A Primer on LLM Security and Secure LLMOps

SoS Lecture E
IngoKleiber (er/sein)
Large Language Models (LLMs) have taken the world by storm. Alongside their vast potential, these models also present unique security challenges. This session will serve as a primer on LLM security and secure LLMOps, introducing key issues and concepts related to the security of LLMs and systems relying on them. For example, we will be looking at issues such as prompt injection, sensitive information disclosure, and issues related to the interaction of LLMs with the “outside world” (e.g., plugins or APIs, RAG, Agentic AI). Of course, we are also going to briefly look at how to red-team LLMs. This session is based on previous iterations of “A Primer on LLM Security” at Congress and, based on audience feedback, has been extended and developed further. This session is based on previous iterations of “A Primer on LLM Security” at Congress and, based on audience feedback, has been extended and developed further. ## Target Audience and Required Previous Knowledge This session targets beginners and does not assume (in-depth) knowledge about LLMs. If you have prior experience in LLM security and anticipate insights into the latest developments, this session most likely is not for you. Please note that this session will not be about using LLMs in offensive or defensive cybersecurity. ## Learning Objectives From a learning perspective, after the session, participants will be able to … * describe what LLMs are and how they fundamentally function. * describe LLMOps and outline fundamental principles of secure LLMOps. * describe common security issues related to LLMs and systems relying on LLMs. * describe what LLM red teaming is. * perform some basic attacks against LLMs to test them for common issues. ## About Me My Name is Ingo, and I am currently responsible for Digital Education and Educational Technology at the University of Cologne. Relevant to this session, I have a background in computational linguistics and have been working with LLMs for quite some time – also prior to the ChatGPT moment. I am also involved in developing and providing AI infrastructure at scale. Of course, all of this is embedded within a deep interest in cyber- and information security. ## Format The session will be split into a 45-minute talk as well as 15 minutes of discussion. Participants will be provided with the slides as well as some resources for further study. ## Technical Requirements As this will not be a highly hands-on session, there are no technical requirements. If you want to experiment with some of the topics, a device capable of accessing and/or running LLMs is necessary. If you want to “go deeper,” you will need a device – e.g., a laptop, capable of running LLMs locally. ## Material After the session, I will provide all materials, including some selected additional resources. All materials will also be provided via this page. Ps. This is a slightly updated version of the workshop(s) I gave at previous iterations of Congress.

Additional information

Type other
Language German

More sessions

12/27/25
katy13
Komonin
Astrology is usually associated with horoscopes, prediction, or belief systems. In this self-organised session, we’ll test a different idea: using astrology as a symbolic language to reflect on daily routines, decision-making, and energy management — without fate, mysticism, or “the stars made me do it”. The session is interactive and experimental. We’ll look at how astrological concepts can function similarly to tools people already use: retrospectives, calendars, personality models, ...
12/27/25
blinry
SoS Workshop D
Jujutsu (jj) is a new version control system that uses Git as its backend. Since trying it last year, it has completely replaced Git for me. It manages to be less complex than Git, while giving you more control. I think you'll like it too! Lately, when people ask me complex Git questions, my answer is often: "First, install jj…" And that's only half a joke. :P --- A few things I like about Jujutsu: There's no index, but instead you get a subcommand for splitting changes. Commits have stable ...
12/27/25
htext
SoS Saal 6
How can we work together to improve political decision-making processes in the long term? What do you want from democracy? Motivation: While our democracy can be shaped by the people as they wish on paper, the population seems to be largely dissatisfied with political actions: - The handling of many crises appears to be inadequate - Urgent problems seem to be postponed - Democratic participation seems tedious and ineffective Dissatisfaction mixed with these perceptions can lead to the loss of ...
12/27/25
Kidspace - Workshopraum
Möchtest du uns unterstützen den Kidspace zu einem sicheren Wohlfühlort für Familien zu machen? Dann schließe dich dem Kidspace-Awareness-Team an.
12/27/25
Johannes_Max
SoS Lecture E
Wie ist das Gehirn und das Nervensystem aufgebaut? Was ist Stress und wie geht man effektiv damit um? Wie regeneriert man optimal? All das und viele Hacks lernst du hier.
12/27/25
HouseOfTea
House of Tea
Join us to get things started and be part of our Pu'Er circles! <3
12/27/25
Kidspace - Elektrotisch
Elektrobausteine/Electric circuits with building blocks