Author
Abstract
In the era of rapid digital transformation, cloud platforms have become the backbone of modern computing infrastructure, offering scalability, flexibil- ity, and cost-efficiency. However, their widespread adoption has also made them prime targets for sophisticated cyber threats, especially those involv- ing anomalous user behavior. Detecting anomalies in user activities is critical for identifying potential insider threats, account takeovers, privilege misuse, and other malicious actions that may evade traditional rule-based security systems. This research paper explores the implementation of machine learn- ing techniques for real-time anomaly detection in user behavior across cloud platforms, providing a proactive approach to cloud security. The study emphasizes the limitations of static rule-based systems and tra- ditional SIEM (Security Information and Event Management) tools, which often fail to adapt to evolving behavioral patterns and generate high false- positive rates. By leveraging supervised, unsupervised, and semi-supervised machine learning models, we propose an intelligent system capable of learn- ing normal usage patterns and identifying deviations indicative of threats. Key algorithms such as Isolation Forest, One-Class SVM, Autoencoders, and clustering techniques like DBSCAN and K-Means are examined for their ef- fectiveness in identifying anomalies in large-scale, multidimensional datasets generated by user activity logs, API calls, access records, and system meta- data. Our methodology involves the preprocessing of cloud log data, feature engineering for behavior profiling, and training models on both labeled and unlabeled data. The study also incorporates techniques for dimensionality re- duction (e.g., PCA, t-SNE) and explains model interpretability using SHAP and LIME to foster trust among cybersecurity teams. Performance metrics such as precision, recall, F1-score, and ROC-AUC are used to evaluate de- tection capabilities, with a focus on reducing false alarms while maintaining high detection accuracy. Additionally, the paper addresses the challenges of real-time deployment, scalability, data privacy, and the integration of anomaly detection modules with existing cloud security architectures like SIEM, SOAR, and CASB. A case study simulating behavioral anomalies on a public cloud environment (e.g., Microsoft Azure or AWS) demonstrates the practical applicability of the proposed solution. By integrating intelligent, adaptive anomaly detection systems, organiza- tions can significantly enhance their cloud security posture, respond proac- tively to emerging threats, and reduce dwell time of malicious actors. This research contributes to the evolving field of AI-driven cybersecurity and lays the foundation for future advancements in autonomous threat detection for dynamic cloud ecosystems.
Suggested Citation
Purushottam Perapu, 2025.
"Anomaly Detection in User Behaviour Using Machine Learning For Cloud Platforms,"
International Journal of Scientific Research in Computer Science, Engineering and Information Technology, International Journal of Scientific Research in Computer Science, Engineering and Information Technology, vol. 11(3), pages 805-809, June.
Handle:
RePEc:jbh:ijsrcs:v11:y2025:i3:id:1524
DOI: 10.32628/CSEIT25113343
Note: Article URL: https://ijsrcseit.com/home/article/view/CSEIT25113343
Download full text from publisher
Corrections
All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:jbh:ijsrcs:v11:y2025:i3:id:1524. See general information about how to correct material in RePEc.
If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.
We have no bibliographic references for this item. You can help adding them by using this form .
If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.
For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Pankaj Sharma (USA) (email available below). General contact details of provider: https://ijsrcseit.com/home .
Please note that corrections may take a couple of weeks to filter through
the various RePEc services.