Automating the Assessment of Japanese Cyber-Security Technical Assessment Requirements Using Large Language Models

Kento Hasegawa, Yuka Ikegami, Seira Hidano, Kazuhide Fukushima, Kazuo Hashimoto, Nozomu Togawa

研究成果: Conference contribution

抄録

Several countries, including the U.S. and European nations, are implementing security assessment programs for IoT devices. Reducing human effort in security assessment has great importance in terms of increasing the efficiency of the assessment process. In this paper, we propose a method of automating the conformance assessment of security requirements based on Japanese program called JC-STAR. The proposed method performs document analysis and device testing. In document analysis, the use of rewrite-retrieve-read and chain of thought within retrieval-augmented generation (RAG) increases the assessment accuracy for documents that have limited detailed descriptions related to security requirements. In device testing, conformance with security requirements is assessed by applying tools and interpreting the results with a large language model. The experimental results show that the proposed method assesses conformance with security requirements with an accuracy of 95% in the best case.

本文言語English
ホスト出版物のタイトルProceedings of the 10th International Conference on Internet of Things, Big Data and Security, IoTBDS 2025
編集者Ali Emrouznejad, Patrick Hung, Andreas Jacobsson
出版社Science and Technology Publications, Lda
ページ305-312
ページ数8
ISBN(電子版)9789897587504
DOI
出版ステータスPublished - 2025
イベント10th International Conference on Internet of Things, Big Data and Security, IoTBDS 2025 - Porto, Portugal
継続期間: 2025 4月 62025 4月 8

出版物シリーズ

名前International Conference on Internet of Things, Big Data and Security, IoTBDS - Proceedings
ISSN(電子版)2184-4976

Conference

Conference10th International Conference on Internet of Things, Big Data and Security, IoTBDS 2025
国/地域Portugal
CityPorto
Period25/4/625/4/8

ASJC Scopus subject areas

  • コンピュータ ネットワークおよび通信
  • ソフトウェア

フィンガープリント

「Automating the Assessment of Japanese Cyber-Security Technical Assessment Requirements Using Large Language Models」の研究トピックを掘り下げます。これらがまとまってユニークなフィンガープリントを構成します。

引用スタイル