[](https://www.paloaltonetworks.com/?ts=markdown) * [](https://www.paloaltonetworks.com/?ts=markdown) * Products Products AI Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg)](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [AI Security Platform](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Gateway](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) * [AI Model Security](https://www.paloaltonetworks.com/ai-security/ai-model-security?ts=markdown) * [AI Red Teaming](https://www.paloaltonetworks.com/ai-security/ai-red-teaming?ts=markdown) * [AI Runtime Security](https://www.paloaltonetworks.com/ai-security/ai-runtime-security?ts=markdown) * [Agent Security](https://www.paloaltonetworks.com/ai-security/agent-security?ts=markdown) * [AI Posture Management](https://www.paloaltonetworks.com/prisma/cloud/ai-spm?ts=markdown) Secure GenAI Tools * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) Network Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg)](https://www.paloaltonetworks.com/network-security?ts=markdown) [Secure the Network](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [Quantum Safe Security](https://www.paloaltonetworks.com/network-security/quantum-safe-security?ts=markdown) * [Next-Gen Trust Security](https://www.paloaltonetworks.com/network-security/next-gen-trust-security?ts=markdown) * [OT / Industrial Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [Device \& IoT Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Advanced IP Defense](https://www.paloaltonetworks.com/network-security/advanced-ip-defense?ts=markdown) SASE [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg)](https://www.paloaltonetworks.com/sase?ts=markdown) [Secure Access (SASE)](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma Access (ZTNA)](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) Security Operations [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg)](https://www.paloaltonetworks.com/cortex?ts=markdown) [Security Operations](https://www.paloaltonetworks.com/cortex?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Extended Detection \& Response](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Security Orchestration \& Automation](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Attack Surface Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Exposure Management](https://www.paloaltonetworks.com/cortex/exposure-management?ts=markdown) * [Email Security](https://www.paloaltonetworks.com/cortex/advanced-email-security?ts=markdown) * [Threat Intelligence Management](https://www.paloaltonetworks.com/cortex/threat-intel-management?ts=markdown) * [Agentic-first Automation](https://www.paloaltonetworks.com/cortex/agentix?ts=markdown) * [Identity Threat Detection and Response](https://www.paloaltonetworks.com/cortex/itdr?ts=markdown) [Endpoint Security](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Endpoint Protection](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Agentic Endpoint Security](https://www.paloaltonetworks.com/cortex/agentic-endpoint-security?ts=markdown) * [Ransomware Protection](https://www.paloaltonetworks.com/cortex/ransomware-protection?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/cortex/digital-forensics?ts=markdown) [Data Security](https://www.paloaltonetworks.com/cortex/data-security?ts=markdown) Cloud Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg)](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [Application Security Overview](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Application Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/application-security-posture-management?ts=markdown) * [Software Supply Chain Security](https://www.paloaltonetworks.com/cortex/cloud/software-supply-chain-security?ts=markdown) * [Infrasture-as-Code (IaC) Security](https://www.paloaltonetworks.com/cortex/cloud/infrastructure-as-code-security?ts=markdown) * [Software Composition Analysis](https://www.paloaltonetworks.com/cortex/cloud/software-composition-analysis?ts=markdown) * [Secrets Security](https://www.paloaltonetworks.com/cortex/cloud/secrets-security?ts=markdown) * [Open Partner Ecosystem](https://www.paloaltonetworks.com/cortex/cloud/appsec-partner-ecosystem?ts=markdown) [Cloud Posture Security Overview](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-security-posture-management?ts=markdown) * [Cloud Infrastructure Entitlement Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-infrastructure-entitlement-management?ts=markdown) * [Data Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/data-security-posture-management?ts=markdown) * [AI Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/ai-security-posture-management?ts=markdown) * [Vulnerability Management](https://www.paloaltonetworks.com/cortex/cloud/vulnerability-management?ts=markdown) * [Cloud Attack Surface Management](https://www.paloaltonetworks.com/cortex/cloud/attack-surface-management?ts=markdown) [Cloud Runtime Security Overview](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Cloud Detection and Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Container \& Kubernetes Security](https://www.paloaltonetworks.com/cortex/cloud/kubernetes-and-container-security?ts=markdown) * [Cloud Workload Protection](https://www.paloaltonetworks.com/cortex/cloud/cloud-workload-protection?ts=markdown) * [API Security](https://www.paloaltonetworks.com/cortex/cloud/api-security?ts=markdown) * [Serverless Security](https://www.paloaltonetworks.com/cortex/cloud/serverless-security?ts=markdown) Identity Security [![](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg)](https://www.paloaltonetworks.com/idira?ts=markdown) [Human Identities](https://www.paloaltonetworks.com/idira/human?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) [Machine Identities](https://www.paloaltonetworks.com/idira/machine?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) [See All Products](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [![Overview icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Overview](#products-panel-0) * [![AI Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-prisma-blue.svg) AI Security](#products-panel-1) * [![Network Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-strata.svg) Network Security](#products-panel-2) * [![SASE icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-prisma-blue.svg) SASE](#products-panel-3) * [![Security Operations icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Security Operations](#products-panel-4) * [![Cloud Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Cloud Security](#products-panel-5) * [![Identity Security icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-idira.svg) Identity Security](#products-panel-6) [See All Products](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) [![AI Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg) AI Security Discover, assess and protect AI apps, agents and employee use of GenAI tools](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [![Network Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg) Network Security AI-powered NetSec with next-gen firewalls, inline defense and unified management](https://www.paloaltonetworks.com/network-security?ts=markdown) [![Security Operations icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg) Security Operations Stop cyberattackers with the industry's premier platform for autonomous security operations](https://www.paloaltonetworks.com/cortex?ts=markdown) [![SASE icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg) SASE Protect with AI, secure AI use and operate with AI using agentic Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) [![Identity Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg) Identity Security Identity security platform to secure every identity: human, machine and agentic](https://www.paloaltonetworks.com/idira?ts=markdown) [![Cloud Security icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg) Cloud Security Prevent risks from code to cloud with the leading agentic cloud security platform](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [![AI Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-AIRS-logo-nav.svg)](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) [AI Security Platform](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Gateway](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) * [AI Model Security](https://www.paloaltonetworks.com/ai-security/ai-model-security?ts=markdown) * [AI Red Teaming](https://www.paloaltonetworks.com/ai-security/ai-red-teaming?ts=markdown) * [AI Runtime Security](https://www.paloaltonetworks.com/ai-security/ai-runtime-security?ts=markdown) * [Agent Security](https://www.paloaltonetworks.com/ai-security/agent-security?ts=markdown) * [AI Posture Management](https://www.paloaltonetworks.com/prisma/cloud/ai-spm?ts=markdown) Secure GenAI Tools * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) [![Network Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/strata-logo-nav.svg)](https://www.paloaltonetworks.com/network-security?ts=markdown) [Secure the Network](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [Quantum Safe Security](https://www.paloaltonetworks.com/network-security/quantum-safe-security?ts=markdown) * [Next-Gen Trust Security](https://www.paloaltonetworks.com/network-security/next-gen-trust-security?ts=markdown) * [OT / Industrial Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [Device \& IoT Security](https://www.paloaltonetworks.com/network-security/device-security?ts=markdown) * [5G Security](https://www.paloaltonetworks.com/network-security/5g-security?