Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

Phase I Closeout Report: Invoking Artificial Neural Networks to Measure Insider Threat Mitigation

Technical Report ·
DOI:https://doi.org/10.2172/1650238· OSTI ID:1650238
 [1];  [1];  [1]
  1. Sandia National Laboratories (SNL), Albuquerque, NM, and Livermore, CA (United States)

Researchers from Sandia National Laboratories (Sandia) and the University of Texas at Austin (UT) conducted this study to explore the effectiveness of commercial artificial neural network (ANN) software to improve insider threat detection and mitigation (ITDM). This study hypothesized that ANNs could be "trainee to learn patterns of organizational behaviors, detect off-normal (or anomalous) deviations from these patterns, and alert when certain types, frequencies, or quantities of deviations emerge. The ReconaSense ANN system was installed at UT's Nuclear Engineering Teaching Laboratory (NETL) and collected 13,653 access control data points and 694 intrusion sensor data points over a three-month period. Preliminary analysis of this baseline data demonstrated regularized patterns of life in the facility, and that off-normal behaviors are detectable under certain situations -- even for a facility with anticipated highly non-routine, operational behaviors. Completion of this pilot study demonstrated how the ReconaSense ANN could be used to identify expected operational patterns and detect unexpected anomalous behaviors in support of a data-analytic approach to ITDM. While additional studies are needed to fully understand and characterize this system, the results of this initial study are overall very promising for demonstrating a new framework for ITDM utilizing ANNs and data analysis techniques.

Research Organization:
Sandia National Laboratories (SNL-NM), Albuquerque, NM (United States)
Sponsoring Organization:
USDOE National Nuclear Security Administration (NNSA). Office of International Nuclear Security
DOE Contract Number:
AC04-94AL85000; NA0003525
OSTI ID:
1650238
Report Number(s):
SAND--2020-8253; 690014
Country of Publication:
United States
Language:
English

Similar Records

Results From Invoking Artificial Neural Networks to Measure Insider Threat Detection & Mitigation
Journal Article · Thu Mar 31 00:00:00 EDT 2022 · Digital Threats: Research and Practice · OSTI ID:1831170

Neutron depth profiling at the University of Texas research reactor
Conference · Thu Dec 31 23:00:00 EST 1992 · Transactions of the American Nuclear Society; (United States) · OSTI ID:5874498

Insider Alert 1.0 Beta Version
Software · Sun Feb 01 00:00:00 EST 2004 · OSTI ID:1230711

Related Subjects