MARATTO

article · Journal Of Big Data

Security risk management in the digital enterprise: enhancing cyber defense with large language models

Abstract

The rapid expansion of digital infrastructures has intensified cybersecurity challenges, necessitating adaptive and intelligence-driven approaches to risk management. This study addresses the gap between exploratory LLM-based cybersecurity research and deployment-oriented evaluation under big-data SOC conditions. Instruction-tuned large language models (LLMs), namely GPT-3.5 Turbo and Mistral-7B, are evaluated for cyber threat detection by reformulating structured network telemetry into natural-language prompts. A deployment-aware evaluation framework is adopted, jointly assessing predictive performance, inference efficiency, and resource utilization. Experimental results indicate that Mistral-7B consistently outperforms GPT-3.5 Turbo and classical ML/DL baselines, achieving an overall accuracy of 0.9936 and a Cohen’s Kappa of 0.9925. Mistral-7B further achieves lower average inference latency (23.1 ms) and improved tail latency (P95 = 40.7 ms), while reducing peak memory usage during inference compared to GPT-3.5 Turbo. These results highlight the suitability of LLMs for scalable and explainable enterprise-level cybersecurity risk management.

Research topics

  • Information and Cyber Security
  • Economic and Technological Systems Analysis
  • Intuitionistic Fuzzy Systems Applications

Read the original research

This page summarises published work. The authoritative version sits with the publisher.

DOI: 10.1186/s40537-026-01420-w

Is something wrong with this record? Report it or request removal.

Discussion

Discuss this research

Have you built on this work, tried to replicate it, or seen it applied in practice? Share what you know. Verified researchers and MARATTO™ domain experts can open a discussion, and any member can reply. Contributions are reviewed before they appear.

No discussion yet. Open the first thread.