Academic career
A summary of my academic path, research experience, and scholarly service.
Current appointment
Assistant Professor (RTD-A)
Research on AI-based code generation, software reliability, and cybersecurity. Teaching programming and practical cybersecurity at undergraduate and graduate level. Supervising MSc and PhD students.
Academic background
Ph.D. in Information Technology and Electrical Engineering
Thesis: "Fault Injection in Cloud Computing Systems: From Failure Mode Analysis to Runtime Failure Detection" — Advisor: Prof. Domenico Cotroneo.
Focused on fault injection, reliability analysis, and the use of probabilistic and machine learning models for anomaly detection and runtime monitoring in cloud and distributed systems.
Prior research appointments
Research Fellow (Assegnista di Ricerca)
Worked on AI-based code generation and software security: automated generation of security-relevant code, robustness of generative models, vulnerability assessment of generated code.
Visiting Researcher
Research on the application of AI-based code generation to offensive security. Collaboration continues to this day, with nine joint publications.
Coordination roles
Scientific supervisor — Industrial PhD (PR Campania FSE+)
In collaboration with NefroCenter S.C.a.R.L. Direction of the PhD project, definition of methodology, supervision of technology-transfer activities.
Scientific supervisor — Research Fellowship
Direction and coordination of research on intrusion detection in edge and IoT environments.
Co-scientific lead — DIETI × MBDA Italia Agreement
Design and validation of AI-based pipelines for automatic VHDL firmware generation from natural language. Resulting prototype received the 1-Star MBDA Innovation Award 2026.
Task leader — PRIN 2022 FLEGREA
Leader of Work Package 1 — "Methodology and Architecture for Continuous APT Attack Modeling and Generation."
Research projects
PRIN 2022 — FLEGREA
Research unit member. Built a pipeline for automated APT generation and experimental infrastructure for evaluating cloud-platform robustness.
GENIO — Edge Cloud Platform (MIMIT)
Design of software components for distributed-node management and performance monitoring in edge environments.
H2020 uDevOps
Methodologies and tools for Software Quality Assurance in microservice environments. Automated vulnerability analysis and fault injection in cloud-native infrastructures.
OSTAGE — Offensive Security via Machine Translation
NMT-based methods to generate exploits from natural-language descriptions. Designed the generation pipeline and prototyped a system for payload and shellcode generation.
BOTITS — Boosting OT and IT Security
Runtime verification techniques for monitoring cloud security. Prototype of a runtime-monitoring system for multi-tenant OpenStack environments.
Research networks
University of North Carolina at Charlotte, USA
AI-based generation of software exploits and related topics, together with Prof. Domenico Cotroneo. Nine joint publications, including IEEE Security & Privacy, JSS, EMSE, AUSE, and ISSRE.
Università della Svizzera Italiana (USI), Lugano
LLMs for software engineering, with focus on security and quality of AI-generated code. Two joint publications.
University of New South Wales (UNSW), Australia
Vulnerability detection in LLM-generated code combining static analysis and AI-based methods. Joint IEEE TSE publication.
University of Coimbra, Portugal
Security of LLM-generated code, code-injection vulnerabilities, automated detection of insecure AI-generated code.
Awards and honors
1-Star MBDA Innovation Award
For the Artificial Firmware Designer Assistant project, on generative models for firmware design in industrial high-criticality contexts.
Invited Member — IFIP WG 10.4 on Dependable Computing and Fault Tolerance
Invited to three consecutive meetings (USA 2024, Australia 2024, Brazil 2025) based on scientific contributions to dependability and software reliability.
Artifact Evaluation Badges (Available & Reusable) — ESEC/FSE 2019
Official ACM/IEEE recognition for the reproducibility and reusability of the artifact accompanying "How Bad Can a Bug Get? An Empirical Analysis of Software Failures in the OpenStack Cloud Computing Platform."
Community and editorial
Program Chair
- DSML 2026 — 9th Dependable and Secure Machine Learning Workshop (co-located with DSN 2026)
- ReSAISE 2023, 2024, 2025 — IEEE Workshop on Reliable and Secure AI for Software Engineering (co-located with ISSRE)
Program Board & Committee
Program Board Member: ISSRE 2026. Program Committee member for ICSME 2026, FORGE 2026, ISSRE (2024, 2025), LADC (2023–2025), EDCC 2024, SOICT (2024, 2025), NLBSE (2024–2026), WDMD 2023, AIOPS (2021, 2023). Artifact Evaluation Committee, EuroSys 2023. Doctoral Forum PC, DSN 2023. Student Research Competition Committee, FSE 2025.
Guest Editor — Special Issues
- Future Internet (Q2) — Advanced Cyber Defense and Intelligent Threat Analytics
- Journal of Systems and Software (Q1) — Reliable and Secure Large Language Models for Software Engineering. DOI
- Automated Software Engineering (Q2) — Reliable and Secure AI-based Code Generators
Reviewer — Journals
IEEE TSE · IEEE TDSC · ACM TOSEM · Empirical Software Engineering (EMSE) · Journal of Systems and Software · Information and Software Technology · Computers & Security · Data & Knowledge Engineering · Computers & Education, among others.
External doctoral reviewer
Universidade de Coimbra (Portugal), October 2025 — External reviewer on the PhD defense of Saeed Javani Jananloo, "Leveraging Large Language Models for Software Trustworthiness Assessment."