Emplois
>
Montpellier

    Doctorant F/H Private and Byzantine-Robust Federated Learning - Montpellier, France - INRIA

    INRIA
    INRIA Montpellier, France

    il y a 2 semaines

    Default job background
    CDD
    Description

    Contexte et atouts du poste

    This PhD position is a collaboration between two Inria research teams: ,
    and

    Mission confiée

    Context

    The increasing size of data generated by smartphones and IoT devices motivated the development of Federated Learning (FL) (Kairouz et al. 2021), a decentralized learning framework for on-device collaborative training of machine learning models. FL algorithms like FedAvg (McMahan et al allow clients to train a common global model without sharing their personal data. FL reduces data collection costs and can help to mitigate data privacy issues, making it possible to train models on large datasets that would otherwise be inaccessible. FL is currently used by many big tech companies (e.g., Google, Apple, Facebook) for learning on their users' data, but the research community envisions also promising applications to learning across large data-silos, like hospitals that cannot share their patients' data (Rieke et al

    While they mitigate privacy concerns by not exchanging raw data, FL does not in itself offer rigorous privacy guarantees, and FL algorithms can be attacked by malicious participants. For these reasons, in recent years a large body of the literature has focused on the design of decentralized algorithms that are more privacy-preserving, using different variants of differential privacy (Noble et al. 2022; Cyffers et al On the other hand, another line of research has focused on decentralized learning algorithms that are robust to the presence of malicious individuals in the system (Byzantine agents) (Farhadkhani et al. 2022, 2023; Guerraoui et al Nevertheless, the design and analysis of algorithms that are both robust and privacy-preserving is far less considered and understood. Recently, it has been shown that in the case where the server is honest-but-curious, the combination of differential privacy and robustness induces an additional error term, making them at odds with each other (Allouah et al Specifically, we face a utility-privacy-robustness trilemma (on top of the conventional privacy-utility and robustness-utility trade-offs). Conversely, in the case of a trusted server, some studies (Hopkins et al have shown that privacy and robustness can actually be mutually beneficial. A key question then arises: in what contexts are these two notions really good for each other?

    Research Objectives

    The main goal of this PhD is to answer the previous question on the basis of new theoretical analyses, and to design decentralized algorithms that are both robust and differentially private. Several lines of research could be investigated.

    A natural direction to seek better trade-offs between privacy, robustness and utility is to relax the notions of privacy and/or robustness. One may consider the general framework of Pufferfish privacy (Kifer & Machanavajjhala, 2014; Pierquin et al., 2023), which allows to relax differential privacy by considering more specific *secrets* to protect and by constraining the prior belief that the adversary may have about the data. Similarly, while Byzantine robustness has been shown to be at odds with local differential privacy (Allouah et al. 2023(a)), it is possible to consider weaker threat models, such as the hidden state model (Ye & Shokri, 2022), the shuffle model (Cheu et al., 2019) or the network model (Cyffers et al., Regarding robustness, current approaches are designed to ensure protection against Byzantine users that can misbehave arbitrarily (Guerraoui et al., However, such robustness is too stringent and leads to conservative learning performance in practice when no user is fully adversarial. For example, in the case of medical applications it is safe to assume that all the users, usually hospitals, clinics or pharmacies, are honest by intention, but misbehavior could occur due to mistakes like *mislabelling* (Allen-Zhu et al., Refining (or designing new) Byzantine-robust schemes to weaker adversaries is crucial to fully realize the benefits of robust decentralized learning in real-world applications.

    Another line of investigation is to reconsider the notion of utility. In the majority of the aformentioned work, the key quantity to control (utility) is the optimization error of the empirical risk. However, in (decentralized) machine learning one is often interested in also controling the generalization error (Bassily et al., 2020; Le Bars et al., 2024), namely the error that will be made on unobserved data points. In this case, it will be interesting to study how robustness and privacy can jointly improve algorithm stability and thus help generalization, e.g., by studying the connections between *gradient coherence* (Chatterjee, 2019) and *robust aggregation* (Yin et al., 2018; Allouah et al., 2023(b).

    A last direction of research is to consider model update *compression* or *sparsification* techniques (Stich et al., 2018) that have been independently shown to help privacy (e.g, see Rui et al., Whether the benefits of these scheme hold true when aiming for robustness along with privacy remains unclear. Some technical challenges are as follows. (i) While sparsification (in decentralized learning) improves the overall privacy-utility trade-off, the same need not be true for the privacy-robustness trade-off. (ii) The compression noise can be amplified in the presence of malicious clients in the system (Rammal et al.,

    References

    - Kairouz, P. et al. Advances and open problems in federated learning. Foundations and Trends in Machine Learning, , pp. 1-210, 2021.

