Designing an LLM-augmented framework for security evaluation and policy recommendation
| bracu.degree.level | Undergraduate | |
| bracu.type.group | Student Works | |
| datacite.rights | Open Access | |
| dc.contributor.advisor | Hossain, Muhammad Iqbal | |
| dc.contributor.author | Pasha, Md. Salman | |
| dc.contributor.author | Ahsan, KM Abrar | |
| dc.contributor.author | Nodi, Rumman | |
| dc.contributor.author | Maliha, Shawana | |
| dc.contributor.author | Siddiquee, Md. Eousuf | |
| dc.contributor.department | Department of Computer Science and Engineering | |
| dc.date.accessioned | 2026-01-06T08:48:21Z | |
| dc.date.available | 2026-01-06T08:48:21Z | |
| dc.date.copyright | 2025 | |
| dc.date.issued | 2025-10 | |
| dc.description | Cataloged from PDF version of thesis. | |
| dc.description | Includes bibliographical references (pages 52-54). | |
| dc.description | This thesis is submitted in partial fulfillment of the requirements for the degree of Bachelor of Science in Computer Science, 2025. | en_US |
| dc.description.abstract | As organizations continue to accumulate more data in the digital platforms, it becomes difficult to safeguard sensitive data. The authorization and authentication factors restrict the use of critical systems, but traditional IAM can’t scale with the new breed of cyber-threats like credential theft, phishing and AI attacks. The motive of this paper is in building security systems more resilient and intelligent to deal with any kind of malicious attacks and generating decisions with the application of Large Language Models (LLMs) augmented with advanced AI driven techniques. The project was initially focused on the specified access control factors of Identity and Access Management (IAM) and evaluating policies with providing security scores connected to web interfaces to analyze vulnerable factors beforehand. This was incorporated to a hybrid AI architecture consisting of a small BERT-tiny model optimized to detect security anomalies quickly and larger transformer based models LLMs (Mistral-7B and Gemma3-270M) that can be deployed to explain problems in fine detail and generate remediation strategies that can be executed. Experiments on larger actual datasets showed BERT-tiny achieved a remarkable accuracy of 90.12% for detection and 82.45% for malicious type differentiation. The focus applied on hyperparameter tuning, multi layer approach optimization, and class imbalance adjustments ensured robustness and generalization. Although certain limitations remain, especially in aspects of response latencies and the computational overhead, the present work is a step towards demonstrating the radical potential of an LLM approach in building systems that think faster, explain better, and adapt smarter to emerging digital threats. | en_US |
| dc.description.degree | Bachelor of Science in Computer Science | |
| dc.description.statementofresponsibility | Md. Salman Pasha | |
| dc.description.statementofresponsibility | KM Abrar Ahsan | |
| dc.description.statementofresponsibility | Rumman Nodi | |
| dc.description.statementofresponsibility | Shawana Maliha | |
| dc.description.statementofresponsibility | Md. Eousuf Siddiquee | |
| dc.format.extent | 63 pages | |
| dc.identifier.other | ID 24141081 | |
| dc.identifier.other | ID 24141119 | |
| dc.identifier.other | ID 23241082 | |
| dc.identifier.other | ID 22101117 | |
| dc.identifier.other | ID 24141082 | |
| dc.identifier.uri | http://hdl.handle.net/10361/27403 | |
| dc.language.iso | en | en_US |
| dc.publisher | BRAC University | en_US |
| dc.rights | BRAC University theses are protected by copyright. They may be viewed from this source for any purpose, but reproduction or distribution in any format is prohibited without written permission. | |
| dc.subject | Large language models | en_US |
| dc.subject | Artificial intelligence | en_US |
| dc.subject | BERT-tiny | en_US |
| dc.subject | Security evaluation | en_US |
| dc.subject | Hyperparameter tuning | en_US |
| dc.subject | Mistral-7B | en_US |
| dc.subject | Gemma3 | en_US |
| dc.subject | Cybersecurity | en_US |
| dc.subject.lcsh | Cyberspace--Security measures--Evaluation. | |
| dc.subject.lcsh | Computer networks--Security measures. | |
| dc.subject.lcsh | Computer security. | |
| dc.subject.lcsh | Information networks--Security measures. | |
| dc.subject.lcsh | Artificial intelligence--Security measures | |
| dc.title | Designing an LLM-augmented framework for security evaluation and policy recommendation | en_US |
| dc.type | Thesis | en_US |
Files
Original bundle
1 - 1 of 1
Loading...
- Name:
- 24141081, 24141119, 22101117, 24141082, 23241082_CSE.pdf
- Size:
- 1.2 MB
- Format:
- Adobe Portable Document Format
- Description:
License bundle
1 - 1 of 1
Loading...
- Name:
- license.txt
- Size:
- 1.71 KB
- Format:
- Item-specific license agreed upon to submission
- Description: