Skip to main navigation Skip to search Skip to main content

A Privacy-Aware Federated Learning Approach for Insider Threat Detection

Nimra Abbasi, Mohammed Al-Mhiqani, Hussain Al-Aqrabil, Samer Aoudi

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Insider threats pose critical risks to organisational security, yet existing detection methods face challenges related to privacy, class imbalance, and heterogeneous data distributions. Centralised approaches often compromise sensitive information, limiting cross-organisational collaboration. This paper introduces a privacy-aware insider threat detection approach based on federated learning (FL) with advanced feature engineering and differential privacy. The proposed approach employs a neural architecture with residual connections, multi-head attention, and focal loss to capture complex behavioral patterns from diverse sources, including email, logon activity, device usage, HTTP traffic, file operations, and psychometric data. Local Synthetic Minority Oversampling Technique (SMOTE) oversampling mitigates class imbalance, while behavioral clustering addresses data heterogeneity. Secure aggregation with differential privacy ensures configurable privacy-utility trade-offs. Experiments on the CERT dataset demonstrate that the proposed approach achieves high precision, recall, and F1-score, outperforming existing FL methods while maintaining fairness across clients and strong privacy guarantees.

Original languageEnglish
Title of host publication2025 10th International Conference on Information Technology Trends (ITT)
PublisherIEEE
Pages100-105
Number of pages6
Edition1st
ISBN (Electronic)9798331545758
ISBN (Print)9798331545765
DOIs
Publication statusPublished - 28 Jan 2026
Event10th International Conference on Information Technology Trends - Higher Colleges of Technology, Dubai, United Arab Emirates
Duration: 6 Nov 20257 Nov 2025
https://hct.ac.ae/en/events/10th-international-conference-on-information-technology-trends-itt-2025/

Conference

Conference10th International Conference on Information Technology Trends
Abbreviated titleITT 2025
Country/TerritoryUnited Arab Emirates
CityDubai
Period6/11/257/11/25
Internet address

Fingerprint

Dive into the research topics of 'A Privacy-Aware Federated Learning Approach for Insider Threat Detection'. Together they form a unique fingerprint.

Cite this