    - McMahan, B., Moore, E., Ramage, D., Hampson, S. and Aguera y Arcas, B. Communication efficient learning of deep networks from decentralized data. AISTATS 2017.

    - Rieke, N., Hancox, J., Li, W. et al. The future of digital health with federated learning. npj Digit. Med. 3, 119, 2020.

    - Noble, M., Bellet, A., and Dieuleveut, A. Differentially private federated learning on heterogeneous data. AISTATS 2022.

    - Cyffers, Bellet, A. Privacy amplification by decentralization. AISTATS 2022

    - Farhadkhani, S., Guerraoui, R., Gupta, N., Hoang, L. N., Pinot, R., & Stephan, J. Robust Collaborative Learning with Linear Gradient Overhead. ICML 2023.

    - Guerraoui, R., Nirupam G., and Rafael P. Byzantine Machine Learning: A Primer. ACM Computing Surveys, 2023.

    - Farhadkhani, S., Guerraoui, R., Gupta, N., Pinot, R., and Stephan, J. Byzantine machine learning made easy by resilient averaging of momentums. ICML 2022.

    - Allouah, Y., Guerraoui, R., Gupta, N., Pinot, R., & Stephan, J. On the privacy-robustness-utility trilemma in distributed learning. ICML 2023(a).

    - Allen-Zhu, Z., Ebrahimianghazani, F., Li, J., & Alistarh, D. Byzantine-Resilient Non-Convex Stochastic Gradient Descent. ICML 2020.

    - Hopkins, S. B., Kamath, G., Majid, M., & Narayanan, S. Robustness implies privacy in statistical estimation. STOC 2023.

    - Bassily, R., Feldman, V., Guzmán, C., & Talwar, K. Stability of stochastic gradient descent on nonsmooth convex losses. NeurIPS 2020.

    - Le Bars, B., Bellet, A., Tommasi M., Scaman K., Neglia, G. Improved Stability and Generalization Guarantees of the Decentralized SGD Algorithm. ICML 2024.

    - Yin, D., Chen, Y., Kannan, R., & Bartlett, P. Byzantine-robust distributed learning: Towards optimal statistical rates. ICML 2018

    - Chatterjee, Satrajit. Coherent Gradients: An Approach to Understanding Generalization in Gradient Descent-based Optimization. ICML 2019.

    - Allouah, Y., Farhadkhani, S., Guerraoui, R., Gupta, N., Pinot, R., & Stephan, J. Fixing by Mixing: A Recipe for Optimal Byzantine ML Under Heterogeneity. AISTATS 2023(b).

    - Kifer & Machanavajjhala. Pufferfish: A Framework for Mathematical Privacy Definitions. ACM Transactions on Database System, 2014.

    - Pierquin et al. Rényi Pufferfish Privacy: General Additive Noise Mechanisms and Privacy Amplification by Iteration. ICML 2024.

    - Ye & Shokri. Differentially Private Learning Needs Hidden State (Or Much Faster Convergence). NeurIPS 2022.

    - Cheu et al. Distributed Differential Privacy via Shuffling. Eurocrypt 2019.

    - Stich, Sebastian U., Jean-Baptiste Cordonnier, and Martin Jaggi. Sparsified SGD with Memory. NeurIPS 2018.

    - Rui, H., Yuanxiong Guo, and Yanmin Gong. Federated Learning with Sparsified Model Perturbation: Improving Accuracy Under Client-level Differential Privacy. IEEE Transactions on Mobile Computing, 2023.

    - Rammal, A., Gruntkowska, K., Fedin, N., Gorbunov, E. and Richtárik, P. Communication Compression for Byzantine Robust Learning: New Efficient Algorithms and Improved Rates. AISTATS 2024

    Principales activités

    Research

    Compétences

    The applicant is expected to have studied machine learning and/or optimization, and to have good mathematical skills. Some knowledge in distributed algorithms and broad interest for the topic of trustworthy AI is a plus.

    Avantages

  • Restauration subventionnée
  • Transports publics remboursés partiellement
  • Congés: 7 semaines de congés annuels + 10 jours de RTT (base temps plein) + possibilité d'autorisations d'absence exceptionnelle (ex : enfants malades, déménagement)
  • Possibilité de télétravail (après 6 mois d'ancienneté) et aménagement du temps de travail
  • Équipements professionnels à disposition (visioconférence, prêts de matériels informatiques, etc.)
  • Prestations sociales, culturelles et sportives (Association de gestion des œuvres sociales d'Inria)
  • Accès à la formation professionnelle
  • Sécurité sociale
  • Rémunération

    Gross Salary per month: 2100€ brut per month (year 1 & 2) and 2190€ brut per month (year 3)


  • Université de Montpellier

    Apprentissage Fédéré Causal

    il y a 2 semaines


    Université de Montpellier Montpellier, France

    **Apprentissage fédéré causal // Federated Causal Inference**: · - Réf · - **ABG-115163** · **ADUM-50460** · - Sujet de Thèse- 10/06/2023- Contrat doctoral- Université de Montpellier- Lieu de travail- Montpellier - France- Intitulé du sujet- Apprentissage fédéré causal // Federat ...


  • Inria Montpellier, France

    Le descriptif de l'offre ci-dessous est en Anglais_ · **Type de contrat **:CDD · **Contrat renouvelable **:Oui · **Niveau de diplôme exigé **:Thèse ou équivalent · **Fonction **:Post-Doctorant · **Contexte et atouts du poste**: · The hired postdoc will join PreMeDICaL, an Inria/I ...


  • IDEXX Montpellier, France

    As a Distribution Development Manager TMENA, you will be responsible for driving sales growth of IDEXX LPD Products in the direct markets and via distributors across the assigned countries within Turkey and Middle East and North Africa. · In this Role · You will Actively promote ...


  • IDEXX Montpellier, France

    As an Anatomic Pathologist, you will be responsible for gross and/or microscopic examination of anatomic pathology specimens and preparation of pathology reports in a timely manner. You will work from the comfort of your own home, providing quality diagnostic services for our cli ...

  • Teads France

    Senior Product Data Analyst

    il y a 2 semaines


    Teads France Montpellier, France

    At Teads, we do quality and responsible advertising, at scale. We invented outstream video advertising and now have a reach of 1,9 billion unique users per month powered by an end-to-end proprietary platform. We foster a sustainable advertising and media ecosystem by funding qual ...

  • Teads

    Product Data Analyst

    il y a 2 semaines


    Teads Montpellier, France

    At Teads, we do quality and responsible advertising, at scale. We invented outstream video advertising and now have a reach of 1,9 billion unique users per month powered by an end-to-end proprietary platform. We foster a sustainable advertising and media ecosystem by funding qual ...

  • Otis

    Régleur

    il y a 6 jours


    Otis Montpellier, France

    Date Posted: · Country: · France · **Location**: · RUE M LE BOUCHER, MONTPELLIER, 34000, France · Job Title · - Installation Mechanic_ · Role Overview · Would you like to join a truly international, talent driven company that values Safety, Ethics, Quality, Innovation and Employe ...


  • INRIA Montpellier, France CDD

    Contexte et atouts du poste · The hired postdoc will join PreMeDICaL, an Inria/Inserm research team based in Montpellier · (France), and will be jointly supervised by Aurélien Bellet and Julie Josse. PreMeDICaL specializes · in developing precision medicine methods through causa ...


  • INRIA Montpellier, France CDD

    Contexte et atouts du poste · The hired postdoc will join PreMeDICaL, an Inria/Inserm research team based in Montpellier · (France), and will be jointly supervised by Aurélien Bellet and Julie Josse. PreMeDICaL specializes · in developing precision medicine methods through causa ...

  • IDEXX

    Sales Support Consultant

    il y a 2 semaines


    IDEXX Montpellier, France À temps plein

    Sales Support Consultant (Italian speaker) · As a Sales Support Consultant, you will be supporting the field team, creating and coordinating offers, and be responsible for customer data and sales-relevant information in the SAP system. · Our support professionals develop deep an ...

  • Pharmiweb

    Manager, Clinical Operations

    il y a 1 semaine


    Pharmiweb Montpellier, France

    · Manager, Clinical Operations - Sponsor dedicated · Syneos Health is a leading fully integrated biopharmaceutical solutions organization built to accelerate customer success. We translate unique clinical, medical affairs and commercial insights into outcomes to address modern ...

  • Teads

    Product Data Analyst

    il y a 2 semaines


    Teads Montpellier, France

    At Teads, we do quality and responsible advertising, at scale. We invented outstream video advertising and now have a reach of 1,9 billion unique users per month powered by an end-to-end proprietary platform. We foster a sustainable advertising and media ecosystem by funding qual ...

  • Intuitive Surgical

    Clinical Territory Associate

    il y a 2 semaines


    Intuitive Surgical Montpellier, France Employee

    Company Description · At Intuitive, we are united behind our mission: we believe that minimally invasive care is life-enhancing care. Through ingenuity and intelligent technology, we expand the potential of physicians to heal without constraints. · As a pioneer and market leader ...

  • Intuitive

    Clinical Territory Associate

    il y a 2 semaines


    Intuitive Montpellier, France À temps plein

    Company Description · At Intuitive, we are united behind our mission: we believe that minimally invasive care is life-enhancing care. Through ingenuity and intelligent technology, we expand the potential of physicians to heal without constraints. · As a pioneer and market leader ...