Alerting

SRE Burn rate based alerts

quahfamili
Path Finder

Hi all,

I m exploring to increase the efficiency of my systems' alerts. Was reading up on the Google SRE implementation of burn rate based alert. It is supposed to reduce the overall downtime by not scheduling (if by time-based, it will increase the error budget due to the wait time before alerts are fired) alert based on time but with a predetermined rate.

I must declare that after reading the pages a few times, I still cannot grasp the idea of the burn rate. Maybe someone here can enlighten me.

I m interested to see how this burn rate based alert can be implemented in splunk to increase the detection time.

Thanks in advance.

Regards,
Alan

0 Karma

woodcock
Esteemed Legend

How can we possibly help if you don't even post the links to the SRE material?

0 Karma

quahfamili
Path Finder
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...