _how_ to move (the policy selecting the new configuration to be applied) it is crucial to define **_when_** to do changes**. Indeed, the timing problem has received very little attention in previous related works. Some empirical studies are present in the literature, providing mainly fixed (constant) intervals, which remain very specific to the threat model and most likely not optimal.

Last but not least, the challenges include **a good understanding and representation of the different steps required for attacks and the vulnerabilities inherent in virtualised networks** in order to define changes to be made ranging from (i) changes/permutations of the virtualised execution environment taking advantage of software diversity for example, (ii) reconfiguration of the network topology with in particular the adaptation of routing, redirection of traffic to honeypots, or even the obfuscating of the network functions implemented.

**Work Plan**:
To approach this thesis, the work plan is as follows:

- State of the art on existing defensive MTD approaches,
- Exploratory study: develop metrics to quantify the attack surface and propose new defensive strategies and their evaluation
- Advanced study: establish a model of the interactions between attacker and defender to support a more formal analysis of the MTD strategies implemented and adapt the defens


  • Staff Engineer

    il y a 1 semaine


    Brest, France Stryker Temps plein

    **Why engineering at Stryker?****: At Stryker we are dedicated to improving lives, with a passion for researching and developing new medical device products. As an engineer at Stryker, you will be proud of the work that you will be doing, using cutting-edge technologies to make healthcare better. Here, you will work in a supportive culture with other...


  • Brest, France CNES - Centre National d'Etudes Spatiales Temps plein

    Doctorat, 36 mois - Temps plein - Aucune expérience exigée - Maitrise, IEP, IUP, Bac+4 - Coastal, Littoral, Marine cryosphere **Mission**: Over the last decades, the large and fast reduction of the Arctic sea ice cover is one of the most striking signatures of climate change (IPCC, 2022). As the Arctic transitions towards a seasonal ice cover, the melting...

  • IT Saas Security Manager

    il y a 2 semaines


    Brest, France Harmonic Inc. Temps plein

    **IT SaaS Security Manager** Location : Europe sites or remote **Role summary** **Qualifications** **Requirements**: At least 12 years of experience with strong experience in IT Security Management ideally on similar position. You will need to have in-depth knowledge and responsibility of: - ** Design, implement and maintain** IT security systems to...


  • Brest, Bretagne, France CNES - Centre National d'Etudes Spatiales Temps plein

    Doctorat, 36 mois Temps plein Aucune expérience exigée Maitrise, IEP, IUP, Bac+ Coastal, Littoral, Marine cryosphereMission:Over the last decades, the large and fast reduction of the Arctic sea ice cover is one of the most striking signatures of climate change (IPCC, As the Arctic transitions towards a seasonal ice cover, the melting season lengthens and...

  • IT Saas Security Manager

    il y a 2 jours


    Brest, Bretagne, France Harmonic Inc. Temps plein

    IT SaaS Security ManagerLocation : Europe sites or remoteRole summaryQualificationsRequirements:At least 12 years of experience with strong experience in IT Security Management ideally on similar position.You will need to have in-depth knowledge and responsibility of:**Design, implement and maintain** IT security systems to protect against cyber threats....


  • Brest, France Bunge Temps plein

    Location :  Brest City : Brest State : Finistère (FR-29) Country : France (FR) Requisition Number : 34689 BUNGE  has an exciting opportunity available for a  Continuous Improvement Lead - Brest . In this role, you will be responsible for continuous improvement activities for Brest plant. Some responsibilities of the Continuous...

  • Copy of Project Manager

    il y a 4 semaines


    Brest, France ASSYSTEM Temps plein

    Company DescriptionAssystem is an international company with one mission: accelerate the energy transition around the world.Every day, our 6,500 switchers located in 12 countries (Europe, Middle East, Pacific Asia & Africa) connect their six thousand billion neurons to tackle the task of the century: switching to low-carbon energy.We are a collective...

  • Copy of Project Manager

    il y a 3 semaines


    Brest, France ASSYSTEM Temps plein

    Company DescriptionAssystem is an international company with one mission: accelerate the energy transition around the world.Every day, our 6,500 switchers located in 12 countries (Europe, Middle East, Pacific Asia & Africa) connect their six thousand billion neurons to tackle the task of the century: switching to low-carbon energy.We are a collective...


  • Brest, France CNES - Centre National d'Etudes Spatiales Temps plein

    Doctorat, 36 mois - Temps plein - Moins de 2 ans d’expérience - Master, DESS, DEA, Bac+5 - Telecommunications **Mission**: Antennas are strongly influenced by their surrounding environments. Integration of antennas on metallic structures usually leads to a degradation of antenna performance. Furthermore, when a high number of radiating elements is...


