Operationalising Cyber Risk Management Using AI: Connecting Cyber Incidents to MITRE ATT&CK Techniques, Security Controls, and Metrics
arXiv cs.AI / 3/16/2026
📰 NewsIdeas & Deep AnalysisTools & Practical UsageModels & Research
Key Points
- The paper introduces a Cyber Catalog and an AI-driven framework that maps cyber incidents to MITRE ATT&CK techniques by integrating CIS Controls and SMART metrics, enabling a direct link from threat intelligence to actionable controls and measurable outcomes.
- They fine-tuned all-mpnet-base-v2 on an augmented dataset of 74,986 incident-technique pairs, achieving a Spearman correlation of 0.7894 and a Pearson correlation of 0.8756 with lower MAE and MSE than baseline models.
- The Cyber Catalog, along with the training data, trained model, and implementation code, is publicly available to support research and practical deployment in resource-constrained environments.
- The work bridges threat intelligence and operational security management, promoting evidence-based cyber risk management and actionable incident response.
Related Articles

Astral to Join OpenAI
Dev.to

I Built a MITM Proxy to See What Claude Code Actually Sends to Anthropic
Dev.to

Your AI coding agent is installing vulnerable packages. I built the fix.
Dev.to

ChatGPT Prompt Engineering for Freelancers: Unlocking Efficient Client Communication
Dev.to

PearlOS. We gave swarm intelligence a local desktop environment and code control to self-evolve. Has been pretty incredible to see so far. Open source and free if you want your own.
Reddit r/LocalLLaMA