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) [Cloud-Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Advanced IP Defense](https://www.paloaltonetworks.com/network-security/advanced-ip-defense?ts=markdown) [![SASE logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/prisma-sase-logo-nav.svg)](https://www.paloaltonetworks.com/sase?ts=markdown) [Secure Access (SASE)](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma Access (ZTNA)](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) [![Security Operations logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-logo-nav.svg)](https://www.paloaltonetworks.com/cortex?ts=markdown) [Security Operations](https://www.paloaltonetworks.com/cortex?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Extended Detection \& Response](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Security Orchestration \& Automation](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Attack Surface Management](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Exposure Management](https://www.paloaltonetworks.com/cortex/exposure-management?ts=markdown) * [Email Security](https://www.paloaltonetworks.com/cortex/advanced-email-security?ts=markdown) * [Threat Intelligence Management](https://www.paloaltonetworks.com/cortex/threat-intel-management?ts=markdown) * [Agentic-first Automation](https://www.paloaltonetworks.com/cortex/agentix?ts=markdown) * [Identity Threat Detection and Response](https://www.paloaltonetworks.com/cortex/itdr?ts=markdown) [Endpoint Security](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Endpoint Protection](https://www.paloaltonetworks.com/cortex/endpoint-protection?ts=markdown) * [Agentic Endpoint Security](https://www.paloaltonetworks.com/cortex/agentic-endpoint-security?ts=markdown) * [Ransomware Protection](https://www.paloaltonetworks.com/cortex/ransomware-protection?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/cortex/digital-forensics?ts=markdown) [Data Security](https://www.paloaltonetworks.com/cortex/data-security?ts=markdown) [![Cloud Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/cortex-cloud-logo-nav.svg)](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [Application Security Overview](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Application Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/application-security-posture-management?ts=markdown) * [Software Supply Chain Security](https://www.paloaltonetworks.com/cortex/cloud/software-supply-chain-security?ts=markdown) * [Infrasture-as-Code (IaC) Security](https://www.paloaltonetworks.com/cortex/cloud/infrastructure-as-code-security?ts=markdown) * [Software Composition Analysis](https://www.paloaltonetworks.com/cortex/cloud/software-composition-analysis?ts=markdown) * [Secrets Security](https://www.paloaltonetworks.com/cortex/cloud/secrets-security?ts=markdown) * [Open Partner Ecosystem](https://www.paloaltonetworks.com/cortex/cloud/appsec-partner-ecosystem?ts=markdown) [Cloud Posture Security Overview](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-security-posture-management?ts=markdown) * [Cloud Infrastructure Entitlement Management](https://www.paloaltonetworks.com/cortex/cloud/cloud-infrastructure-entitlement-management?ts=markdown) * [Data Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/data-security-posture-management?ts=markdown) * [AI Security Posture Management](https://www.paloaltonetworks.com/cortex/cloud/ai-security-posture-management?ts=markdown) * [Vulnerability Management](https://www.paloaltonetworks.com/cortex/cloud/vulnerability-management?ts=markdown) * [Cloud Attack Surface Management](https://www.paloaltonetworks.com/cortex/cloud/attack-surface-management?ts=markdown) [Cloud Runtime Security Overview](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Cloud Detection and Response](https://www.paloaltonetworks.com/cortex/cloud-detection-and-response?ts=markdown) * [Container \& Kubernetes Security](https://www.paloaltonetworks.com/cortex/cloud/kubernetes-and-container-security?ts=markdown) * [Cloud Workload Protection](https://www.paloaltonetworks.com/cortex/cloud/cloud-workload-protection?ts=markdown) * [API Security](https://www.paloaltonetworks.com/cortex/cloud/api-security?ts=markdown) * [Serverless Security](https://www.paloaltonetworks.com/cortex/cloud/serverless-security?ts=markdown) [![Identity Security logo](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/idira-logo-nav.svg)](https://www.paloaltonetworks.com/idira?ts=markdown) [Human Identities](https://www.paloaltonetworks.com/idira/human?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) [Machine Identities](https://www.paloaltonetworks.com/idira/machine?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) * Solutions Solutions By Use Case [![Drive AI Transformation icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/ai-page/teaser-block/teaser-icon-2.svg) Drive AI Transformation Scale enterprise AI adoption across employees, applications and agents with confidence and control](https://www.paloaltonetworks.com/ai-security?ts=markdown) [![Secure the Hybrid Network icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-strata.svg) Secure the Hybrid Network Stay ahead of AI-driven attacks with unified network security across hybrid environments](https://www.paloaltonetworks.com/network-security?ts=markdown) [![Accelerate Cloud Transformation icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Accelerate Cloud Transformation Build fast and innovate fearlessly with AI-driven protection from code to cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) [![Secure AI Coding icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Secure AI Coding Let AI coding do more, with you in control. Protect data, govern agents and control AI costs](https://www.paloaltonetworks.com/secure-ai-coding?ts=markdown) [![Secure Every Identity icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-idira.svg) Secure Every Identity Stop identity-led breaches: Secure human, machine, and agentic identities with zero trust](https://www.paloaltonetworks.com/idira?ts=markdown) [![Enable Autonomous SOC icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-cortex.svg) Enable Autonomous SOC Fight AI with AI to stop threats at machine speed with the power of analytics and automation](https://www.paloaltonetworks.com/cortex/fight-ai-with-ai?ts=markdown) [![Secure Critical Infrastructure icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Secure Critical Infrastructure Stop machine-speed threats across OT, 5G and IoT with AI-driven cyber defense](https://www.paloaltonetworks.com/securing-critical-infrastructure?ts=markdown) [![Achieve Cyber Resilience icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/icon-Unit42.svg) Achieve Cyber Resilience Partner with world-class experts to proactively reduce risk, recover rapidly, and outsmart emerging threats](https://www.paloaltonetworks.com/unit42/ai-advantage?ts=markdown) * Services Services Security Services [![](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/unit-logo-dark.svg)](https://www.paloaltonetworks.com/unit42?ts=markdown) Prepare for Emerging Risks * [AI Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ai-security-assessment?ts=markdown) * [Frontier AI](https://www.paloaltonetworks.com/unit42/prepare-for-emerging-risks/continuous-frontier-ai-defense?ts=markdown) * [Respond to Cyber Attacks](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond/incident-response?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/unit42/respond/digital-forensics?ts=markdown) * [Managed Detection \& Response](https://www.paloaltonetworks.com/unit42/respond/managed-detection-response?ts=markdown) * [Managed Threat Hunting](https://www.paloaltonetworks.com/cortex/managed-threat-hunting?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Attack Surface Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/attack-surface-assessment?ts=markdown) * [Breach Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/breach-readiness-review?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/cloud-security-assessment?ts=markdown) * [Compromise Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/compromise-assessment?ts=markdown) * [Ransomware Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ransomware-readiness-assessment?ts=markdown) * [Supply Chain](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/supply-chain-risk-assessment?ts=markdown) * [Tabletop Exercises](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/tabletop-exercises?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Cyber Risk](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/cyber-risk-assessment?ts=markdown) * [IR Plan Development](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/IR-plan-and-development-review?ts=markdown) * [Security Program Design](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/security-program-design?ts=markdown) * [SOC Assessment](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/soc-assessment?ts=markdown) * [Virtual CISO](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/virtual-ciso?ts=markdown) * [Zero Trust](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/zero-trust-advisory?ts=markdown) Understand the Adversary * [Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Offensive Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/offensive-security-services?ts=markdown) Managed Firewalls Managed Firewalls * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) Customer Services [Global Customer Services](https://www.paloaltonetworks.com/services?ts=markdown) * [Education \& Training](https://www.paloaltonetworks.com/services/education?ts=markdown) * [Professional Services](https://www.paloaltonetworks.com/services/consulting?ts=markdown) * [Success Tools](https://www.paloaltonetworks.com/services/customer-success-tools?ts=markdown) * [Support Services](https://www.paloaltonetworks.com/services/solution-assurance?ts=markdown) * [Customer Success](https://www.paloaltonetworks.com/services/customer-success?ts=markdown) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) * [Services Overview](#services-panel-0) * [Security Services](#services-panel-1) * [Managed Firewalls](#services-panel-2) * [Customer Services](#services-panel-3) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) [![Security Services logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/unit-logo-dark.svg)](https://www.paloaltonetworks.com/unit42?ts=markdown) Prepare for Emerging Risks * [AI Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ai-security-assessment?ts=markdown) * [Frontier AI](https://www.paloaltonetworks.com/unit42/prepare-for-emerging-risks/continuous-frontier-ai-defense?ts=markdown) * [Respond to Cyber Attacks](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) * [Incident Response](https://www.paloaltonetworks.com/unit42/respond/incident-response?ts=markdown) * [Digital Forensics](https://www.paloaltonetworks.com/unit42/respond/digital-forensics?ts=markdown) * [Managed Detection \& Response](https://www.paloaltonetworks.com/unit42/respond/managed-detection-response?ts=markdown) * [Managed Threat Hunting](https://www.paloaltonetworks.com/cortex/managed-threat-hunting?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Attack Surface Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/attack-surface-assessment?ts=markdown) * [Breach Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/breach-readiness-review?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/cloud-security-assessment?ts=markdown) * [Compromise Assessment](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/compromise-assessment?ts=markdown) * [Ransomware Readiness](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/ransomware-readiness-assessment?ts=markdown) * [Supply Chain](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/supply-chain-risk-assessment?ts=markdown) * [Tabletop Exercises](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/tabletop-exercises?ts=markdown) * [Unit 42 Retainer](https://www.paloaltonetworks.com/unit42/retainer?ts=markdown) [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Cyber Risk](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/cyber-risk-assessment?ts=markdown) * [IR Plan Development](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/IR-plan-and-development-review?ts=markdown) * [Security Program Design](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/security-program-design?ts=markdown) * [SOC Assessment](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/soc-assessment?ts=markdown) * [Virtual CISO](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/virtual-ciso?ts=markdown) * [Zero Trust](https://www.paloaltonetworks.com/unit42/build-your-security-strategy/zero-trust-advisory?ts=markdown) Understand the Adversary * [Threat Intelligence](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Offensive Security](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses/offensive-security-services?ts=markdown) Managed Firewalls * [Managed Firewalls - AWS](https://www.paloaltonetworks.com/network-security/cloud-ngfw?ts=markdown) * [Managed Firewalls - Azure](https://www.paloaltonetworks.com/network-security/cloud-ngfw-for-azure?ts=markdown) [Global Customer Services](https://www.paloaltonetworks.com/services?ts=markdown) * [Education \& Training](https://www.paloaltonetworks.com/services/education?ts=markdown) * [Professional Services](https://www.paloaltonetworks.com/services/consulting?ts=markdown) * [Success Tools](https://www.paloaltonetworks.com/services/customer-success-tools?ts=markdown) * [Support Services](https://www.paloaltonetworks.com/services/solution-assurance?ts=markdown) * [Customer Success](https://www.paloaltonetworks.com/services/customer-success?ts=markdown) * Industries Industries [![Financial Services icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/financial-icon-2.svg) Financial Services Secure with AI cybersecurity, fraud and ransomware prevention, compliance, and customer data protection](https://www.paloaltonetworks.com/industry/financial-services?ts=markdown) [![Manufacturing icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/manufacturing-icon-2.svg) Manufacturing Secure with OT security, ransomware defense, industrial cybersecurity, supply chain resilience, and continuity](https://www.paloaltonetworks.com/industry/manufacturing?ts=markdown) [![Retail and Hospitality icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/retail-icon-2.svg) Retail and Hospitality Secure with payment security, PCI compliance, ransomware and fraud prevention, and data protection](https://www.paloaltonetworks.com/industry/retail?ts=markdown) [![Healthcare and Life Sciences icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/healthcare-icon-2.svg) Healthcare and Life Sciences Secure patient and clinical data, medical device security, ransomware defense, and HIPAA compliance](https://www.paloaltonetworks.com/industry/healthcare?ts=markdown) [![Public Sector icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/public-sector-icon-2.svg) Public Sector Secure with Zero Trust, cyber defense, compliance, infrastructure protection, and citizen data security](https://www.paloaltonetworks.com/industry/public-sector?ts=markdown) [![Utilities icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/utilities-icon-2.svg) Utilities Secure with power grid protection, OT network security, ransomware defense, and critical infrastructure security](https://www.paloaltonetworks.com/industry/electric-utilities?ts=markdown) [![Transportation icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/transportation-icon-2.svg) Transportation Secure OT and connected infrastructure protection, ransomware defense, supply chain security, compliance](https://www.paloaltonetworks.com/industry/transportation-security?ts=markdown) [![Small and Medium Business icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/smb-icon-2.svg) Small and Medium Business Secure against cyber threats using AI-powered endpoint, network, browser, cloud, and MDR](https://www.paloaltonetworks.com/industry/small-medium-business-portfolio?ts=markdown) * Partners Partners NextWave * [Partner Program](https://www.paloaltonetworks.com/partners/nextwave-partner-portal?ts=markdown) * [Become a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=becomepartner) * [Request Partner Portal Access](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerregistration?type=requestaccess) * [Partner Portal Login](https://www.paloaltonetworks.com/partners/nextwave-partner-portal?ts=markdown) * [Find a Partner](https://paloaltonetworks.my.site.com/NextWavePartnerProgram/s/partnerlocator) Partner Ecosystem [Explore All Partners Find the right partner network tailored to your business needs, cloud environments, and security requirements](https://www.paloaltonetworks.com/partners?ts=markdown) [Cloud Service Partners Bring cloud native security and compliance to the entire development lifecycle](https://www.paloaltonetworks.com/partners/nextwave-for-csp?ts=markdown) [Frontier AI Alliance Outpace today's cyberattacks through a global ecosystem of leaders orchestrating unified defenses](https://www.paloaltonetworks.com/frontier?ts=markdown) [Global System Integrators Speed and secure digital transformation with the industry's best technology, people and intelligence](https://www.paloaltonetworks.com/partners/nextwave-for-gsi?ts=markdown) [Managed Security Service Providers Gain valuable resource oversight to help your businesses administer security strategies](https://www.paloaltonetworks.com/partners/managed-security-service-providers?ts=markdown) [Resellers Deliver the most comprehensive cybersecurity portfolio while expanding opportunities and profitability](https://www.paloaltonetworks.com/partners/resellers?ts=markdown) [Service Providers Protect mobile users, devices and applications with effective, flexible and easy to deploy cybersecurity](https://www.paloaltonetworks.com/partners/service-providers?ts=markdown) [Technology Partners Advance security and transformation with innovative technology partner integrations](https://www.paloaltonetworks.com/partners/technology-partners?ts=markdown) * Resources Resources ![Learn icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/resource-library-icon.svg) Learn * [Resource Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Analyst Reports](https://www.paloaltonetworks.com/resources/research?ts=markdown) * [Customer Stories](https://www.paloaltonetworks.com/customers?ts=markdown) * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Threat Vector Podcast](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [Unit 42 Threat Research](https://unit42.paloaltonetworks.com/) * [Knowledgebase](https://knowledgebase.paloaltonetworks.com/) * [Technical Documentation](https://docs.paloaltonetworks.com/) ![Engage icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/engage-icon-2.svg) Engage * [Webinars](https://www.paloaltonetworks.com/resources/webinars?ts=markdown) * [Demos](https://www.paloaltonetworks.com/demos?ts=markdown) * [Test Drive](https://www.paloaltonetworks.com/resources/test-drives?ts=markdown) ![Connect icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/connect-icon-2.svg) Connect * [Executive Briefings](https://www.paloaltonetworks.com/about-us/executive-briefing-program?ts=markdown) * [Events](https://events.paloaltonetworks.com/) * [Live Community](https://live.paloaltonetworks.com/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) ![Discover icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/logos/nav/discover-icon-2.svg) Discover * [Why Palo Alto Networks?](https://www.paloaltonetworks.com/why-paloaltonetworks?ts=markdown) * [Platform Approach](https://www.paloaltonetworks.com/why-paloaltonetworks/platformization?ts=markdown) * [Awards \& Recognition](https://www.paloaltonetworks.com/about-us/awards?ts=markdown) * [Global Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown) * [Cloud Locations](https://www.paloaltonetworks.com/products/regional-cloud-locations?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Trust 360 Program](https://www.paloaltonetworks.com/resources/whitepapers/trust-360?ts=markdown) ![Company icon](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/logo-default-orange.svg) Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Management Team](https://www.paloaltonetworks.com/about-us/management?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en) * [Culture \& Benefits](https://jobs.paloaltonetworks.com/en/culture/) * [Ethics \& Compliance](https://www.paloaltonetworks.com/company/ethics-and-compliance?ts=markdown) * [Office Locations](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * ![search magnifying glass](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/search-black.svg) * us Language * USA (ENGLISH) * [AUSTRALIA (ENGLISH)](https://www.paloaltonetworks.com.au/cyberpedia/ai-observability-metrics) * [BRAZIL (PORTUGUÉS)](https://www.paloaltonetworks.com.br/cyberpedia/ai-observability-metrics) * [CANADA (ENGLISH)](https://www.paloaltonetworks.ca/cyberpedia/ai-observability-metrics) * [CHINA (简体中文)](https://www.paloaltonetworks.cn/cyberpedia/ai-observability-metrics) * [FRANCE (FRANÇAIS)](https://www.paloaltonetworks.fr/cyberpedia/ai-observability-metrics) * [GERMANY (DEUTSCH)](https://www.paloaltonetworks.de/cyberpedia/ai-observability-metrics) * [INDIA (ENGLISH)](https://www.paloaltonetworks.in/cyberpedia/ai-observability-metrics) * [ITALY (ITALIANO)](https://www.paloaltonetworks.it/cyberpedia/ai-observability-metrics) * [JAPAN (日本語)](https://www.paloaltonetworks.jp/cyberpedia/ai-observability-metrics) * [KOREA (한국어)](https://www.paloaltonetworks.co.kr/cyberpedia/ai-observability-metrics) * [LATIN AMERICA (ESPAÑOL)](https://www.paloaltonetworks.lat/cyberpedia/ai-observability-metrics) * [MEXICO (ESPAÑOL)](https://www.paloaltonetworks.com.mx/cyberpedia/ai-observability-metrics) * [SINGAPORE (ENGLISH)](https://www.paloaltonetworks.sg/cyberpedia/ai-observability-metrics) * [SPAIN (ESPAÑOL)](https://www.paloaltonetworks.es/cyberpedia/ai-observability-metrics) * [TAIWAN (繁體中文)](https://www.paloaltonetworks.tw/cyberpedia/ai-observability-metrics) * [UK (ENGLISH)](https://www.paloaltonetworks.co.uk/cyberpedia/ai-observability-metrics) * Accounts \& Support Accounts \& Support * Accounts * Customer * Partner * Employee * [Login to Download](https://www.paloaltonetworks.com/login?ts=markdown) * [Become a Member](https://www.paloaltonetworks.com/login?screenToRender=traditionalRegistration&ts=markdown) * Support * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [What's New](https://www.paloaltonetworks.com/resources?ts=markdown) * [Get Support](https://support.paloaltonetworks.com/SupportAccount/MyAccount) [Under Attack?](https://www.paloaltonetworks.com/unit42/contact-unit42?ts=markdown) * [Demos and Trials](https://www.paloaltonetworks.com/get-started?ts=markdown) [Discover how prevention starts before the attack at InterSECt 2026. Watch Now](https://www.paloaltonetworks.com/intersect?ts=markdown) [Prisma AIRS AI Gateway is now generally available](https://www.paloaltonetworks.com/ai-security/ai-gateway?ts=markdown) [](https://www.paloaltonetworks.com/?ts=markdown) Search All * [Tech Docs](https://docs.paloaltonetworks.com/search) Close search modal 1. [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) 2. [Observability](https://www.paloaltonetworks.com/cyberpedia/observability?ts=markdown) 3. [Observability Fundamentals](https://www.paloaltonetworks.com/cyberpedia/what-is-observability?ts=markdown) 4. [AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics?ts=markdown) Table of contents * [What Is Observability? Core Signals, Benefits, and Use Cases](https://www.paloaltonetworks.com/cyberpedia/what-is-observability?ts=markdown) * [Why Observability Matters](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#matters?ts=markdown) * [How Observability Works](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#works?ts=markdown) * [The Core Signals of Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#core?ts=markdown) * [Benefits of Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#benefits?ts=markdown) * [Common Observability Use Cases](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#usecase?ts=markdown) * [Observability vs. Security](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#security?ts=markdown) * [Common Observability Challenges](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#challenges?ts=markdown) * [What Makes a System Observable?](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#observable?ts=markdown) * [Observability in Cloud Native Environments](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#environments?ts=markdown) * [Observability FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-observability#page-anchor?ts=markdown) * [What Is High Cardinality in Observability?](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality?ts=markdown) * [High Cardinality Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#explained?ts=markdown) * [Why High Cardinality Matters in Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#observability?ts=markdown) * [Cardinality vs. Dimensionality](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#cardinality?ts=markdown) * [How High Cardinality Happens](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#happens?ts=markdown) * [The Impact of High Cardinality on Observability Systems](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#impact?ts=markdown) * [Example: How Cardinality Multiplies](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#multiplies?ts=markdown) * [How to Reduce High Cardinality](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#reduce?ts=markdown) * [Metrics vs. Logs vs. Traces for High-Cardinality Data](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#metrics?ts=markdown) * [Best Practices for Managing High Cardinality](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#practices?ts=markdown) * [Why High Cardinality Is a Governance Problem](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#governance?ts=markdown) * [FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality#faq?ts=markdown) * [What Is Cloud Native Observability?](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability?ts=markdown) * [Why Cloud Native Environments Require Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#why?ts=markdown) * [How Cloud Native Observability Works](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#native?ts=markdown) * [Cloud Native Observability and Kubernetes](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#kubernetes?ts=markdown) * [Benefits of Cloud Native Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#benefits?ts=markdown) * [Cloud Native Observability Best Practices](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#best?ts=markdown) * [How Palo Alto Networks Approaches Cloud Native Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#approaches?ts=markdown) * [Cloud