AI-Driven Risk Mitigation and Infrastructure Security Frameworks for Strengthening U.S. Healthcare and Critical Systems: A Conceptual Architecture, Compliance Mapping, and Governance Protocol
2026· International Journal of Multidisciplinary Research and Growth Evaluation· Vol 7, pp. 534-549· 0 citations
TL;DR
It is concluded that artificial intelligence can materially strengthen healthcare's Detect and Respond capabilities, but only within a governance structure that operationalizes, rather than merely acknowledges, these failure modes as first-order design constraints.
Abstract
Healthcare cybersecurity in the United States has historically operated on a reactive model, addressing breaches and ransomware incidents only after clinical damage has occurred. This paper argues that the proliferation of Internet of Medical Things (IoMT) devices, combined with escalating ransomware activity now causally linked to increased in-hospital mortality, makes this reactive posture untenable. Drawing on the peer-reviewed literature, we propose a three-layer conceptual security architecture consisting of passive telemetry collection, unsupervised machine learning anomaly detection (deep autoencoders for network-flow analysis and Isolation Forest models for behavioral and access-log analysis), and an AI-augmented Security Orchestration, Automation, and Response (SOAR) layer enforcing graduated, reversible containment through a software-defined networking control plane. We map this architecture against the NIST Cybersecurity Framework 2.0, the CISA Cross-Sector Cybersecurity Performance Goals, and the HIPAA Security Rule's technical safeguards. Distinct from prior conceptual work in this space, this paper does not stop at naming the failure modes of AI-driven security; it specifies four concrete governance protocols designed to close them: a staged, statistically bounded retraining protocol to resist data poisoning; an ensemble-diversity and protocol-aware evasion defense; a time-bound Clinical Override Protocol that resolves the false-positive-versus-patient-safety tension left unresolved in prior proposals; and a stratified differential-impact auditing requirement to detect performance disparities across device classes and facility resource levels before they cause harm. We also specify a concrete, reproducible validation pathway using public IoT/IoMT intrusion benchmark datasets as the necessary next step toward empirical certification of this architecture. We conclude that artificial intelligence can materially strengthen healthcare's Detect and Respond capabilities, but only within a governance structure that operationalizes, rather than merely acknowledges, these failure modes as first-order design constraints.
A unified Explainable AI (XAI) security framework that synthesizes federated learning-enhanced Dynamic Risk-Based Authentication with privacy-preserving on-premises Large Language Model (LLM) deployment into a cohesive, compliance-native paradigm is proposed.
Ashok Kumar, U. Kose· International Journal on Eng...· 0 citations
India’s Critical Information Infrastructure (CII) has been subjected to a series of high-profile cyber-attacks that have collectively exposed fundamental legal, regulatory, and systemic gaps within its protection framework-gaps that are being dangerously amplified by the accelerating and institutionally fragmented depl...
K. Joshi, Shikha Dimri, Lalit Singh et al.· International journal of com...· 0 citations
It is found that traditional risk assessment and testing approaches are insufficient for AI-powered CPS, and a prototype implementation and experimental evaluation are presented along with a case study of protecting a smart manufacturing plant during a ransomware attack using the proposed approach.
Vikram Kulothungan, Deepti Gupta, Raju Dhakal et al.· Italian National Conference...· 0 citations
The central finding is that 5G security cannot be reduced to conventional perimeter defence; it requires a converged operating model that secures networks, data, machine-learning pipelines, identities, cloud-native functions and critical service continuity together.
Ken Mudzingwa, Stewart Munyaradzi Nyamutswa, Admore Tafadzwa Mugwadzi et al.· Iconic research and engineer...· 0 citations
An advanced defence system that is specifically designed for medical imaging archiving and communication systems in radiology departments, offering healthcare institutions proactive and intelligent protection that safeguards patient privacy and institutional integrity in the face of future threats.
Srinidhi G. A. Saranya D· Journal of Intelligent Decis...· 1 citation
-The rapid migration of US healthcare systems to cloud infrastructure has substantially expanded the attack surface for cyber threats targeting protected health information (PHI). Traditional perimeter-based security models have proven inadequate against the sophistication of modern ransomware campaigns, insider threat...
Michael Akintomiwa Oyedeji, T. Dawotola, Omobolaji Olakunle Oladapo· Iconic research and engineer...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.