Request for Instrumentation of new Secure Metrics

Background

Below is a list of metrics related to DevSecOps that require instrumentation, compiled by various stakeholders in the Customer Success org (CS Leaders, TAMs, CSOps) as part of this Epic (gitlab-com&1411). These metrics will allow us to provide valuable insights into a customer's usage of specific features, to improve the overall adoption of stages and additional use cases.

Metric to Instrument Definition/Purpose Metric Type Timeframe
MR manual overwrite? by category (low/medium) This is to understand how many findings/vulnerabilities are accepted. For customer success, this would indicate the need of further enablement and optimization. Event-based 28d
Number of Issues and MRs opened by identified vulnerability How many Issues & MRs have been created based on a found vulnerability? Helps to understand customer workflow maturity Event-based 28d
Using auto-remediation feature to be more efficient To measure the use of auto DevOps Event-based 28d
secure.vulnerability_management_jira_integration Projects with Jira / Vulnerability Management integration enabled Event-based 28d
secure.user_vulnerability_management_project_security_dashboard Views of project-level Security Dashboards User-based 28d
secure.user_vulnerability_management_project_vulnerabilitiy_report Views of project-level Vulnerability Reports User-based 28d
secure.user_vulnerability_management_vulnerability_detail Views of vulnerability details pages User-based 28d
secure.user_vulnerability_management_group_security_dashboard Views of group-level Security Dashboards User-based 28d
secure.user_vulnerability_management_group_vulnerability_report Views of group-level Vulnerability Reports User-based 28d
secure.user_vulnerability_management_security_center_dashboard Views of Security Center Dashboards User-based 28d
secure.user_vulnerability_management_security_center_vulnerability_report Views of Security Center Vulnerability Reports User-based 28d
secure.user_vulnerability_management_security_center_settings Views of Security Center Settings User-based 28d
secure.user_vulnerability_management_group_pipeline_security Views of pipeline Security tabs User-based 28d
secure.user_vulnerability_management_mr_security_expand Interactions with MR security widget by expanding results User-based 28d
secure.user_vulnerability_management_mr_report_download Downloads of scanner security reports from the non-Ultimate MR security widget User-based 28d

Metrics to Instrument Tracker - https://docs.google.com/spreadsheets/d/1lhzy2A-35gkPb0E5YXEj1a2mv88mB1bkCZV_FSIHmxs/edit#gid=1544952564

Edited by Thiago Figueiró