Information and Communications Technology and Policy

Information and Communications Technology and Policy

Information and Communications Technology and Policy ›› 2024, Vol. 50 ›› Issue (12): 73-81.doi: 10.12267/j.issn.2096-5931.2024.12.011

Previous Articles     Next Articles

Design of data audit and security management system based on UEBA and AI

XUE Liang1, WANG Hanxiao2, HU Xiaobo3, HAN Haiting4   

  1. 1. China Mobile Communications Group Jiangsu Co., Ltd., Nanjing 210029, China
    2. Security Research Institute, China Academy of Information and Communications Technology, Beijing 100191, China
    3. First Research Institute of the Ministry of Public Security, Beijing 100010, China
    4. Intelligent IoT Laboratory, Zhejiang Ocean University, Zhoushan 316000, China
  • Received:2024-11-10 Online:2024-12-25 Published:2025-01-02

Abstract:

A data auditing and security management system based on user and entity behavior analysis offers an innovative solution to address internal and external data security threats in enterprises. By continuously monitoring the behaviors of users, devices, and applications, the system establishes dynamic baselines and performs real-time anomaly detection to identify potential threats effectively. This paper proposes a framework centered on four key elements—entities, behaviors, baselines, and algorithms—along with a three-step process comprising data collection, behavior analysis, as well as response and handling. It demonstrates how artificial intelligence-enhanced user and entity behavior analysis (UEBA) can be used to construct an intelligent data security auditing system, strengthening data protection capabilities and ensuring compliance.

Key words: UEBA, artificial intelligence, data security, data audit

CLC Number: