AI-Driven Observability for Managing Security Complexity in Cloud-native Microservices and Containerized Environments
Akinde Michael Ogunmolu, Ifesinachi Stephen Aroh, Onyii Henry, Pelumi Damola Adeyinka, Abayomi Titilola Olutimehin
Journal of Engineering Research and Reports · pp. 1–17 · Published 28 Jan 2026
10.9734/jerr/2026/v28i21786Abstract
This study investigates security-visibility challenges in cloud-native microservices by analysing adversarial behaviours using the MITRE ATT&CK container-techniques dataset, assessing observability limitations through time-series telemetry-coverage quantification applied to the OpenTelemetry Demo dataset, and proposing an AI-driven observability model for security anomaly detection. The proposed method employs an unsupervised deep autoencoder trained on integrated telemetry from the Google Cloud Microservices Demo and Kubernetes audit logs to learn normal system behaviour and identify anomalies, defined as statistically significant deviations from established baseline telemetry patterns associated with validated security events. Model performance was evaluated using a hold-out train–test validation protocol across combined multi-source telemetry datasets. Results show that the AI-driven observability model improves detection effectiveness compared with a baseline rule-based monitoring approach, increasing recall from 54% to 84%, reducing false negatives from 690 to 240, and substantially lowering average detection latency under comparable operational conditions. These findings demonstrate that AI-enabled observability enhances detection accuracy, reduces monitoring blind spots and supports more timely operational decision-making through improved multi-layer telemetry correlation. Accordingly, the study recommends unified telemetry pipelines, consistent instrumentation across microservices, adoption of unsupervised anomaly-detection models and the development of AI-observability standards to improve the reliability and security of cloud-native systems.
Cited by 1
1 citation reported by external sources — individual citing-article records aren't available to list yet.
Related research
- Comparative Analysis of Fully Convolutional Networks (FCN), SegNet, and U-Net for Semantic Segmentation of Synthetic Wafer Map Defect Patterns — shares topic coverage
- Attack and Anomaly Detection in IoT Networks using Machine Learning Techniques: A Review — shares topic coverage
- State-of-the-Art Violence Detection Techniques: A review — shares topic coverage
- Combating the Challenges of False Positives in AI-Driven Anomaly Detection Systems and Enhancing Data Security in the Cloud — shares topic coverage
- A Machine Learning Algorithm Based on Inverse Problems for Cyber Anomaly Detection — shares topic coverage
Article metrics
Real usage data collected on this platform.
0
Page views
0
PDF downloads
0
Outbound clicks
1
Citations
Views by country
Approximate, from request IP at view time — not citizenship or institution. Countries with fewer than 5 views are grouped as "Other".
No views recorded yet.
Traffic sources
Referring site, by host.
No traffic recorded yet.
Views and downloads exclude known bots/crawlers. Citations combines this platform's own DOI-resolved index with each external source's own reported total — see Cited by above for individually listed citing works. Last refreshed 0 seconds ago.