Tuning Framework¶
The Tuning Framework is a custom framework built in Splunk to facilitate tuning detection rules to suppress false positives or adjust risk score for Risk Based Alerting.
Author: Donald Murchison
Last update: July 15, 2023
The Tuning Framework is a custom framework built in Splunk to facilitate tuning detection rules to suppress false positives or adjust risk score for Risk Based Alerting.
Author: Donald Murchison