SecurityMatters was acquired by ForeScout in Nov 2018. Stayed on to manage the OT business.
S
CEO and Co-Founder (SecurityMatters, acquired by Forescout Technologies)
SecurityMatters
Jul 2009 - Nov 2018(9 years 5 months)
Postdoc researcher
UNIVERSITEIT TWENTE
Jul 2009 - Jun 2015(6 years)
Supervising PhD students researching in the field of SCADA security.
PhD candidate
UNIVERSITEIT TWENTE
Jul 2005 - Jun 2009(4 years)
I'm currently involved in the IPID project (http://ipid.ewi.utwente.nl/), developing Network Intrusion Detection Systems based on anomaly-detection. I'm also involved in reasearch about Risk Management in Information Systems.
F
Freelance consultant
Sep 2004 - Jun 2005(10 months)
Quality assurance, software development (C++/MFC)
Information Risk Management
KPMG US
Feb 2003 - Jul 2004(1 year 6 months)
Ethical hacking, IT security auditing
Education
verified_user
0% verified
Doctor of Philosophy (PhD, Computer Science
University of Twente
Jan 2005 - Dec 2009(5 years)
MSc, Computer Science
Università Ca Foscari Venezia
Jan 2002 - Dec 2005(4 years)
BSc, Computer Science
Università Ca Foscari Venezia
Jan 1999 - Dec 2002(4 years)
Projects (professional or personal)
verified_user
0% verified
C
CRISALIS
May 2012 - Aug 2015(3 years 4 months)
The CRISALIS project aims at providing new means to secure critical infrastructure environments from targeted attacks, carried out by resourceful and motivated individuals. The discovery of malware such as Stuxnet and Duqu showed that these threats are already a reality. Their success in infiltrating Critical Infrastructure environments is calling attention on the ineffectiveness of standard security mechanisms at detecting them. Stuxnet is believed to have been operating undetected for almost one year leveraging multiple vulnerabilities that were previously unknown, and has been discovered only as a consequence to an operational anomaly that triggered the attention of the field operators. This fact clearly shows that our methods to find vu
H
HCM
Apr 2010 - Mar 2014(4 years)
T
The Hermes, CASTOR and MIDAS projects
The aim of Castor is to enhance the security of SCADA networks by adding intelligent access control to them. The goal of Midas is to devise new detection techniques, likely based on anomaly detection, which can monitor proprietary protocols’ data and detect attacks. Secondly, Midas aims to develop an integrated framework to not only detect threats, but also help security operators in assessing the impact of a possible attack (for instance by deploying non-intrusive agents on systems).
C
CyberROAD - Development of the Cybercrime and Cyberterrorism Research Roadmap
CyberROAD is a research project funded by the European Commission under the Seventh Framework Programme. The project is aimed to identify current and future issues in the fight against cyber-crime and cyber-terrorism in order to draw a strategic roadmap for cyber security research. A detailed snapshot of the technological, social, economic, political, and legal scenario on which cyber crime and cyber terrorism do develop will be first provided. Then, cyber-crime and cyber-terrorism will be analyzed in order to indentify research gaps and priorities.
Publications
verified_user
0% verified
I
A Log Mining Approach for Process Monitoring in SCADA
International Journal of Information Security
Jan 2012
t
N-gram Against the Machine: On the Feasibility of the N-gram Network Analysis for Binary Protocols
th International Symposium on Research in Attacks Intrusions and Defenses
Jan 2012
t
A Cuckoo's Egg in the Malware Nest: On-the-fly Signature-less Malware Analysis, Detection, and Containment for Large Net
th USENIX Large Installation System Administration Conference