1,653 1 year ago

CybersecurityRiskAnalyst is a custom fine-tuned Large Language Model (LLM) designed to act as a senior cybersecurity risk assessor and strategist.

tools
ollama run saki007ster/CybersecurityRiskAnalyst

Details

1 year ago

9f4725163115 · 4.7GB

llama
·
8.03B
·
Q4_0
LLAMA 3.1 COMMUNITY LICENSE AGREEMENT Llama 3.1 Version Release Date: July 23, 2024 “Agreement”
ALIENTELLIGENCE ---- IAGENTZ --- META LLAMA -- Human Level AGI - llm-est-gb-o4c
You are a highly skilled Cybersecurity Risk Assessment Specialist and AI Security Consultant. You op
{ "stop": [ "<|start_header_id|>", "<|end_header_id|>", "<|eot_id|>"
{{ if .Messages }} {{- if or .System .Tools }}<|start_header_id|>system<|end_header_id|> {{- if .Sys

Readme

🛡️ CybersecurityRiskAnalyst — Cybersecurity Risk Assessment LLM

CybersecurityRiskAnalyst is a custom fine-tuned Large Language Model (LLM) designed to act as a senior cybersecurity risk assessor and strategist. It provides comprehensive and actionable risk assessments for organizations based on their current security posture, infrastructure, and strategic goals.

🚀 Key Features

  • Risk Posture Evaluation: Assesses current cybersecurity maturity based on provided company data.
  • Framework Mapping: Aligns recommendations with NIST CSF, CIS Controls, MITRE ATT&CK, and ISO/IEC 27001.
  • Threat Intelligence Awareness: Updated knowledge of exploits, zero-day vulnerabilities, and adversarial tactics.
  • Gap Analysis: Identifies areas of weakness compared to industry best practices.
  • Prioritized Recommendations: Categorizes findings by risk level and provides short/long-term remediations.
  • Human-Centric Reports: Outputs are structured for both technical and executive audiences.
  • Explainability: Justifies each recommendation with clear rationale to support decision-making.

📝 How to Use

Start by feeding the model a detailed company profile, including: - Type of industry, company size - Existing tech stack and infrastructure - Compliance mandates (e.g., HIPAA, GDPR, PCI-DSS) - Security policies and access controls - Any known incidents or concerns

Example prompt:

We are a mid-sized fintech company with hybrid cloud architecture (AWS + Azure), using Okta for IAM, Kubernetes for deployment, and Office 365 for collaboration. No SIEM is currently in place. Data is encrypted at rest but not in transit. We are PCI-DSS compliant but not SOC2. What is our risk posture, and what should we aim for?

📄 Sample Output Structure

The model will respond with :

Executive Summary, Current State Assessment, Risk Matrix (Low / Medium / High), Gap Analysis vs. Standards, Recommended Actions, Suggested Tools and Controls, Strategic Roadmap

📚 References

  • NIST Cybersecurity Framework (CSF)
  • MITRE ATT&CK
  • CIS Critical Security Controls
  • ISO/IEC 27001

How to cite

This model accompanies the paper below — if you use the model in academic or professional work, please cite the paper.

Gupta, Ravish; Kumar, Saket; Sharma, Shreeya; Dang, Maulik; and Aggarwal, Abhishek (2026). An Agentic Multi-Agent Architecture for Cybersecurity Risk Management. arXiv preprint arXiv:2603.20131.

APA ``` Gupta, R., Kumar, S., Sharma, S., Dang, M., & Aggarwal, A. (2026). An Agentic Multi-Agent Architecture for Cybersecurity Risk Management. arXiv preprint arXiv:2603.20131. ```
MLA ``` Gupta, Ravish, et al. "An Agentic Multi-Agent Architecture for Cybersecurity Risk Management." arXiv preprint arXiv:2603.20131 (2026). ```
Chicago ``` Gupta, Ravish, Saket Kumar, Shreeya Sharma, Maulik Dang, and Abhishek Aggarwal. "An Agentic Multi-Agent Architecture for Cybersecurity Risk Management." arXiv preprint arXiv:2603.20131 (2026). ```
Harvard ``` Gupta, R., Kumar, S., Sharma, S., Dang, M. and Aggarwal, A., 2026. An Agentic Multi-Agent Architecture for Cybersecurity Risk Management. arXiv preprint arXiv:2603.20131. ```
Vancouver ``` Gupta R, Kumar S, Sharma S, Dang M, Aggarwal A. An Agentic Multi-Agent Architecture for Cybersecurity Risk Management. arXiv preprint arXiv:2603.20131. 2026. ```

BibTeX

@article{gupta2026agentic,
  title   = {An Agentic Multi-Agent Architecture for Cybersecurity Risk Management},
  author  = {Gupta, Ravish and Kumar, Saket and Sharma, Shreeya and Dang, Maulik and Aggarwal, Abhishek},
  journal = {arXiv preprint arXiv:2603.20131},
  year    = {2026}
}