IACR News
If you have a news item you wish to distribute, they should be sent to the communications secretary. See also the events database for conference announcements.
Here you can see all recent updates to the IACR webpage. These updates are also available:
11 July 2017
Graz University of Technology
In order to extend our interdisciplinary team we are looking for two postdoctoral researchers with experience/interest in at least one of the following fields:
- Side Channels
- Operating system security
- Software isolation techniques
- Cryptography
- Formal methods
- Code analysis and compilers
As a postdoctoral researcher in our team you will have the opportunity to conduct ERC-funded basic research as well as to work on applied topics with one of our many industry partners. We offer a vibrant working environment that in total comprises more than 60 researchers in the area of information security at Graz University of Technology.
The position is for at least one year.
In case you are interested in joining our team, please apply by submitting your application at https://www.iaik.tugraz.at/content/about_iaik/jobs/vacant_jobs/.
Applications should include a curriculum vitae, a statement of motivation, a transcript of records as well as names and email addresses of two persons that can provide references. We are looking forward to your application.
Closing date for applications: 30 September 2017
Contact: Stefan Mangard, Stefan.Mangard (at) iaik.tugraz.at
More information: https://www.iaik.tugraz.at/content/about_iaik/jobs/vacant_jobs/
Visa Research, Palo Alto, California, USA
Interested candidates should kindly email their CV to research (at) visa (dot) com with the subject line Security Research Position.
Closing date for applications: 31 December 2017
RMIT University, Melbourne, Australia
We offer five Ph.D. scholarships to support Ph.D. students to work on projects aiming to explore the novel methods of artificial intelligence, data mining and machine learning for the applications in defending cyber security. The successful candidates are expected to submit their Ph.D. thesis based on the research.
Candidates should have
- a Bachelor degree with Honours (BSc Hons) in computer science with good programming skills; or a Masters degree in computing, information technology or related discipline,
- good English (e.g., IELTS 6.5 or TOEFL 90),
- knowledge of cryptographic protocols, data mining or machine learning algorithms, and cloud computing architecture. Publications in cyber security and privacy will be regarded as an additional merit.
Please send your CV and publication record to andrei.kelarev (at) rmit.edu.au.
Please include \"PhD scholarship\" in the subject of email.
Closing date for applications: 15 September 2017
Contact: Dr. Andrei Kelarev
School of Science, RMIT University, GPO Box 2476, Melbourne, VIC 3001, Australia
andrei.kelarev (at) rmit.edu.au
More information: https://www.rmit.edu.au/
04 July 2017
University of Tartu, Estonia
The successful candidate will help to design and evaluate cryptographically secure mix-nets and perform other research duties to help with the project, coordinate and advise partners on implementing research prototypes (the candidate may or may not participate in implementing) and ensure the smooth administration of the project including the timely delivery of research output. We expect the candidate to be able to develop and devote significant time to their own research agenda around the theme of the project.
The EU H2020 project PANORAMIX requires travel to and collaboration with colleagues throughout the European Union. Full travel and equipment budget is available to support the activities of the project.
For any inquiries or to apply for the positions, submit a full research curriculum vitae (cv), names of two references, and a research statement to Prof Helger Lipmaa clearly indicating the position sought.
The call for expressions of interest will remain open until a suitable candidate is appointed. However, the project will finish on September 1, 2018, so early applications are encouraged. In the case of interest, the candidates may later seek further employment but this is not necessarily guaranteed.
Closing date for applications: 1 November 2017
Contact: Helger Lipmaa
Research Professor
firstname.lastname (at) ut.ee
More information: http://crypto.cs.ut.ee/Projects/Panoramix
DarkMatter LLC, Abu Dhabi, UAE
Working in our headquarters located in the iconic Aldar HQ building in Abu Dhabi you will be joining a firm that is constantly looking to push boundaries. We have launched a full suite of cyber products and services including Governance, Risk & Compliance, Cyber Network Defense, Managed Security Services, Infrastructure & Systems Integration, as well as Secure Communications.
About the Job
You will be responsible for research and analysis of new system attacks/threats, zero-day vulnerability discovery and, where appropriate, provide valuable research findings with vendors, bug bounty programs or publish them on our GitHub / website or through our publications, conference talks and white papers. This research also feeds into DarkMatter’s own product development, as well as the services and solutions we provide across the entire cyber security value chain.
About you
The ideal candidate will be passionate about security, vulnerabilities, and exploits. You possess the aptitude to analyze, find and exploit vulnerabilities, researching exploit techniques and mitigations, and build systems / tools to streamline reverse engineering analysis tasks. You are expected to be an expert in any one of the following domains: failure analysis, hardware reverse engineering, micro-probing, circuit editing.
Essential requirements:
• PhD or a Master\'s degree in Physics, Computer Engineering or Electrical Engineering or equivalent
• 5+ years of experience in Hardware Security Research or Semiconductor Failure Analysis
• Deep understanding of various hardware security vulnerabilities and threats, reverse engineering, circuit editing, and exploitation of test features
• Research experience in failure analysis and/or security products (access controls, application security, data security, anti-tampering mechanisms)
- Strong foundations in semiconductors, computer architecture and embedded systems
Please click on this link to apply - https://app.jobvite.com/j?cj=okAP4fwx&s=Career_Portal
Closing date for applications: 30 November 2017
Contact: Talent Acquisition Team
DarkMatter LLC, Abu Dhabi, UAE
Working in our headquarters located in the iconic Aldar HQ building in Abu Dhabi you will be joining a firm that is constantly looking to push boundaries. We have launched a full suite of cyber products and services including Governance, Risk & Compliance, Cyber Network Defense, Managed Security Services, Infrastructure & Systems Integration, as well as Secure Communications.
About the Job
You will be responsible for research and analysis of new system attacks/threats, zero-day vulnerability discovery and, where appropriate, provide valuable research findings with vendors, bug bounty programs or publish them on our GitHub / website or through our publications, conference talks and white papers. This research also feeds into DarkMatter’s own product development, as well as the services and solutions we provide across the entire cyber security value chain.
About you
The ideal candidate will be passionate about security, vulnerabilities, and exploits.
You possess the aptitude to analyze, find and exploit vulnerabilities, researching exploit techniques and mitigations, and build systems / tools to streamline reverse engineering analysis tasks. You are expected to be an expert in the wide field of hardware security, in particular in any one of the following domains: side-channel analysis (DPA/DEMA/cache-timing), glitching (voltage/clock), fault injection (laser/EM), hardware reverse engineering, chip-off forensics, micro-probing.
Essential requirements:
• PhD or a Master\'s degree in Physics, Computer Science, Computer Engineering or Electrical Engineering or equivalent
• 5+ years of experience in Security Research
• Deep understanding of various Embedded / hardware security vulnerabilities and threats, reverse engineering and exploitation of test features
• Research experience in security products (vulnerability detection, side-channel and fault countermeasures, etc.)
Please click on this link to apply - https://app.jobvite.com/j?cj=oJBP4fwX&s=Career_Portal
Closing date for applications: 30 November 2017
Contact: Talent Acquisition Team
30 June 2017
University of São Paulo, Escola Politecnica, São Paulo, Brazil
The main requirements for the application are (1) a solid background in cryptography, preferably (but not necessarily) with post-quantum primitives, (2) good design/programming skills, preferably (but not necessarily) in programming languages such as C and/or hardware description languages such as VHDL, (3) a track record of strong R&D capability, with relevant publications on top conferences/journals, and (4) be able to work with little supervision and to work well with other researchers, as well as have good presentation and communication skills in English (ability to speak Portuguese is considered a plus, but it is not mandatory). The candidates are expected to work closely with the industry partners in the project (mainly researchers from Intel) and produce valuable research material in time and with the required quality.
The application requires: an academic curriculum vitae, a motivation letter, and the contact information of at least 2 people that can provide reference about the candidate’s work. Applicants that have already completed or that are close to complete their PhDs are both welcome.
The post-doc fellowship is granted by FAPESP, following the rules that can be found at http://www.fapesp.br/en/5427. Applications will be reviewed as soon as they are received, and only selected candidates will be contacted for interview. The process will remain open until the positions are filled or up to July 31st, 2017.
Closing date for applications: 31 July 2017
Contact: Prof. Marcos A. Simplicio Jr -- msimplicio (at) larc.usp.br
More information: http://www.larc.usp.br/en/content/security-group/
The Norwegian University of Science and Technology (NTNU)
Department of Information Security and Communication Technology (IIK), see http://www.ntnu.edu/iik
Department of Computer Science (IDI), see http://www.ntnu.edu/idi
Department of Engineering Cybernetics (ITK), see http://www.ntnu.edu/itk
Closing date for applications: 15 August 2017
Contact: For the PhD position in post-quantum cryptography under the code \"IIK-01: Cryptography\" contact Professor Danilo Gligoroski, danilog (at) ntnu.no. For the other areas contact the professors given at the link with more information
More information: https://www.jobbnorge.no/en/available-jobs/job/139951/10-phd-research-fellow-positions-in-information-security
Indian Institute of Technology
Remuneration: Up to INR 50,000 per month (consolidated), based on experience and expertise. Other perks include: furnished office space, subsidized in-campus housing, subsidized food in IIT cafeteria, free healthcare at IIT hospital, travel funding to present research papers accepted in top international conferences, etc.
Closing date for applications: 31 August 2017
Contact: Debdeep Mukhopadhyay
Singapore University of Technology and Design (SUTD)
I am looking for PhD interns on cyber-physical system security (IoT, autonomous vehicle, power grid, and water treatment etc.), especially on the topics such as 1) Lightweight and low-latency crypto algorithms for CPS devices, 2) Resilient authentication of devices and data in CPS, 3) Advanced SCADA firewall to filter more sophisticated attacking packets in CPS, 4) Big data based threat analytics for detection of both known and unknown threats, 5) Attack mitigation to increase the resilience of CPS. The attachment will be at least 3 months. Allowance will be provided for local expenses.
Interested candidates please send your CV with a research statement to Prof. Jianying Zhou.
,
Closing date for applications: 31 July 2017
Contact: jianying_zhou (at) sutd.edu.sg
More information: http://jianying.space/
24 June 2017
Tampere University of Technology, Finland
Today, security is an essential ingredient of all information systems. Due to the complexity of the systems, and flaws in the design of the present-day Internet and the web, as well as weaknesses in the development methodologies, software design and tools, large-scale systems face risks due to cyber criminals and other malicious actors. The security related research in the laboratory currently includes topics in side-channel analysis, vulnerabilities in open-source software, security issues in IoT and SDN and network security in general.
The successful candidate aims to excel in:
- scientific research
- conducting and developing education in the field.
The candidate is expected to:
- acquire external competitive funding
- participate in the activities of the global scientific community as well as locally
- interact with society and industry.
Closing date for applications: 28 August 2017
Contact: Miia Haikonen miia.haikonen(at)tut.fi
More information: https://careers.fi/tty/careers.cgi?action=view&job_id=1182&lang=uk#.WU5NOydLc8o
23 June 2017
Laboratoire Hubert Curien, University of Lyon, Saint-Etienne, France
For a new project which addresses the problem of the security of True Random Number Generator (TRNG). We are looking for candidates with an outstanding Ph.D in applied mathematics and a strong publication record in this field. The main topic of the post-doc is to work on stochastic modeling of TRNG. Knowledge of French is not mandatory.
The Post-Doc position will start in September or October 2017 (flexible starting date), it is funded for 12 month.
To apply please send your detailed CV (with publication list), motivation for applying (1 page) and names of at least two people who can provide reference letters (e-mail).
Closing date for applications: 14 July 2017
Contact: Dr. Lilian BOSSUET lilian.bossuet(at)univ-st-etienne.fr
IMDEA Software Institute, Madrid, Spain
The position is based in Madrid, Spain, where the IMDEA Software Institute is situated. Salaries are internationally competitive and include attractive conditions such as access to an excellent public healthcare system. The working language at the institute is English.
Applicants should have already completed, or be close to completing, a PhD in computer science, mathematics, or a related discipline. Applicants should have an excellent research track record demonstrated by publications at major cryptography/security venues, and should have significant experience in the design of cryptographic protocols and provable security. The application requires, among other document, a CV, a research statement, and the names of 3 persons that can provide references about you and your work.
The postdoctoral position is for one year. The starting date is negotiable but not later than January 2018.
Applicants interested in the position should send an email to Dario Fiore and submit the application documents at https://careers.imdea.org/software/. Applications are accepted until the position is filled.
Closing date for applications: 30 November 2017
Contact: For enquiries about the position, please contact:
Dario Fiore dario.fiore (at) imdea.org
Université de Rennes 1/IRISA Rennes
We are looking for a motivated researcher with a good publication record and an interest in real-world cryptography. More particularly we require:
- a basic knowledge of Authenticated Key-Exchange protocols (AKE)
- an understanding of the TLS protocol
- expertise in computational security models and proofs
- knowledge of TLS 1.3 (optional, but a strong plus)
- knowledge of TLS implementations (a strong plus)
The successful candidate is expected to contribute in high-level research, and to work together with the SafeTLS partners (http://safetls.gforge.inria.fr/consortium.html) towards attaining the ambitious goals of the SafeTLS project (http://safetls.gforge.inria.fr/aims.html). We are an international team and will require no knowledge of French.
A successful candidate will be hired for a two-year research contract, hosted by the Université de Rennes 1 (https://international.univ-rennes1.fr/) at the IRISA research center in Rennes, France (https://www.irisa.fr/en). Situated at 2 hours (by express train) from Paris, Rennes is an important research center in cryptography and security, and a strong partner in the Pôle d’Excellence Cybersécurité (PEC) in France -- which attracts competitive and very-high level research in all areas of security and cryptography.
Candidates are invited to apply as soon as possible. Applications will be reviewed as soon as they are received and until the position is filled. For any additional information, please contact Pierre-Alain Fouque pa.fouque (at) gmail.com or Cristina Onete, cristina.onete (at) gmail.com
Closing date for applications: 1 September 2017
Contact: Pierre-Alain Fouque, pa.fouque (at) gmail.com
Cristina Onete, cristina.onete (at) gmail.com
More information: https://www.irisa.fr/emsec
16 June 2017
Virginia Tech
We are looking for a candidate with the following qualifications.
- Solid background in cryptographic engineering, covering protocols and algorithms.
- Experience with development of embedded software and/or hardware, including toolchain and design methodology.
- Effective communicator and team leader for a group of PhD students.
- Experience with energy harvesting technologies, intermittently powered computers and design across the hardware/software interface is a plus.
The Hardware Security group at Virginia Tech covers design, optimization and tamper-resistant implementation of cryptographic protocols and related applications. Recent projects include a fault-resistant microprocessor ASIC, side-channel resistant software synthesis, and novel primitives for hardware security.
To apply send your CV to the contact below. Include your publication list, a statement of research interest and objectives, and contact information for two references. Applications will be reviewed on an ongoing basis until the position is filled.
Closing date for applications: 30 September 2017
Contact: Prof. Patrick Schaumont (schaum (at) vt.edu)
More information: http://rijndael.ece.vt.edu/schaum
Unviversity of Bergen
Closing date for applications: 1 July 2017
Contact: Håvard Raddum, Section Leader, Simula@UiB, email: haavardr (at) simula.no
or
Tor Helleseth, Professor, Dept. of Informatics, email: Tor.Helleseth (at) ii.uib.no
More information: https://www.jobbnorge.no/en/available-jobs/job/139151/phd-position-in-computer-security-4-positions
Cryptography, Security, and Privacy Research Group, Koç University, ?stanbul, Turkey
- For more information about joining our group and scholarship opportunities, visit
https://crypto.ku.edu.tr/join
- For applying online, and questions about the application-process for M.Sc. and Ph.D. positions, visit
https://gsse.ku.edu.tr/en/admissions/application-requirements/
All applications must be completed online with all the required documents. Deadline is end of June.
- For postdoctoral researcher positions, contact Asst. Prof. Alptekin Küpçü directly, including full CV, sample publications, a research proposal, and 2-3 reference letters sent directly by the referees. Application and starting dates are flexible.
http://home.ku.edu.tr/~akupcu
Closing date for applications: 31 August 2017
Contact: gsse (at) ku.edu.tr
More information: https://crypto.ku.edu.tr/
14 June 2017
NYUAD-Center for Cyber Security
The goal of this research project is to provide a wider analysis of the existing cryptologic designs and their constructions in order to provide the possibility of new approaches to the designs and analysis of cryptographic components. The conducted research will be in the context of symmetric cryptology and secure hardware implementations. A particular focus will be on the design and analysis of symmetric-key primitives and components.
