REPOSITORY.ENU

MACHINE LEARNING ALGORITHMS IN SIEM SYSTEMS FOR ENHANCED DETECTION AND MANAGEMENT OF SECURITY EVENTS

Показать сокращенную информацию

dc.contributor.author Nurusheva, A.
dc.contributor.author Abdiraman, A.
dc.contributor.author Satybaldina, D.
dc.contributor.author Goranin, N.
dc.date.accessioned 2025-06-11T06:08:54Z
dc.date.available 2025-06-11T06:08:54Z
dc.date.issued 2024
dc.identifier.uri http://repository.enu.kz/handle/enu/24206
dc.description.abstract As cyber threats become increasingly sophisticated, traditional Security Information and Event Management (SIEM) systems face challenges in effectively identifying and responding to these dangers. This research presents the development of a SIEM system integrated with machine learning (ML) to enhance threat detection, anomaly identification, and automated incident response. The integration of ML allows the SIEM system to go beyond conventional rule-based approaches, enabling the detection of previously unknown threats by learning from historical data. The system employs advanced algorithms to analyze large-scale log data and network traffic, providing real-time insights and reducing false positives. Key features of this SIEM include anomaly detection, predictive analytics, and adaptive thresholds, which allow it to adjust dynamically based on contextual data. By adapting to new and evolving cyber threats, the system provides a more resilient and proactive defense against potential attacks. The results indicate that integrating machine learning into SIEM systems can offer organizations a more effective, scalable, and adaptive security solution, ensuring the protection of critical infrastructure and data in a rapidly changing digital landscape. ru
dc.description.sponsorship This research is funded by the Science Committee of the Ministry of Science and Higher Education of the Republic of Kazakhstan (Grant No. AP19175746) ru
dc.language.iso en ru
dc.subject cyber threats ru
dc.subject machine learning ru
dc.subject SIEM ru
dc.subject information security management ru
dc.title MACHINE LEARNING ALGORITHMS IN SIEM SYSTEMS FOR ENHANCED DETECTION AND MANAGEMENT OF SECURITY EVENTS ru
dc.type Article ru


Файлы в этом документе

Данный элемент включен в следующие коллекции

Показать сокращенную информацию

Поиск в DSpace


Просмотр

Моя учетная запись