Ilya Shchepetkov

Research Development Team Lead, Formal Methods Group, Kaspersky

Getting formal methods into everyday use.

I lead the Formal Methods Group at Kaspersky, where we develop and verify KasperskyOS — a microkernel operating system that is secure by design. Our verification covers both the specifications and the code of its trusted and critical components.

Operating systems are most of what I have worked on: access control models, concurrent algorithms, kernel architecture — the parts where a mistake is too expensive to discover late.

I practise formal methods where they pay off: applied to the right problems, saving time and effort, and producing results people can act on. I use whichever method fits the task rather than the one I know best, and when the tooling gets in the way I build my own — most often around visualization and validation, the work that closes the gap between verification engineers and everyone else.

Email Codeberg GitHub LinkedIn

Experience

Mar 2022 — present
Kaspersky
Jul 2026 — present
Research Development Team Lead

Led the Formal Methods Group of 5 researchers. Directed the group’s projects that included:

  • Verification of architectural proposals for KasperskyOS.
  • Formalization of a DSL for access control policies.
  • Development of a new open source tooling for TLA+.
  • Publishing results of the groups work in scientific journals.
Jul 2025 — Jun 2026
Lead Research Developer

Developed the methods and techniques the group relied on, shaped decisions on specification design, development and validation. Took a more proactive role in projects of other team members. Promoted formal methods within and outside the company:

  • Gave lectures and talks inside the company.
  • Helped organize verification competition among the students.
Mar 2022 — Jun 2025
Senior Research Developer

Conducted multiple verification projects, including:

  • Formalization of ARM and x86 memory models.
  • Verification of several lock-free queues.
  • Verification of the IPC subsystem.
TLA+ · Event-B · Alloy · Isabelle/HOL · Frama-C · Python · C

Jul 2012 — Feb 2022
Institute for System Programming (ISP RAS)
Researcher
  • Specified and verified several OS access control models in Event-B.
  • Built the verification tooling for large industrial C programs.
  • Developed safety property specifications for the Linux kernel, and automated the detection of changes to the internal kernel API.
  • Wrote a national standard on verifying formal access control models.
Event-B · Rodin · ProB · Isabelle/HOL · Alloy · C · C++ · Python · Java

Publications

2026
Rust Toolchain for Event-B with Language Server Support
Denis Efremov, Ilya Shchepetkov — Rodin Workshop 2026, 5–7
PDF

Identifying Design Flaws in a Lock-Free Task Pool with TLA+
Vasil Dyadov, Alexander Kogtenkov, Ilya Shchepetkov — ABZ 2026
DOI PDF

2023
Runtime Verification of Operating Systems Based on Abstract Models
Denis Efremov, Viktoria V. Kopach, Eugene Kornykhin, Victor V. Kuliamin, Alexander K. Petrenko, Alexey V. Khoroshilov, Ilya Shchepetkov — Programming and Computer Software 49(7), 559–565
DOI PDF

Klever: Verification Framework for Critical Industrial C Programs
Ilja S. Zakharov, Evgeny Novikov, Ilya Shchepetkov — arXiv preprint
DOI arXiv PDF

2020
Integrating RBAC, MIC, and MLS in Verified Hierarchical Security Model for Operating System
Petr N. Devyanin, Alexey V. Khoroshilov, Victor V. Kuliamin, Alexander K. Petrenko, Ilya Shchepetkov — Programming and Computer Software 46(7), 443–453
DOI PDF

2019
Runtime Verification of Linux Kernel Security Module
Denis Efremov, Ilya Shchepetkov — FM 2019 Workshops
DOI arXiv PDF

Formal Specification of a Security Framework for Smart Contracts
Mikhail Mandrykin, Jake O’Shannessy, Jacob Payne, Ilya Shchepetkov — FM 2019 Workshops
DOI arXiv PDF

2016
Comparison of Specification Decomposition Methods in Event-B
Petr N. Devyanin, Victor V. Kuliamin, Alexander K. Petrenko, Alexey V. Khoroshilov, Ilya Shchepetkov — Programming and Computer Software 42(4), 198–205
DOI

2015
Using Refinement in Formal Development of OS Security Model
Petr N. Devyanin, Alexey V. Khoroshilov, Victor V. Kuliamin, Alexander K. Petrenko, Ilya Shchepetkov — Ershov Memorial Conference (PSI) 2015, 107–115
DOI PDF

2014
Formal Verification of OS Security Model with Alloy and Event-B
Petr N. Devyanin, Alexey V. Khoroshilov, Victor V. Kuliamin, Alexander K. Petrenko, Ilya Shchepetkov — ABZ 2014, 309–313
DOI PDF

Talks

Rust Toolchain for Event-B with Language Server Support
Rodin Workshop @ FM 2026 · Tokyo, Japan · May 2026
slides

Identifying Design Flaws in a Lock-Free Task Pool with TLA+
ABZ 2026 · Tokyo, Japan · May 2026
slides

Runtime Verification of Linux Kernel Security Module
OpenCERT @ FM 2019 · Porto, Portugal · October 2019
slides

Using Refinement in Formal Development of OS Security Policy Model
Event-B Day 2018 · Tokyo, Japan · November 2018
slides

Developing and Proving a Complicated System Model with Rodin
Rodin Workshop @ ABZ 2014 · Toulouse, France · June 2014
slides

Projects

Rossi
Event-B tooling: a Rust parser, static checker, CLI and language server, plus headless proving and packaging for the surrounding ecosystem.

Clade
Extracts build commands and source-analysis data from a software build process.

CIF
Aspect-oriented programming for C, implemented on top of the GCC compiler.

salsa-spec
TLA+ specification of a lock-free producer–consumer task pool.

Klever
A framework for verifying large industrial C programs, notably Linux kernel modules.

Education

2015 — 2019
Ivannikov Institute for System Programming (ISP RAS)
PhD
Thesis: Formal Specification and Verification of Operating System Access Control Models.

2009 — 2015
Moscow Institute of Physics and Technology (MIPT)
2013 — 2015
MSc, Applied Mathematics
Thesis: Decomposition of Operating System Security Model.
2009 — 2013
BSc, Applied Mathematics
Thesis: Checking Syntax Compatibility of Safety Property Specifications with the Linux Kernel API.

Teaching

2017 — Dec 2021
Higher School of Economics
Lecturer
Formal verification, testing and quality assurance.

2016 — 2019
Moscow State University (MSU)
Lecturer
State-based formal methods.