Native Observability FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability#faqs?ts=markdown) * What Are AI Observability Metrics? Key KPIs \& Telemetry * [Why AI Systems Require Specialized Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#why?ts=markdown) * [Key Categories of AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#key?ts=markdown) * [How Logs, Metrics, and Traces Support AI Observability](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#logs?ts=markdown) * [How to Choose AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#choose?ts=markdown) * [Common AI Observability Metrics Mistakes](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#common?ts=markdown) * [AI observability metrics FAQs](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#faqs?ts=markdown) * [What Is a Service Level Objective (SLO)?](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo?ts=markdown) * [Service Level Objective (SLO) Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#slo?ts=markdown) * [The SRE Reliability Triad: SLI vs. SLO vs. SLA](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#sre?ts=markdown) * [The Role of Error Budgets in Managing Risk and Innovation](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#role?ts=markdown) * [Key Components of an Effective Service Level Objective](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#key?ts=markdown) * [How to Define and Implement SLOs Across Distributed Cloud Infrastructure](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#define?ts=markdown) * [Common Challenges When Implementing SLOs](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#challenges?ts=markdown) * [Service Level Objective (SLO) FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo#faqs?ts=markdown) * [What Is a Telemetry Pipeline?](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline?ts=markdown) * [Why are Telemetry Pipelines Important?](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#why?ts=markdown) * [How a Telemetry Pipeline Works](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#how?ts=markdown) * [What Data Moves Through a Telemetry Pipeline?](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#what?ts=markdown) * [Core Telemetry Pipeline Functions](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#core?ts=markdown) * [Telemetry Pipeline Architecture](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#pipeline?ts=markdown) * [Telemetry Pipelines and OpenTelemetry](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#telemetry?ts=markdown) * [Telemetry Pipeline vs. Observability Pipeline](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#vs?ts=markdown) * [Telemetry Pipeline Benefits](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#benefits?ts=markdown) * [Telemetry Pipeline Risks](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#risks?ts=markdown) * [Telemetry Pipeline Best Practices](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#best?ts=markdown) * [Telemetry Pipeline FAQs](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline#faqs?ts=markdown) * [What Is AI Observability? Benefits and How It Works](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability?ts=markdown) * [Why AI Systems Require New Observability](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#why?ts=markdown) * [AI Observability vs. AI Monitoring](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#ai?ts=markdown) * [Core AI Observability Signals](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#core?ts=markdown) * [Tracing AI Applications and Agents](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#tracing?ts=markdown) * [AI Observability, AI Security and AI Governance](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#governance?ts=markdown) * [AI for Observability vs. Observability for AI](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#vs?ts=markdown) * [AI Observability Best Practices](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#best?ts=markdown) * [Common AI Observability Challenges](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#common?ts=markdown) * [AI Observability FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability#faqs?ts=markdown) * [Logs vs. Metrics vs. Traces: Key Differences](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces?ts=markdown) * [Logs vs. Metrics vs. Traces at a Glance](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#logs?ts=markdown) * [What Are Logs?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#what?ts=markdown) * [What Are Metrics?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#metrics?ts=markdown) * [What Are Traces?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#traces?ts=markdown) * [How Do Logs, Metrics and Traces Work Together?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#how?ts=markdown) * [Logs vs. Metrics vs. Traces: Which Should You Use?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#use?ts=markdown) * [What Role Does OpenTelemetry Play?](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#role?ts=markdown) * [Benefits of Correlating Logs, Metrics and Traces](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#benefits?ts=markdown) * [Best Practices for Managing Logs, Metrics and Traces](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#best?ts=markdown) * [Logs vs. Metrics vs. Traces: Key Differences FAQs](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces#faqs?ts=markdown) * [What Is Distributed Tracing?](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing?ts=markdown) * [Why Distributed Tracing Matters](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#why?ts=markdown) * [How Distributed Tracing Works](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#how?ts=markdown) * [Core Components of a Trace](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#core?ts=markdown) * [Distributed Tracing with OpenTelemetry](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#distributed?ts=markdown) * [Sampling Strategies](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#sampling?ts=markdown) * [Distributed Tracing Use Cases](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#tracing?ts=markdown) * [Distributed Tracing Best Practices](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#best?ts=markdown) * [Distributed Tracing FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing#faqs?ts=markdown) * [What Are SRE Fundamentals: SLA vs SLO vs SLI?](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli?ts=markdown) * [SRE Fundamentals Explained](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#sre-fundamentals?ts=markdown) * [SLA vs. SLO vs. SLI: A Comparative Framework](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#sla-vs-slo?ts=markdown) * [Breaking Down the Components: SLI, SLO, and SLA](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#components?ts=markdown) * [The Strategic Role of Error Budgets in SRE](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#strategic-role?ts=markdown) * [Best Practices for Implementing SRE Metrics](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#best-practices?ts=markdown) * [SRE Fundamentals FAQs](https://www.paloaltonetworks.com/cyberpedia/sre-fundamentals-sla-vs-slo-vs-sli#faqs?ts=markdown) * [Observability vs. Monitoring: Key Differences](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences?ts=markdown) * [Observability vs. Monitoring Explained](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#explained?ts=markdown) * [Observability vs. Monitoring: Key Differences](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#differences?ts=markdown) * [Why Monitoring Alone Is No Longer Enough](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#why?ts=markdown) * [The Role of Telemetry in Observability](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#role?ts=markdown) * [Observability in Cloud Native and Kubernetes Environments](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#environments?ts=markdown) * [Observability and Security](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#security?ts=markdown) * [Observability for AI Systems](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#systems?ts=markdown) * [When to Use Monitoring](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#when?ts=markdown) * [When to Use Observability](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#use?ts=markdown) * [How Observability and Monitoring Work Together](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#how?ts=markdown) * [Benefits of Observability](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#benefits?ts=markdown) * [Challenges of Observability](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#challenges?ts=markdown) * [How to Build an Observability Strategy](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#strategy?ts=markdown) * [Observability vs. Monitoring FAQ](https://www.paloaltonetworks.com/cyberpedia/observability-vs-monitoring-key-differences#faqs?ts=markdown) * [What Is OpenTelemetry (OTel)?](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry?ts=markdown) * [OpenTelemetry Explained](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry#openTelemetry-explained?ts=markdown) * [The Three Pillars of OTel Signals](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry#the-three-pillars-of-OTel-signals?ts=markdown) * [Strategic Benefits and Advantages](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry#strategic-benefits-and-advantages?ts=markdown) * [Implementation Best Practices](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry#implementation-best-practices?ts=markdown) * [OpenTelemetry FAQs](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry#OpenTelemetry-faq?ts=markdown) # What Are AI Observability Metrics? 5 min. read Table of contents * * [Why AI Systems Require Specialized Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#why?ts=markdown) * [Key Categories of AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#key?ts=markdown) * [How Logs, Metrics, and Traces Support AI Observability](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#logs?ts=markdown) * [How to Choose AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#choose?ts=markdown) * [Common AI Observability Metrics Mistakes](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#common?ts=markdown) * [AI observability metrics FAQs](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#faqs?ts=markdown) 1. Why AI Systems Require Specialized Observability Metrics * * [Why AI Systems Require Specialized Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#why?ts=markdown) * [Key Categories of AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#key?ts=markdown) * [How Logs, Metrics, and Traces Support AI Observability](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#logs?ts=markdown) * [How to Choose AI Observability Metrics](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#choose?ts=markdown) * [Common AI Observability Metrics Mistakes](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#common?ts=markdown) * [AI observability metrics FAQs](https://www.paloaltonetworks.com/cyberpedia/ai-observability-metrics#faqs?ts=markdown) AI observability metrics are quantitative and qualitative data points used to track, measure, and analyze the performance, cost, safety, and operational health of artificial intelligence systems. These metrics evaluate non-deterministic generative models, retrieval pipelines, and autonomous agent workflows to detect drift, prevent hallucinations, optimize infrastructure costs, and enforce security guardrails across enterprise applications. Key Points * **Operational oversight**: Standardizes telemetry collection across non-deterministic systems to provide visibility into infrastructure latency, token economics, and API dependency health. \* **Semantic accuracy**: Evaluates output quality through groundedness, context relevance, and hallucination tracking to ensure large language models deliver reliable responses. \* **Cost optimization**: Measures token consumption and prompt-to-completion ratios to control operational expenses across public and private cloud deployments. \* **Security enforcement**: Tracks prompt injection attempt rates, policy refusals, and sensitive data leakage to maintain compliance and guardrail protection. \* **Workflow validation**: Monitors step execution success, tool call accuracy, and infinite loop conditions within multi-agent autonomous frameworks. ## Why AI Systems Require Specialized Observability Metrics Traditional [observability](https://www.paloaltonetworks.com/cyberpedia/what-is-observability?ts=markdown) focuses on the internal state of software and infrastructure through telemetry such as latency, resource utilization, errors and request volume. Those signals remain essential for AI applications, but they cannot determine whether a fluent response is accurate, a retrieval step found authoritative evidence or an autonomous agent selected an appropriate tool. AI systems are probabilistic and context dependent. The same model can produce different answers to similar prompts, while output quality may change when a prompt template, model version, knowledge base, safety policy or external API changes. Multi-step agents add more variability because they plan, call tools, maintain state and act across connected systems. As a result, [AI observability](https://www.paloaltonetworks.com/cyberpedia/what-is-ai-observability?ts=markdown) must connect conventional operational telemetry with model inputs and outputs, evaluation results, retrieval activity, tool calls, policy decisions and user outcomes. Metrics summarize those signals so teams can identify trends, set alerts and compare performance across releases. ## Key Categories of AI Observability Metrics | Category | What it measures | Example metrics | | Quality and task performance | Whether outputs are correct, relevant and useful for the intended task | Accuracy, groundedness, relevance, task success, human acceptance | | Reliability and availability | Whether the service completes requests consistently | Availability, error rate, timeout rate, fallback rate, retry rate | | Latency and throughput | How quickly and efficiently the system responds | Time to first token, end-to-end latency, tokens per second, requests per second | | Cost and resource use | How much each interaction and workflow consumes | Input/output tokens, cost per request, cost per successful task, GPU utilization | | Retrieval and grounding | Whether a RAG workflow finds and uses appropriate evidence | Recall at k, precision at k, context relevance, citation correctness | | Agent behavior | Whether an AI agent plans and acts effectively | Tool-call success, step count, loop rate, completion rate, human escalation | | Safety and security | Whether inputs, outputs and actions comply with policy | Prompt injection attempts, unsafe output rate, sensitive-data exposure, blocked-action rate | | Drift and change | Whether production behavior is moving away from a baseline | Input drift, output drift, quality trend, embedding drift, policy-violation trend | | User and business outcomes | Whether the AI system creates the intended value | Resolution rate, conversion, satisfaction, deflection, time saved | |------------------------------|------------------------------------------------------------------------|---------------------------------------------------------------------------------------------| ### AI Quality and Task Performance Metrics Quality metrics should reflect the job the AI system is expected to perform. A summarization assistant, fraud model, support chatbot and autonomous remediation agent do not share the same definition of a successful output. ### Accuracy and Task success Accuracy measures the proportion of predictions or responses that match a trusted reference or expected result. It works best when reliable ground truth exists. Task success is broader: it measures whether the application achieved the user's intended outcome, even when several valid responses are possible. ### Relevance and Completeness Relevance measures how directly an output addresses the prompt or task. Completeness measures whether it covers the required facts, steps or constraints. These metrics may come from deterministic checks, human review or carefully validated model-based evaluators. ### Groundedness and Factual Consistency Groundedness measures whether claims in an AI-generated response are supported by the provided context or an approved source. Factual consistency measures whether the output contradicts that evidence. These measures are particularly important for retrieval-augmented generation and high-consequence use cases. ### Human Acceptance and Correction Rate Human acceptance rate tracks how often reviewers or users accept an output without substantial revision. Correction rate measures how often people must edit, override or regenerate it. These signals can reveal practical quality gaps that automated scores miss, although they should be interpreted alongside user role, task complexity and review behavior. ### AI Reliability and Performance Metrics AI applications still depend on conventional service health. Operational failures can originate in the application, model provider, vector database, network, orchestration layer or a downstream tool. * **Availability**: The percentage of time the AI service is accessible and capable of serving valid requests. * **Error rate**: The percentage of requests that fail because of application errors, provider failures, invalid responses or downstream dependency errors. * **Timeout and retry rate**: How often requests exceed a time limit or must be attempted again. * **Time to first token**: The delay between a request and the first generated token, which strongly affects perceived responsiveness in streaming applications. * **End-to-end latency**: The total time from user request to completed result, including retrieval, model inference, tool use and postprocessing. * **Throughput**: The number of requests, tokens or completed workflows processed in a defined period. Percentile measurements such as p50, p95 and p99 are usually more informative than averages because they expose slow experiences that a mean can conceal. Teams should segment these metrics by model, route, prompt version, region and dependency. ### AI Cost and Efficiency Metrics AI costs can vary substantially by model, context length, output length and the number of steps in a workflow. Cost observability helps teams find waste without optimizing away quality. * **Input and output tokens**: The volume of tokens sent to and generated by a model. * **Cost per request**: The total model and supporting-service cost divided by request volume. * **Cost per successful task**: Total cost divided by the number of workflows that meet the success criteria. This is usually more meaningful than cost per call. * **Cache hit rate**: The proportion of eligible requests served from a prompt, response or retrieval cache. * **Resource utilization**: GPU, CPU, memory and accelerator usage for self-hosted or dedicated inference environments. Cost metrics should be paired with quality and outcome metrics. A lower-cost model is not more efficient if it creates more failed tasks, escalations or repeated requests. ### RAG and Retrieval Metrics Retrieval-augmented generation introduces a search stage before generation. An apparently weak model response may actually originate from incomplete indexing, poor chunking, an irrelevant query or outdated source material. * **Recall at k**: The share of relevant documents retrieved within the top k results. * **Precision at k**: The share of the top k retrieved documents that are relevant. * **Context relevance**: How well the retrieved passages address the user's question. * **Context coverage**: Whether the retrieved material contains the information required to answer completely. * **Citation correctness**: Whether citations support the claims to which they are attached. * **Retrieval latency**: The time required to search, rank and return context. * **Freshness**: The age or update status of the information used to ground a response. ### AI Agent Observability Metrics AI agents can plan, select tools, call APIs and take actions. Observing only the final response misses the decisions and dependencies that determine whether the workflow succeeded. * **Task completion rate**: The percentage of agent runs that meet the defined completion criteria. * **Tool-call success rate**: The percentage of tool calls that return a valid result and satisfy the step's purpose. * **Average steps per task**: The number of reasoning or action steps required to complete a workflow. * **Loop or repetition rate**: How frequently an agent repeats a step, tool call or plan without making progress. * **Plan adherence**: Whether the agent follows required procedures, ordering and constraints. * **Human escalation rate**: How often the workflow requires review, approval or takeover. * **Unauthorized or denied action rate**: How often the agent attempts an action that policy or permissions block. Agent metrics are most useful when linked to [distributed traces](https://www.paloaltonetworks.com/cyberpedia/what-is-distributed-tracing?ts=markdown) that show each model call, retrieval step, tool request, policy check and downstream response in sequence. ### AI Safety and Security Metrics Safety and security measurements help teams determine whether an AI application is being manipulated, exposing sensitive information or acting outside approved boundaries. They should cover both attempted attacks and the effectiveness of controls. * **Prompt injection attempt rate**: The frequency of inputs that attempt to override instructions, manipulate tools or expose protected context. * **Attack success rate**: The proportion of tested or observed attacks that bypass safeguards or produce an unauthorized outcome. * **Sensitive-data exposure rate**: How often prompts, retrieved context, model outputs or telemetry contain protected data that should not be present. * **Unsafe output rate**: The proportion of outputs that violate a defined content, legal, security or organizational policy. * **Blocked-action rate**: The percentage of attempted agent actions denied by policy enforcement. * **False-positive and false-negative rates**: How frequently a control blocks legitimate activity or fails to detect prohibited activity. A rising count of blocked attacks does not necessarily mean controls are failing; it may indicate more hostile traffic. Teams should evaluate attack volume, bypass rate, severity and control coverage together. ### Drift and Change Metrics Drift occurs when production data or behavior moves away from a reference baseline. It can result from changes in users, prompts, source data, model versions, policies or the environment. * **Input drift**: Changes in the topics, languages, formats or statistical properties of incoming requests. * **Output drift**: Changes in response length, structure, sentiment, refusal behavior, topic or other output characteristics. * **Quality drift**: A sustained decline in accuracy, groundedness, relevance or task success. * **Embedding or retrieval drift**: Changes in vector distributions or retrieval results that may affect grounding. * **Configuration drift**: Unapproved or inconsistent changes to models, prompts, policies, tools or evaluation settings. Drift is a diagnostic signal, not proof of harm. A measurable distribution change may be expected and harmless, while quality can decline without obvious input drift. Teams should validate drift alerts against evaluation and outcome data. ## How Logs, Metrics, and Traces Support AI Observability Metrics summarize behavior over time, but they rarely provide enough evidence for root-cause analysis. The broader [logs, metrics and traces](https://www.paloaltonetworks.com/cyberpedia/logs-vs-metrics-vs-traces?ts=markdown) model supplies complementary detail: * **Metrics** show trends and threshold breaches, such as rising p95 latency or falling task success. * **Logs** record discrete events, errors, policy decisions and relevant application context. * **Traces** connect the full path of a request across retrieval, model calls, tools and downstream services. AI telemetry often contains highly variable attributes such as conversation IDs, prompt templates, user identifiers, model versions and tool names. This [high-cardinality data](https://www.paloaltonetworks.com/cyberpedia/what-is-high-cardinality?ts=markdown) is valuable for investigation, but it can increase storage and query costs and may create privacy risk if unmanaged. To handle, clean, standardize, augment, and forward this telemetry prior to ingestion by analytics tools, organizations can utilize a [telemetry pipeline](https://www.paloaltonetworks.com/cyberpedia/telemetry-pipeline?ts=markdown). Standardized, vendor-agnostic collection of traces, logs, and metrics across applications is enabled by [OpenTelemetry](https://www.paloaltonetworks.com/cyberpedia/what-is-open-telemetry?ts=markdown), which has established widely adopted AI semantic conventions. ## How to Choose AI Observability Metrics The right metrics begin with the use case, not the dashboard. Teams should define the decision or action each metric supports. 1. **Define the intended outcome and failure modes.** Document what a successful task looks like, what can go wrong and which failures have the greatest user, operational or security impact. 2. **Select a balanced scorecard.** Include at least one measure for quality, reliability, latency, cost and safety. Add retrieval, agent and business metrics when those components apply. 3. **Establish a versioned baseline.** Measure expected behavior using representative production or evaluation data. Record the model, prompt, retrieval configuration, policy and dataset version behind the baseline. 4. **Segment the data.** Break results down by model version, use case, language, geography, customer tier, tool, knowledge source and release. Apply privacy and access controls to sensitive dimensions. 5. **Correlate metrics with traces and changes.** Attach trace identifiers and deployment metadata so investigators can move from an alert to the responsible model call, retrieval step, tool or configuration change. 6. **Set risk-based thresholds.** Use stricter targets and faster escalation for high-consequence actions. Alert on sustained changes and error-budget consumption where appropriate, not every small fluctuation. 7. **Validate evaluators.** Test automated and model-based evaluators against expert human judgment. Monitor evaluator drift, disagreement and bias rather than treating every score as ground truth. 8. **Review metrics as the system changes.** Reassess the framework when models, prompts, data, tools, policies or business goals change. ## Common AI Observability Metrics Mistakes * **Tracking only infrastructure health**: A service can be available and fast while producing low-quality or unsafe results. * **Relying on averages**: Averages hide tail latency and failures concentrated in a language, workflow or user segment. * **Using one score as a universal KPI**: A single composite score can conceal tradeoffs among quality, speed, safety and cost. * **Collecting prompts without governance**: Prompt and response telemetry may contain personal, confidential or regulated data. * **Ignoring versions and lineage**: Without model, prompt, policy and dataset versions, teams cannot attribute a change or reproduce a failure. * **Treating model-based evaluation as objective truth**: LLM judges can be inconsistent or biased and require calibration against human review. * **Measuring activity instead of outcomes**: More tokens, calls or automated steps do not necessarily mean the system delivers more value. ## AI observability metrics FAQs ### What is the difference between AI monitoring and AI observability metrics? AI monitoring uses predefined metrics and thresholds to track known conditions, such as latency or error rate. AI observability combines metrics with logs, traces, evaluations and context so teams can investigate unexpected behavior and determine why it occurred. ### What are the most important metrics for an LLM application? A practical starting set includes task success, groundedness or factual consistency, end-to-end latency, error rate, token cost per successful task, unsafe output rate and user outcome measures. RAG applications should add retrieval relevance and citation correctness; agents should add tool-call success, completion and loop rates. ### How do you measure hallucinations? There is no single universal hallucination metric. Teams commonly evaluate whether factual claims are supported by approved evidence, contradict reference material or introduce unsupported details. The method should use representative samples, clear rubrics and human validation for higher-risk use cases. ### What is the difference between AI metrics and AI traces? AI metrics aggregate measurements across requests and time periods. AI traces preserve the sequence and context of an individual interaction or workflow. Metrics reveal patterns; traces provide the detail needed to investigate a specific pattern or failure. ### How often should AI observability metrics be reviewed? Operational and security metrics may require real-time or near-real-time alerting. Quality, drift and business outcomes may be reviewed on a scheduled basis and around releases. Review frequency should reflect the application's rate of change, usage volume and consequence of failure. ### Can OpenTelemetry collect AI observability data? OpenTelemetry can instrument and export application metrics, logs and traces and can carry attributes for model and workflow activity. Organizations may still need AI-specific evaluations, governance controls and domain metrics beyond general telemetry. ![Share page on facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/facebook-circular-icon.svg) ![Share page on linkedin](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/linkedin-circular-icon.svg) [![Share page by an email](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/resources/email-circular-icon.svg)](mailto:?subject=What%20Are%20AI%20Observability%20Metrics%3F%20Key%20KPIs%20%26%20Telemetry&body=Discover%20the%20key%20AI%20observability%20metrics%20for%20tracking%20model%20performance%2C%20token%20economics%2C%20output%20quality%2C%20safety%20guardrails%2C%20and%20agentic%20workflows.%20at%20https%3A//www.paloaltonetworks.com/cyberpedia/ai-observability-metrics) Back to Top [Previous](https://www.paloaltonetworks.com/cyberpedia/what-is-cloud-native-observability?ts=markdown) What Is Cloud Native Observability? [Next](https://www.paloaltonetworks.com/cyberpedia/what-is-service-level-objective-slo?ts=markdown) What Is a Service Level Objective (SLO)? {#footer} Products and Services * [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown) * [Secure AI by Design](https://www.paloaltonetworks.com/ai-security?ts=markdown) * [Prisma AIRS](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown) * [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown) * [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown) * [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown) * [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown) * [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown) * [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown) * [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown) * [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown) * [Industrial OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown) * [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown) * [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown) * [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown) * [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown) * [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown) * [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown) * [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown) * [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown) * [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown) * [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown) * [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown) * [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown) * [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown) * [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown) * [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown) * [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown) * [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown) * [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown) * [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown) * [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown) * [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown) * [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown) * [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown) * [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown) * [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown) * [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown) * [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/unit42/respond/managed-detection-response?ts=markdown) * [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown) * [Next-Generation Identity Security](https://www.paloaltonetworks.com/idira?ts=markdown) * [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown) * [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown) * [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown) * [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown) * [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown) * [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown) * [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown) * [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown) * [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown) * [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown) * [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown) * [Prepare for Emerging Risks](https://www.paloaltonetworks.com/unit42/prepare-for-emerging-risks/continuous-frontier-ai-defense?ts=markdown) * [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown) * [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown) * [Understand the Adversary](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown) * [Respond to a Cyber Attack](https://www.paloaltonetworks.com/unit42/respond?ts=markdown) Company * [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown) * [Careers](https://jobs.paloaltonetworks.com/en/) * [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown) * [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown) * [Customers](https://www.paloaltonetworks.com/customers?ts=markdown) * [Investor Relations](https://investors.paloaltonetworks.com/) * [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown) * [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown) Popular Links * [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown) * [Communities](https://www.paloaltonetworks.com/communities?ts=markdown) * [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown) * [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown) * [Event Center](https://events.paloaltonetworks.com/) * [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center) * [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown) * [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown) * [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown) * [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown) * [Tech Docs](https://docs.paloaltonetworks.com/) * [Unit 42](https://unit42.paloaltonetworks.com/) * [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd) ![Palo Alto Networks Logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg) * [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) * [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown) * [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown) * [Documents](https://www.paloaltonetworks.com/legal?ts=markdown) Copyright © 2026 Palo Alto Networks. All Rights Reserved * [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks) * [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown) * [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/) * [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks) * [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks) * EN Select your language