The objective of this presentation is to show an example of machine lerning algorithm to predict the total incident handle time for a Security Operation Center (SOC) ticketing dataset.
The total handle time for an incident is the sum of the time needed to create an incident, followup (transfer, escalate, close) and resolve the incident.
The dataset used for the analysis is a sample 2014 arcsight dataset for a major bank in Europe. All client related information and event description has been redacted for confidentiality purposes.