Thesis: Keeping track on the evolving threat landscape

Background
As vehicles get more and more connected functionality through a variety of interfaces, the attack surface expands too. Keeping track of the threat landscape is crucial for the continuous operation of those kinds of vehicle. Knowing the threat landscape and future predictions, during the design and analysis of connected vehicles, is a must. It is even advised due to the new automotive specific regulation UN R. 155 to have processes to assess whether the implemented security controls are still effective due to new threats.

Problem

Threat intelligence is by no means a new area, on the contrary, a multitude of companies are providing solutions, and some are even freely providing their intel, containing among other things, reports on the current threat landscape as well as future predictions.
These kinds of reports are valuable sources of information for companies building up their understanding of cyber threats and keeping it up to date. For a company producing various kinds of vehicle, such as trucks, buses, construction equipment, etc., which in addition are sold on various markets, the need to be able to tailor system solutions based on the threat landscape may be relevant.

Solution

By developing a methodology for how such reports can be consolidated and further be used as one threat intelligence source, among others, it could be incorporated into the threat landscape and subsequent work, such as threat models, TARAs, etc.

One suggestion is to utilize machine learning techniques, such as supervised learning and use a classifier to train a model such that important information in the reports can be classified according to some scheme. With this as a basis, important information can be extracted.

Goal of the thesis

Propose and/or develop a methodology for categorizing and extraction of the most important terms, concepts, etc. from threat intelligence reports relevant for the automotive industry, active in various domains, contexts and markets. Propose configuration, constraints, needed pre-processing, labelling scheme, etc. needed for a supervised learning classifier in order to adequately cover the important parts of the reports. Additionally, investigate the feasibility of using one such classifier (e.g. BERT) to classify relevant information and assess the model’s effectiveness.

Desirable expertise
  • Automotive systems
  • Machine Learning
  • Cybersecurity basics
  • System development
  • Python
Kick-off date
  • ASAP or during 2023.
Additional info

The scope can be flexible and adapted to 1-2 students, depending on how many students you are and how much time you have for your thesis.

Some reference links:
https://www.enisa.europa.eu/publications/enisa-threat-landscape-2022
2022 Global Automotive Cybersecurity Report | Upstream

Kindly note that due to GDPR, we will not accept applications via mail. Please use our career site.

The Volvo Group drives prosperity through transport solutions, offering trucks, buses, construction equipment, power solutions for marine and industrial applications, financing and services that increase our customers’ uptime and productivity. Founded in 1927, the Volvo Group is committed to shaping the future landscape of sustainable transport and infrastructure solutions. Countless career opportunities are offered across the group’s leading brands and entities that share a culture of Trust, Passion, High Performance, Change and Customer Success. 
www.volvogroup.com/career. 

Volvo Group Trucks Technology provides Volvo Group Trucks and Business Area's with state-of-the-art research, cutting-edge engineering, product planning and purchasing services, as well as aftermarket product support. With Volvo Group Trucks Technology you will be part of a global and diverse team of highly skilled professionals who work with passion, trust each other and embrace change to stay ahead. We make our customers win.

We want to get to know you

Application Process

Apply

The journey begins! An email confirmation will be sent as soon as you submit your application. After this, it is still possible to update your personal profile by login in to your account. The hiring team will review your application together with the hiring manager. Shortlisted candidates will be contacted with information about the following steps.

Testimonials

Similar jobs

Senior Engineer - Chassis Electrical Installation & Pneumatics Front Technology Göteborg, Sweden Posted: 
Functional Developer - Vehicle Motion Management Technology Göteborg, Sweden Posted: 
Manager – Product Development, Service & Parts Assortment Engineering Technology Göteborg, Sweden Posted: