PhD Researcher in Explainable Incident Response

4 dagen geleden


Enschede, Overijssel, Nederland University of Twente Voltijd
Job Description

In the realm of Security Operations Centres (SOCs), machine learning (ML) solutions are increasingly being deployed to enhance security coverage and reduce missed attacks. However, these ML systems create many false positives and are often difficult to understand. The forensic analysis of incidents and incident response are largely manual procedures, leading to analyst burnout and 'alert fatigue.'

Research Objectives

The objective of this PhD project is to create 'AI-assisted practitioners' for incident response by developing novel ML algorithms that reduce analyst workload and provide decision-making assistance. We propose to develop explainable ML algorithms that summarize large volumes of observable data (intrusion alerts, network & system logs) in order to discover contextually meaningful patterns from them.

Key Responsibilities
  • Develop novel ML algorithms for incident response
  • Explore multi-modal learning and generative AI to produce actionable explanations
  • Evaluate these algorithms under closed-world and open-world settings
  • Collaborate with industry partners to collect intrusion alert datasets
  • Deploy these algorithms in real SOC environments to measure workload reduction
Requirements
  • MSc degree in computer science or similar
  • Excellent grades and strong research background
  • Interest in cybersecurity and solid background in systems security and/or data science/artificial intelligence
  • Experience with UNIX/Linux systems and Python programming
  • Curiosity, analytical and communication skills, and team spirit
What We Offer
  • Full-time PhD position for four years
  • Qualifier in the first year
  • Dynamic and stimulating scientific environment
  • Competitive salary and benefits
  • Opportunities for personal and professional growth


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionIn today's digital landscape, cybersecurity threats are becoming increasingly sophisticated, making it challenging for security analysts to respond effectively. To address this issue, we are seeking a highly motivated PhD researcher to join our team at the University of Twente. The successful candidate will work on developing novel machine...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    About the PositionWe are seeking a highly motivated and enthusiastic researcher to join our team at the University of Twente as a PhD Researcher in Explainable Incident Response. The successful candidate will be part of the Semantics, Cybersecurity, and Services (SCS) group and will work on developing novel ML algorithms that reduce analyst workload and...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionIn the realm of cybersecurity, the increasing deployment of machine learning (ML) solutions in Security Operations Centres (SOCs) has led to a surge in false positives and a lack of understanding of how these systems work. The forensic analysis of incidents and incident response remain largely manual procedures, resulting in analyst burnout...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionIn the realm of Security Operations Centres (SOCs), machine learning (ML) solutions are increasingly being deployed to enhance security coverage and reduce missed attacks. However, these ML systems create many false positives and are often difficult to understand. The forensic analysis of incidents and incident response are largely manual...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionIn the realm of Security Operations Centres (SOCs), machine learning (ML) solutions are increasingly being deployed to enhance security coverage and reduce missed attacks. However, these ML systems create many false positives and are often difficult to understand. The forensic analysis of incidents and incident response are largely manual...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Explainable Incident ResponseIn today's complex cybersecurity landscape, machine learning (ML) solutions are increasingly being deployed in Security Operations Centres (SOCs) to enhance security coverage and reduce the number of missed attacks. However, these ML systems create many false positives and are often difficult to understand,...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    About the RoleWe are seeking a highly motivated and talented PhD researcher to join our team at the University of Twente. The successful candidate will be part of the Semantics, Cybersecurity, and Services (SCS) group, where they will contribute to the development of innovative AI solutions for incident response.Key ResponsibilitiesDesign and develop...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionIn today's digital landscape, cybersecurity threats are becoming increasingly sophisticated. To combat these threats, organizations are turning to machine learning (ML) solutions to enhance their security operations. However, the deployment of ML systems in Security Operations Centres (SOCs) has created new challenges. One of the primary...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    About the PhD PositionIn the context of increasing adoption of machine learning (ML) solutions in Security Operations Centres (SOCs), the ability to understand and explain ML-driven incident response decisions is becoming a critical challenge. This PhD project aims to address this challenge by developing novel ML algorithms that reduce analyst workload and...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    About the RoleWe are seeking a highly motivated and talented PhD researcher to join our team at the University of Twente. The successful candidate will be working on developing innovative explainable AI algorithms for incident response in cybersecurity.Key ResponsibilitiesDesign and develop explainable AI models for incident response in...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe University of Twente is seeking a highly motivated and enthusiastic PhD researcher to join our team in the EU Horizon 2020 Marie Skiodowska-Curie Project NEPIT. As a PhD researcher, you will work on the development of new methods and tools for electromagnetic compatibility and propagation.Key...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente is seeking a highly motivated PhD researcher to work on the project "Effective Aperture of Openings of Systems in Reverberant Environments" within the EU Horizon 2020 Marie Sklodowska-Curie Project NEPIT.About the...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    Job DescriptionThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente has a vacancy for a PhD researcher in the field of closed-loop testing for faster and better electromagnetic evaluation of complex high-tech systems.Research ObjectivesThe main objective of this research is to develop a new standard for testing large...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente is seeking a highly motivated PhD researcher to work on the project "Effective Aperture of Openings of Systems in Reverberant Environments" within the EU Horizon 2020 Marie Skødowska-Curie Project NEPIT - Network for...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Thermochemical MaterialsWe are seeking a highly motivated and skilled PhD researcher to join our interdisciplinary team at the University of Twente. As part of the MICRO-HS project, you will be working on the development of stable thermochemical materials using micro-fluidics.About the ProjectThe MICRO-HS project is a collaboration between...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Thermochemical MaterialsWe are seeking a highly motivated and skilled PhD researcher to join our interdisciplinary team at the University of Twente. As part of the MICRO-HS project, you will be working on the development of stable thermochemical materials using micro-fluidics.About the ProjectThe MICRO-HS project is a collaboration between...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente has a vacancy for a PhD researcher in Electromagnetic Compatibility. This research is part of the EU Horizon 2020 Marie Sklodowska-Curie Project NEPIT - Network for Evaluation of Propagation and Interference Training.About...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente has a vacancy for a PhD researcher to work on effective aperture modeling in reverberant environments within the EU Horizon 2020 Marie Skõdowska-Curie Project NEPIT - Network for Evaluation of Propagation and Interference...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente has a vacancy for a PhD researcher to work on effective aperture modeling in reverberant environments within the EU Horizon 2020 Marie Sklodowska-Curie Project NEPIT.About the ProjectThis project is linked to Doctoral...


  • Enschede, Overijssel, Nederland University of Twente Voltijd

    PhD Researcher in Electromagnetic CompatibilityThe Power Electronics and Electromagnetic Compatibility Group at the University of Twente has a vacancy for a PhD researcher to work on effective aperture modeling in reverberant environments within the EU Horizon 2020 Marie Skõdowska-Curie Project NEPIT - Network for Evaluation of Propagation and Interference...