Program



Track C(Hall D)
2026.8.12 15:20 ~ 16:00
mail share facebook share twitter share linkedin share band share kakao
Practical AI Security: An Access Log-Based Anomaly Detection Strategy

EASYCERTI Jeonghyeon Kwon Director


This session examines the limitations of traditional rule- and threshold-based security monitoring using business system logs, focusing on insider threats, false positives, and alert fatigue. It covers the need to transition to AI-based detection and introduces strategies for learning normal access patterns through machine learning techniques to identify abnormal access, large-scale data exfiltration, and attempted privilege or account takeover. It also explains how sLLMs can be integrated to analyze the context and intent behind detection results in natural language, while presenting practical operational approaches using lightweight CPU-based models and on-premises environments.