SIEM detections false positive

@ danielsnelling I am changing the category from Kibana to SIEM so the SIEM team can pick up your question.