Skip to content
Open access

Explainable AI for Adaptive Security in Regulated Environments: A Unified Framework Integrating Federated Risk-Based Authentication and Privacy-Preserving On-Premises LLM Deployment

Aug 2026 · International Journal on Engineering Artificial Intelligence Management, Decision Support, and Policies · Vol 3, pp. 29-39 · 0 citations · 25 references

TL;DR

A unified Explainable AI (XAI) security framework that synthesizes federated learning-enhanced Dynamic Risk-Based Authentication with privacy-preserving on-premises Large Language Model (LLM) deployment into a cohesive, compliance-native paradigm is proposed.

Abstract

Healthcare and public-sector organizations face a compounding security imperative: protecting sensitive personal data against adaptive cyber threats while preserving the operational fluency that practitioners require in time-critical workflows. This paper proposes a unified Explainable AI (XAI) security framework that synthesizes federated learning-enhanced Dynamic Risk-Based Authentication (FL-RBA) with privacy-preserving on-premises Large Language Model (LLM) deployment into a cohesive, compliance-native paradigm. The framework introduces SHAP-based rationale generation to address the interpretability gap inherent in transformer-based authentication scoring, producing audit-ready decision trails that satisfy HIPAA and GDPR requirements. Pilot evidence from a live healthcare deployment demonstrates a 95% high-risk interception rate, 2.5% false-positive rate, and sub-1.2-second decision latency. On-premises LLM integration eliminates all external data transmission while delivering clinical intelligence capabilities comparable to cloud-based alternatives. The unified model provides a replicable blueprint for regulated organizations seeking to operationalize AI without compromising data sovereignty or regulatory alignment.

Read PDF

Similar papers

Review Open access Aug 2026

AI-Driven Privacy-Preserving Techniques in US Healthcare Cybersecurity: A Narrative Review

This narrative review draws together peer-reviewed literature from 2020 to 2026 on AI-driven privacy-preserving techniques like federated learning, differential privacy, homomorphic encryption, secure multi-party computation, and blockchain-AI hybrids applied to US healthcare cybersecurity to strengthen privacy alongsi...

Isaiah Thompson Ocansey, Mary Magdalene Linda Yeboah · 0 citations
Open access Aug 2026

A Privacy-Preserving Federated Learning Framework for Intrusion Detection in Healthcare IoT Environments

PPFL-IDS combines federated model aggregation with differential privacy noise injection and secure aggregation protocols to train a lightweight gradient-boosted ensemble IDS without exposing local device data, demonstrating that strong privacy guarantees and high detection accuracy can be achieved simultaneously in fed...

Nutan Gusain, J. Alzubi · 0 citations
Aug 2026

A privacy preserving adaptive cybersecurity framework for defending fintech ecosystems against advanced persistent threats

The P.A.C.T. Framework is presented, an integrated defense architecture organized around four mutually-reinforcing pillars: Proactive threat anticipation using predictive attack-path modelling and deception; Adaptive response driven by AI-based behavioral analytics; Collaborative intelligence sharing based on privacy-p...

Nadim Ibrahim, Azza Ramadan, Yousef Hasan et al. · 0 citations
Aug 2026

A Secure Federated Learning and Blockchain Framework for E-Health Threat Detection

The proposed framework effectively integrates encryption, federated intrusion detection, explainable artificial intelligence, and blockchain security to enhance privacy, transparency, and reliability in IoMT healthcare networks.

P. Banupriya, K. Vanitha · 0 citations
Open access Sep 2026

Insider-resilient database architecture for Nigerian healthcare cybersecurity using SHA-256 and Argon-2id-based two-tier approach

Cyberthreats threatening data integrity, availability, and patient safety of national healthcare critical infrastructure in resource-limited domains are a growing concern. This research paper proposes a secure two-tier database architecture to achieve higher resilience against remote and insider adversaries through sep...

Francis Alexander Aleke-Onyibe, G. N. Edegbe, Samuel Omaji et al. · 0 citations
Open access Aug 2026

SecureMCP: Policy-Enforced Defense Against Prompt Injection in LLM-Generated SQL for AIoT Databases

This paper proposes SecureMCP, a policy-enforced framework that integrates Role-Based Access Control with an MCP server to establish multi-layer defense for LLM-generated SQL execution, and evaluates filter performance—false positive rate (FPR) and false negative rate (FNR))—separately from LLM generation quality.

Wonbae Kim, Hee-Kyong Yoo, Nammee Moon · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.