Researchers have developed a novel hybrid framework for detecting insider threats within enterprise environments. This system integrates multi-agent simulation with layered SIEM correlation, incorporating trust-adaptive thresholds and behavioral forensics. The framework was evaluated across four variants, with the Evidence-Gated SIEM (EG-SIEM) achieving a high actor-level F1 score of 0.944 when calibrated with Enron email data. This approach significantly reduced false positives, though at the cost of increased confirmation time, and demonstrated robust performance on the CERT r4.2 dataset. AI
IMPACT This framework could significantly improve enterprise security by enabling more accurate and efficient detection of malicious insider activities.
RANK_REASON The cluster contains a single academic paper detailing a new technical framework. [lever_c_demoted from research: ic=1 ai=1.0]
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →