From best practice perspective, how many incidents per Endpoint or per user would be acceptable within an enterprise?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ā01-20-2022 03:10 PM
Hi ALL,
it's always good to know what goal are we aiming to achieve, having said that and from best practice perspective,
I wonder how many incidents per Endpoint or per user would be acceptable within an enterprise according to technology standards, apparently we can't get to zero incidents.
so for example if we have an enterprise with 18K PCs, and 18K End-users would be having 1000 INCs/month an ideal or accepted percentage.
Thank you!
- Labels:
-
Benchmarks

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ā01-20-2022 11:08 PM
Hi Walid,
this is quite hard question to answer, there are way to many variables to consider.
If I am not mistaken in my previous company we similar number for half users so your numbers look quite ok to me.
What may affect total numbers of INC
- lots of users do not know the difference between request and incidents and they simply raise an incident if they want something
- do you give users the opportunity to reopen incident or they raise a new one
- do you review the incidents as part of continual service improvement and action accordingly? e.g. write new KB articles, focus on configuration items most frequently malfunctioning?
- is your IT team sized accordingly to handle the incidents
For some the 1000 INCs may be ok as they are all P3, P4, for some if e.g. 20% are P1 this is a serious issue.
So I wouldn't focus on the number of incidents but on
- end user satisfaction with response/resolution time
- any other SLAs you have defined
- workload of the IT team
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ā01-21-2022 07:37 PM
Jency,
this is so helpful thank you, let me answer your questions
- Most of our users know the difference between request and incidents.
- users can reopen incident.
- we review the incidents as part of continual service improvement and action accordingly.
- our IT team sized accordingly to handle the incidents.
- INCs are all P3, P4, that I'm talking about here.
The thing is that IT managers want to know how low INCs can go according to #'s of endpoints or End-users, lets say in typical month (no major problems, no critical/major INCs like P1 etc.).
I couldn't find anything on the web to at least define a standard.
I agree with you it's hard, I thought I might get precise answer š
you mentioned your previous company, what about current one, are your current numbers better than ours LOL :))
- Automatic detection
- Afrikaans
- Albanian
- Amharic
- Arabic
- Armenian
- Azerbaijani
- Basque
- Belarusian
- Bengali
- Bosnian
- Bulgarian
- Catalan
- Cebuano
- Chichewa
- Corsican
- Croatian
- Czech
- Danish
- Dutch
- English
- English (USA)
- Esperanto
- Estonian
- Filipino
- Finnish
- French
- Frisian
- Galician
- Georgian
- German
- Greek
- Gujarati
- Haitian Creole
- Hausa
- Hawaiian
- Hebrew
- Hindi
- Hmong
- Hungarian
- Icelandic
- Igbo
- Indonesian
- Irish
- Italian
- Japanese
- Javanese
- Kannada
- Kazakh
- Khmer
- Korean
- Kurdish (Kurmanji)
- Kyrgyz
- Lao
- Latin
- Latvian
- Lithuanian
- Luxembourgish
- Macedonian
- Malagasy
- Malay
- Malayalam
- Maltese
- Maori
- Marathi
- Mongolian
- Myanmar (Burmese)
- Nepali
- Norwegian
- Pashto
- Persian
- Polish
- Portuguese
- Punjabi
- Romanian
- Russian
- Samoan
- Scots Gaelic
- Serbian
- Sesotho
- Shona
- Simplified Chinese
- Sindhi
- Sinhala
- Slovak
- Slovenian
- Somali
- Spanish
- Sundanese
- Swahili
- Swedish
- Tajik
- Tamil
- Telugu
- Thai
- Traditional Chinese
- Turkish
- Ukrainian
- Urdu
- Uzbek
- Vietnamese
- Welsh
- Xhosa
- Yiddish
- Yoruba
- Zulu
- Afrikaans
- Albanian
- Amharic
- Arabic
- Armenian
- Azerbaijani
- Basque
- Belarusian
- Bengali
- Bosnian
- Bulgarian
- Catalan
- Cebuano
- Chichewa
- Corsican
- Croatian
- Czech
- Danish
- Dutch
- English
- English (USA)
- Esperanto
- Estonian
- Filipino
- Finnish
- French
- Frisian
- Galician
- Georgian
- German
- Greek
- Gujarati
- Haitian Creole
- Hausa
- Hawaiian
- Hebrew
- Hindi
- Hmong
- Hungarian
- Icelandic
- Igbo
- Indonesian
- Irish
- Italian
- Japanese
- Javanese
- Kannada
- Kazakh
- Khmer
- Korean
- Kurdish (Kurmanji)
- Kyrgyz
- Lao
- Latin
- Latvian
- Lithuanian
- Luxembourgish
- Macedonian
- Malagasy
- Malay
- Malayalam
- Maltese
- Maori
- Marathi
- Mongolian
- Myanmar (Burmese)
- Nepali
- Norwegian
- Pashto
- Persian
- Polish
- Portuguese
- Punjabi
- Romanian
- Russian
- Samoan
- Scots Gaelic
- Serbian
- Sesotho
- Shona
- Simplified Chinese
- Sindhi
- Sinhala
- Slovak
- Slovenian
- Somali
- Spanish
- Sundanese
- Swahili
- Swedish
- Tajik
- Tamil
- Telugu
- Thai
- Traditional Chinese
- Turkish
- Ukrainian
- Urdu
- Uzbek
- Vietnamese
- Welsh
- Xhosa
- Yiddish
- Yoruba
- Zulu
- Add to Phrasebook
- No word lists for English ā Arabic...
- Create a new word list...
- No word lists for English ā Arabic...
- Copy

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ā03-14-2023 04:45 PM
Hello Walid,
You may find Benchmarks helpful. It allows you to compare your instance to other organizations of varying sizes as well as industries. There are quite a few incident related metrics out there but I think "Number of incidents created per user" may get you down the right track.