
SecureML – Absicherung und Wasserzeichen für ML-Modelle
Unternehmensreife KI-Modellsicherheit basierend auf OpenSSF Model Signing
SecureAIML ist das „Stripe für Modellsicherheit“ – es macht den Schutz von KI-Modellen auf Unternehmensniveau für jede Organisation zugänglich, benutzerfreundlich und produktionsreif.
Im Zeitalter von KI/ML ist die Sicherheit von Modellen entscheidend. SecureAIML umhüllt den leistungsstarken OpenSSF Model Signing-Standard mit einer intuitiven, unternehmensreifen Schnittstelle, die die Sicherung Ihrer ML-Modelle so einfach macht wie:
pip install secureaiml
from secureml import SecureModel
import joblib
# Load your model
model = joblib.load("model.pkl")
# Secure it in one line
secure_model = SecureModel(model)
secure_model.sign_and_save("model.sml", identity="[email protected]")
# Load and verify
verified_model = SecureModel.load("model.sml", verify=True)
predictions = verified_model.predict(X_test)
from secureml import SecureModel
import joblib
# Train your model (any framework)
from xgboost import XGBClassifier
model = XGBClassifier()
model.fit(X_train, y_train)
# Secure it
secure_model = SecureModel(model)
secure_model.sign_and_save(
"fraud_detection_model.sml",
identity="[email protected]",
version="2.0.0",
description="Production fraud detection model"
)
# Load and verify
model = SecureModel.load("fraud_detection_model.sml", verify=True)
if model.is_verified:
predictions = model.predict(X_test)
from secureml.api.advanced import AdvancedSecureModel
from secureml.utils.config import SecurityConfig, SecurityLevel, ComplianceFramework
# Configure enterprise security
config = SecurityConfig.from_level(SecurityLevel.ENTERPRISE)
config.enable_fingerprinting = True
config.enable_merkle_trees = True
config.compliance_frameworks = [ComplianceFramework.SOC2, ComplianceFramework.ISO27001]
# Create advanced secure model
advanced = AdvancedSecureModel(model, config=config)
# Sign with AWS KMS
advanced.add_signature(
identity="[email protected]",
use_cloud_kms=True,
kms_key_id="arn:aws:kms:us-east-1:123456789:key/abc-def",
cloud_provider="aws"
)
# Validate compliance
compliance_report = advanced.validate_compliance(
frameworks=[ComplianceFramework.SOC2, ComplianceFramework.HIPAA],
generate_report=True,
report_path="compliance_report.json"
)
print(f"Compliance Status: {compliance_report['overall_status']}")
SecureML ist als Erweiterungsschicht auf OpenSSF Model Signing aufgebaut:
┌─────────────────────────────────────────────────────┐
│ Your Application │
└─────────────────────────────────────────────────────┘
↓
┌─────────────────────────────────────────────────────┐
│ SecureML API Layer │
│ • Simple API • Advanced API • CLI │
└─────────────────────────────────────────────────────┘
↓
┌─────────────────────────────────────────────────────┐
│ SecureML Enterprise Features │
│ • HSM/KMS • Compliance • Audit • Forensics │
└─────────────────────────────────────────────────────┘
↓
┌─────────────────────────────────────────────────────┐
│ OpenSSF Model Signing (Core) │
│ Sigstore Infrastructure │
└─────────────────────────────────────────────────────┘
SecureML bietet vier Sicherheitsstufen, die auf Ihre Bedürfnisse zugeschnitten sind:
| Stufe | Anwendungsfall | Funktionen |
|---|---|---|
| BASIC | Entwicklung, Test | Nur OpenSSF-Signierung |
| STANDARD | Produktionsbereitstellungen | + Fingerprinting, Audit-Protokollierung |
| ENTERPRISE | Regulierte Branchen | + Merkle-Bäume, Bedrohungserkennung, Compliance |
| MAXIMUM | Hochsicherheitsumgebungen | + Verschlüsselung, Forensik, Multi-Signatur |
SecureML hilft Ihnen, behördliche Anforderungen zu erfüllen:
from secureml import SecureModel
import xgboost as xgb
model = xgb.XGBClassifier()
model.fit(X_train, y_train)
secure_model = SecureModel(model)
secure_model.sign_and_save("xgb_model.sml", identity="[email protected]")
import torch
from secureml import SecureModel
model = torch.nn.Sequential(...)
torch.save(model.state_dict(), "model.pth")
secure_model = SecureModel.load_from_path("model.pth")
secure_model.sign_and_save("pytorch_model.sml", identity="[email protected]")
from transformers import AutoModel
from secureml import SecureModel