INCIDENT RESPONSE AUTOMATION

Authors

  • KOYYA UDAY KIRAN, Mrs. A. ANITHA Author

DOI:

https://doi.org/10.64751/

Keywords:

Incident Response; Cybersecurity Automation; Machine Learning; Threat Detection; Security Orchestration

Abstract

This paper presents a system for automating cybersecurity incident response to address the limitations of traditional manual approaches. The proposed system integrates machine learning models and orchestration workflows to detect, analyze, and respond to security incidents efficiently. It continuously monitors network logs and behavioral patterns, classifies incidents based on severity, and executes automated response actions such as isolating affected systems and blocking malicious IP addresses. The system architecture includes modules for data collection, analysis, response execution, notifications, user interface, and database management. Implemented using Python and related libraries, the system achieved a model accuracy of 98.33% and an F1 Score of 0.983 on a test dataset. Comprehensive testing confirmed the system's reliability and effectiveness in handling various incident scenarios. The results demonstrate that automation significantly improves response speed and consistency while reducing manual intervention

Downloads

Published

22-05-26

How to Cite

KOYYA UDAY KIRAN, Mrs. A. ANITHA. (2026). INCIDENT RESPONSE AUTOMATION. American Journal of AI Cyber Computing Management, 6(2), 775-786. https://doi.org/10.64751/