信息通信技术与政策2024,Vol.50Issue(12):73-81,9.DOI:10.12267/j.issn.2096-5931.2024.12.011
基于用户实体行为分析与人工智能的数据安全审计管理系统研究
Design of data audit and security management system based on UEBA and AI
薛亮 1汪含笑 2胡晓波 3韩海庭4
作者信息
- 1. 中国移动通信集团江苏有限公司,南京 210029
- 2. 中国信息通信研究院安全研究所,北京 100191
- 3. 公安部第一研究所,北京 100010
- 4. 浙江海洋大学海天智能物联网实验室,舟山 316000
- 折叠
摘要
Abstract
A data auditing and security management system based on user and entity behavior analysis offers an innovative solution to address internal and external data security threats in enterprises.By continuously monitoring the behaviors of users,devices,and applications,the system establishes dynamic baselines and performs real-time anomaly detection to identify potential threats effectively.This paper proposes a framework centered on four key elements—entities,behaviors,baselines,and algorithms—along with a three-step process comprising data collection,behavior analysis,as well as response and handling.It demonstrates how artificial intelligence-enhanced user and entity behavior analysis(UEBA)can be used to construct an intelligent data security auditing system,strengthening data protection capabilities and ensuring compliance.关键词
用户实体行为分析/人工智能/数据安全/数据审计Key words
UEBA/artificial intelligence/data security/data audit分类
信息技术与安全科学引用本文复制引用
薛亮,汪含笑,胡晓波,韩海庭..基于用户实体行为分析与人工智能的数据安全审计管理系统研究[J].信息通信技术与政策,2024,50(12):73-81,9.