Why AIOps Projects Fail
January 04, 2022

Yoram Pollack
BigPanda

Share this

AIOps is still relatively new compared to existing technologies such as enterprise data warehouses, and early on many AIOps projects suffered hiccups, the aftereffects of which are still felt today. That's why, for some IT Ops teams and leaders, the prospect of transforming their IT operations using AIOps is a cause for concern.

But at the same time, AIOps has matured enough to a point where a critical mass of enterprises today — including some of the largest companies in the world — have successfully deployed it, and have learned valuable lessons along the way. Mainly, it's a matter of setting clear expectations and following several guidelines that help you avoid common pitfalls when setting out on an AIOps journey.

Set Your Expectations Straight

Yes, we all know the saying "Aim for the moon, and even if you miss you'll land among the stars."

But unfortunately this doesn't apply to AIOps adoption … As Gartner states in its recent Market Guide for AIOps Platforms — enterprises should "prioritize practical outcomes over aspirational goals by adopting an incremental approach…" when deploying AIOps platforms.

Biting off more than you can chew can delay your AIOps project — often by months or even years. Start small, where it hurts the most in your IT operations ecosystem, or what causes the most delays to your incident management lifecycle. Do so by integrating one tool at time, and testing one AIOps capability at a time. Once you are satisfied, you can incrementally add more tools to the AIOps platform, and then test more capabilities. In addition to making sure that your AIOps platform has proven itself before you begin to fully rely on it, this step-by-step approach also gives your team the chance to accumulate the skills and confidence they need, over time.

Additionally, remember that there is a tendency to think that AI behaves in a human-like manner. And so, it is often anthropomorphized and thought to have unrealistic "superhuman" capabilities. The reality is that AI in IT operations is algorithmic, and relies on alert ingestion, normalization and enrichment (or tagging), before correlation patterns can be generated, tested and refined. Which leads us to the next items on our list.

Make Sure You Can Integrate with All Your Existing Tools

Every enterprise uses and depends on several different tools that span different domains such as observability and monitoring, change, topology, collaboration and remediation. In almost all cases, these tools reflect years of investment, development and customization. Often these tools are deeply embedded into critical IT operations workflows and processes — and reflect the organization's tribal knowledge.

Your chosen AIOps platform needs to be able to integrate with these tools and ingest their data. Otherwise, vital information and key capabilities needed for the AI to work properly will be missing. And that's besides the fact that a long and painful long rip-and-replace project can easily derail a project just by the sheer amount of effort and long time to value.

You Need to Be Able to Adequately Prepare and Cleanse Your Data

"Garbage in, garbage out" is a well-known maxim in IT, and it applies to IT operations as well. As we just mentioned, it's critical to ingest all the alerts from all your tools. But it's not enough. Event normalization, enrichment and tagging (aka data preparation and cleansing) also have an outsized impact on the success of AIOps solutions.

Why? Because AIOps tools have to correlate the hundreds of thousands of ingested alerts into a small number of high-quality, actionable incidents. The ability of AI/ML to detect correlation patterns and "compress" alerts relies heavily on the quality of the data fed to it. Context-less data leads to limited, low-quality incidents as a result of weak correlation.

In a similar fashion, successful root cause analysis relies on the ability to understand and leverage the different dependencies between infrastructure and application components in modern environments. Some of this information is buried in incoming alert streams, and some of this information is contained in external data sources such as asset and inventory management systems, orchestration tools, APM service or flow maps, CMDBs and more.

Additionally — you need to be able to match incidents to problem changes (aka root cause changes) that are causing incidents and outages, and this information resides in a variety of tools such as CI/CD, Change Management, and more.

Your AIOps platform must deliver built-in normalization, enrichment and tagging that can add all this much-needed context at scale, and be able to process millions of IT alerts every day.

Your AI/ML Need to Be Explainable

Good data going into your AIOps platform will get you good results, and successfully leveraging your existing tribal knowledge to train and configure the AI will definitely benefit you. But, you also have to be able to see, understand and edit the correlation logic as the AI/ML trains itself. Unfortunately, some solutions still obscure it and do not provide adequate control and testability. This is one of the most common causes of AIOps failure.

