Notifications
Clear all
Elastic Security Reviews
1
Posts
1
Users
0
Reactions
34
Views
Topic starter
20/07/2026 8:23 am
I'm looking into setting up anomaly detection for our Okta logs with Elastic Security. We're already ingesting the logs, but I haven't used the ML features before.
I found a few older guides, but I'm cautious about the steps. For someone new to this, is it really feasible to get a basic detection job running in under 30 minutes? My main concerns are picking the right fields to analyze and not overwhelming our cluster. What are the key pitfalls in the initial job configuration?