PFE: Context

Il y a 22 heures

Tunis, Tunis, Tunisie Security Accent Temps plein
This project focuses on developing a lightweight policy -based access control (PBAC) framework for IoT and edge environments. The solution dynamically enforces security decisions using contextual factors such as device location, time, and battery level. It includes implementing a compact on -device policy engine capable of offline operation, a central policy management interface for authoring and distribution, and evaluation through real -world scenarios to measure latency, scalability, and reliability in constrained environments.
<\/div>

Problem Statement
<\/h4>

With the rapid growth of IoT and edge computing, billions of devices now operate autonomously and make sensitive decisions close to where data is generated. Traditional access control mechanisms, such as static RBAC or simple token validation, are insufficient in these distributed and context -dependent environments. IoT devices must enforce dynamic, context -aware authorization decisions based on real -time attributes like location, time, operational state, and device conditions — often while operating offline or under constrained resources.
<\/div>
The problem is to design and implement a lightweight, policy -based access control framework capable of evaluating such context -driven policies locally on IoT and edge devices while remaining manageable, auditable, and scalable from a central platform.
<\/div>

Methodology for Solution
<\/h4>

The project will follow a research and implementation -based approach. First, the student will conduct a comparative analysis of policy -based access control frameworks (e.g., OPA/Rego, Cedar, Oso) to identify a suitable engine for IoT environments. Next, a prototype system will be designed, consisting of a local policy enforcement agent on edge devices and a central policy management platform for authoring and distribution. Policies will be written, tested, and deployed to IoT devices for runtime evaluation based on contextual attributes. The solution will then be evaluated experimentally in simulated IoT scenarios to measure latency, scalability, and offline decision reliability.
<\/div>

Expected Deliverables
<\/h4>

  • A working prototype of a context -aware policy enforcement system running on IoT or edge devices.
    <\/span><\/li>
  • A central policy management interface for defining, testing, and distributing policies to connected devices.
    <\/span><\/li>
  • A set of sample context -based policies (e.g., time, location, device state) implemented and demonstrated in real use cases.
    <\/span><\/li>
  • A technical report documenting the architecture, implementation, evaluation results, and comparison with existing PBAC frameworks.<\/span>
    <\/li><\/ul><\/span>

    Requirements<\/h3>

    Must -Have
    <\/h5>
    • Good programming skills in Python or Node.js<\/span>
      <\/li>
    • Understanding of web APIs and client–server communication<\/span>
      <\/li>
    • Familiarity with IoT systems, edge computing, or embedded devices<\/span>
      <\/li>
    • Fundamental knowledge of access control or cybersecurity concepts<\/span>
      <\/li>
    • Ability to work with Linux environments and use Git for version control<\/span>
      <\/li>
    • Good analytical and documentation skills in English<\/span>
      <\/li><\/ul>
      Nice -to -Have
      <\/h5>
      • Interest in policy -based access control frameworks (OPA, Oso, Cedar, etc.)<\/span>
        <\/li>
      • Exposure to Docker or containerized deployments<\/span>
        <\/li>
      • Curiosity about security automation and cloud–edge integration<\/span>
        <\/li><\/ul>

        <\/div><\/span>

        Benefits<\/h3>

        Academic Benefits<\/span>
        <\/h4>

        Gain hands -on experience by applying your academic knowledge to real -world projects under expert guidance.<\/span>
        <\/div>

        <\/span><\/div>

        Organizational & Professional Benefits<\/span>
        <\/h4>

        Immerse yourself in a structured professional environment with mentorship and real opportunities for growth.<\/span>
        <\/div>

        <\/span><\/div>

        Technical & Learning Benefits<\/span>
        <\/h4>

        Develop cutting -edge skills in IAM, cybersecurity, and software development through agile, collaborative work.<\/span>
        <\/div>

        <\/span><\/div>

        Human & Cultural Benefits<\/span>
        <\/h4>

        Join a people -first culture that values teamwork, inclusion, and personal growth.<\/span>
        <\/div>
        ​<\/span>
        <\/span><\/div>

        Career Development Benefits<\/span>
        <\/h4>

        Build a strong foundation for your future career through meaningful projects, mentorship, and lasting opportunities.<\/span>
        <\/div>

        <\/div>

        <\/div><\/span>

Recevez des alertes pour des offres similaires

Recevez des offres d'emploi pour PFE: Context