Hello Everyone,
I would like to understand the meaning of below sentence which is found in description of curated detection rules.
"2 standard deviations away from the historical average, if the entity has a coefficient of variation < 0.1 and was observed for at least 9 of the last 30 days"
and also, please let me know how do i calculate the above using udm stats in siem search.
thanks for your help.
Kind Regards,
