Security organizations have long faced challenges with deployment of security infrastructure that provides detection of attacks and attackers when performing initial configuration, tuning, and ongoing curation. It is resource-intensive to get a toolset to productivity, providing relevant alerting that is contextually meaningful in their environment. Efficiency in detection infrastructure can be expressed as its ability to consistently produce a low number of high impact security events with a...