Required Qualifications
Candidates should have a Ph.D. degree or equivalent experience. Candidates should have a background in symmetric cryptology, hardware cryptology, hardware security or related areas. The following is a list of essential skills for the considered post: Circuit Analysis and Design, Cryptographic Hardware Design (Reconfigurable Hardware, random number generation, lightweight cryptographic design, ALTERA hardware, FPGAs and Verilog VHDL programming), and Cryptographic Design and Cryptanalysis
Terms of employment
The period of employment is one to two years from the initiation of the contract. This is extendable to additional year based on performance. The potential start date is August 2017. The location of the post is Center for Cyber Security in NYU Abu Dhabi.
Application Process
Submissions will be accepted through our online application no later than July 15, 2017. Please visit our website at https://apply.interfolio.com/37893 for instructions and information on how to apply. Please fill in the online application form, and attach all your materials in English. This includes a cover letter, research statement, curriculum vitae, diploma (an official translation into English), a list of publications and three letters of reference. Applicants will be prompted to enter the names and email addresses of three referees. Each referee will be contacted to upload his or her reference letter. Applications and enclosures received beyond the stated deadline will not be considered.
Closing date for applications: 15 August 2017
Contact: Hoda A.Alkhezaimi
More information: https://apply.interfolio.com/37893
13 June 2017
NXP Semiconductors
Software Security Engineer is responsible for
• Design of embedded software security architectures
• Risk and threats analysis of security systems
• Support the various HW and SW development teams of NXP with security reference designs
• End-to-end security architecture
• Root cause analysis of security defects and creation of counter measures
• Specification and design of innovative security concepts (whitebox cryptography, secure virtual machines, code obfuscators)
Hardware Security Engineer is responsible for
• Detailed implementation reviews
• Definition of security mechanisms in hardware, firmware, protocols, etc.
• Security requirements management by definition and linking of security mechanisms to functional requirements
• Detailed attack modeling and security mechanism specification for hardware and software blocks
• Root cause analysis of security defects
• Planning coordination and execution of pre-silicon vulnerability analysis
See for more information:
https://nxp.wd3.myworkdayjobs.com/en-US/careers/job/Hamburg/Hardware-Security-Architect--m-f-_R-10002704
https://nxp.wd3.myworkdayjobs.com/en-US/careers/job/Hamburg/Software-Security-Architect--m-f-_R-10002703
About us
NXP Semiconductors enables secure connections and infrastructure for a smarter world, advancing solutions that make lives easier, better and safer. As the world leader in secure connectivity solutions for embedded applications, we are driving innovation in the secure connected vehicle, end-to-end security & privacy and smart connected solutions markets.
Closing date for applications: 31 December 2017
Contact: Joppe Bos, Cryptographer, joppe.bos (at) nxp.com
08 June 2017
RESCUE ETN Project
An innovative European training network RESCUE is to take on the key interdependent challenges in nanoelectronic systems design - reliability, security and quality.
• Application deadline: June 30, 2017
• Recruitment starts in September/October 2017
• Full-time employment contracts at the selected RESCUE host institution for 36 month.
More details http://rescue-etn.eu/
RESCUE Consortium
- Tallinn University of Technology, EE (Maksim Jenihhin)
- BTU Cottbus-Senftenberg, DE (H.T. Vierhaus)
- Delft University of Technology, NL (Said Hamdioui)
- Politecnico di Torino, IT (Matteo Sonza Reorda)
- Cadence Design Systems GmbH, DE (Anton Klotz)
- IROC Technologies, FR (Dan Alexandrescu)
- Intrinsic-ID B.V., NL (Georgios Selimis)
- IHP - Innovations for High Performance Microelectronics GmbH, DE (Milos Krstic)
- Robert Bosch GmbH, DE - Partner Organization (Herve Seudie)
Closing date for applications: 30 June 2017
More information: http://rescue-etn.eu/vacancies