Google spam filters are a good analogy. Google provides a baseline configuration that's very sophisticated at detecting spam. But it does give you the choice of classifying something as spam on your own, or removing the spam tag from a wrongly detected email. It provides an explanation of its decision, and then learns from your intervention moving forward.

The same is true for AI/ML in IT Ops. Your teams have to trust the results your AIOps tool is producing, and that trust comes from explainability. They need to understand why the AI correlated certain alerts together, and they must then have the ability to either accept or change the correlation pattern so it produces the desired result. Remember, you can have the best AI in the world, but if your teams don't understand why it's grouping certain alerts together (and why it's not grouping others) they are going to always be suspicious of the results even when they are correct, and eventually avoid using the ML.

Your AIOps Needs to Be Democratized

Today's enterprises are heterogeneous. Some have large, centralized IT Ops and NOC teams, whereas others have dozens or even hundreds of distributed DevOps and SRE teams. Some have "grown up" in the cloud, while others are mid-way or even just getting started with their modernization initiatives. In each of these enterprises there are many important stakeholders that can benefit from AIOps: from NOC Managers and L1 users to VPs of IT Ops to service owners to the heads of BUs and CIOs.

AIOps platforms must be accessible and be able to present their data, views and dashboards to every persona in your organization, no matter which type of enterprise you belong to. Additionally, the platform cannot be reliant on data scientists, configuration cannot depend on 3rd party consultants and product experts, and the admin overhead needs to be minimal.

Only then, can you realize the full potential of your AIOps investment.

Yoram Pollack is Director of Product Marketing at BigPanda
Share this

The Latest

April 25, 2024

The use of hybrid multicloud models is forecasted to double over the next one to three years as IT decision makers are facing new pressures to modernize IT infrastructures because of drivers like AI, security, and sustainability, according to the Enterprise Cloud Index (ECI) report from Nutanix ...

April 24, 2024

Over the last 20 years Digital Employee Experience has become a necessity for companies committed to digital transformation and improving IT experiences. In fact, by 2025, more than 50% of IT organizations will use digital employee experience to prioritize and measure digital initiative success ...

April 23, 2024

While most companies are now deploying cloud-based technologies, the 2024 Secure Cloud Networking Field Report from Aviatrix found that there is a silent struggle to maximize value from those investments. Many of the challenges organizations have faced over the past several years have evolved, but continue today ...

April 22, 2024

In our latest research, Cisco's The App Attention Index 2023: Beware the Application Generation, 62% of consumers report their expectations for digital experiences are far higher than they were two years ago, and 64% state they are less forgiving of poor digital services than they were just 12 months ago ...

April 19, 2024

In MEAN TIME TO INSIGHT Episode 5, Shamus McGillicuddy, VP of Research, Network Infrastructure and Operations, at EMA discusses the network source of truth ...

April 18, 2024

A vast majority (89%) of organizations have rapidly expanded their technology in the past few years and three quarters (76%) say it's brought with it increased "chaos" that they have to manage, according to Situation Report 2024: Managing Technology Chaos from Software AG ...

April 17, 2024

In 2024 the number one challenge facing IT teams is a lack of skilled workers, and many are turning to automation as an answer, according to IT Trends: 2024 Industry Report ...

April 16, 2024

Organizations are continuing to embrace multicloud environments and cloud-native architectures to enable rapid transformation and deliver secure innovation. However, despite the speed, scale, and agility enabled by these modern cloud ecosystems, organizations are struggling to manage the explosion of data they create, according to The state of observability 2024: Overcoming complexity through AI-driven analytics and automation strategies, a report from Dynatrace ...

April 15, 2024

Organizations recognize the value of observability, but only 10% of them are actually practicing full observability of their applications and infrastructure. This is among the key findings from the recently completed Logz.io 2024 Observability Pulse Survey and Report ...

April 11, 2024

Businesses must adopt a comprehensive Internet Performance Monitoring (IPM) strategy, says Enterprise Management Associates (EMA), a leading IT analyst research firm. This strategy is crucial to bridge the significant observability gap within today's complex IT infrastructures. The recommendation is particularly timely, given that 99% of enterprises are expanding their use of the Internet as a primary connectivity conduit while facing challenges due to the inefficiency of multiple, disjointed monitoring tools, according to Modern Enterprises Must Boost Observability with Internet Performance Monitoring, a new report from EMA and Catchpoint ...