You shouldn't want a ticket to be created for every event log, that will be extremely noisy. But if you really want that... you can change the interval for how often the rule runs. But there is no high ranking SIEM tool out there that will create a new alarm for every event individual event that matches a SIEM Alarm rule. I wouldn't work in this industry if that how those tools worked.
But if you want that, then please look at the screenshot I prepared below.
And below is a example of how alienVault works and it is pretty much the same.