  • Brest, France CNES - Centre National d'Etudes Spatiales Temps plein

    Doctorat, 36 mois - Temps plein - Aucune expérience exigée - Maitrise, IEP, IUP, Bac+4 - Oceanography **Mission**: Waves are created at the sea surface by the wind through the transfer of momentum. This turbulent exchange of momentum is an essential boundary condition in atmospheric models. It is generally represented (as a parameterization) as a function...


  • BREST, France OVHCloud Temps plein

    IT Technical Leader Exchange M/F/XWithin your #OneTeamWe are looking for an IT Technical Leader Exchange for our IT, technology & product department, which designs and develops the products, services and infrastructures that together build the future of OVHcloud.You will join a Collaboration team of more than 15 people which care to provide smart...


  • Brest, France IMT ATLANTIQUE Temps plein

    **Design of a CMOS ASIC for medical imaging**: - Réf - **ABG-118475** - Stage master 2 / Ingénieur- Durée 6 mois- Salaire net mensuel 623,70€- 27/11/2023- IMT ATLANTIQUE- Lieu de travail- Brest Bretagne France- Champs scientifiques- Electronique - Mots clés- Analog and mixed signal integrated circuit, 3-photon PET imaging**Établissement...


  • Brest, Bretagne, France Naval Group Temps plein

    Position: Responsable processus ITILCompany: Naval GroupDescription of the Position:Naval Group is hiring for their Brest site, within the Digital Transformation and Information Systems Department (DTSI). The DTSI ensures the operation of the group's information systems, guarantees project management control, and application functionality, while engaging in...


  • Brest, Bretagne, France OVHCloud Temps plein

    IT Technical Leader Exchange M/F/XWithin your #OneTeamWe are looking for an IT Technical Leader Exchange for our IT, technology & product department, which designs and develops the products, services and infrastructures that together build the future of OVHcloud.You will join a Collaboration team of more than 15 people which care to provide smart...


  • Brest, France Ecole Nationale d'Ingénieurs de Brest (ENIB) Temps plein

    **Learning Autonomous Mobility of Underwater Robots for Renewable Energies**: - Réf **ABG-124512** - Sujet de Thèse- 07/06/2024- Contrat doctoral- Ecole Nationale d'Ingénieurs de Brest (ENIB)- Lieu de travail- Brest - Bretagne - France- Intitulé du sujet- Learning Autonomous Mobility of Underwater Robots for Renewable Energies- Champs scientifiques-...


  • Brest, France IMT Atlantique Temps plein

    **Design of advanced beam-forming techniques for simultaneous scanning & communication operating modes antennas for 5G/6G OpenRAN**: - Réf **ABG-120995** - Sujet de Thèse- 08/03/2024- Financement public/privé- IMT Atlantique- Lieu de travail- Brest - Bretagne - France- Intitulé du sujet- Design of advanced beam-forming techniques for simultaneous...


  • Brest, France IMT Atlantique Temps plein

    **Distributed non supervised learning on autonomous systems with limited resources**: - Réf - **ABG-110994** - Sujet de Thèse- 09/02/2023- Contrat doctoral- IMT Atlantique- Lieu de travail- Brest - Bretagne - France- Intitulé du sujet- Distributed non supervised learning on autonomous systems with limited resources- Champs scientifiques- Informatique -...


  • Brest, France Institut Mines-Télécom Temps plein

    **About the position** **Contract type**:_Chaire de Professeur Junior_**_[1]_**_. _Successful applicants will first be hired on a ‘CDD de projet’ contract and tenure will occur at IMT Professor level. _ - Location: IMT Atlantique, Brest campus_ - Partners: Ifremer, Inria, _ **Thematic and research challenges** **Eco-system and context**: IMT...

  • Staff DevOps Engineer

    Il y a 2 mois


    Brest, France Stryker Temps plein

    Stryker is one of the world’s leading medical technology companies and, together with our customers, is driven to make healthcare better. We offer innovative products and services in Orthopedics, Medical and Surgical, Neurotechnology and Spine that help improve patient and hospital outcomes. We are looking for an ambitious and self-motivated DevOps...

  • Indicate The Job Title

    Il y a 2 mois


    Brest, France CEVA Animal Health, LLC Temps plein

    **Indicate the job title** The success of a company depends on the passionate people we partner with. Together, let's share our talents. As a global leader in animal health, Ceva Animal Health believes our success is linked to our passionate people researching, developing, producing and supplying innovative health solutions for all animals, which...