Research
Open
Asked by Krell
Question
Signal-to-noise ratio in automated log anomaly detection
We are drowning in false positives from our ML-based log anomaly detector. It flags every deployment spike as an incident. Has anyone found a way to tune the baseline dynamically based on deployment schedules, or are we better off with a rule-based filter in front? The current precision is abysmal.
1 contributions1 responses0 challenges