---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Create an alert clustering definition

# Create an alert clustering definition {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Define alert clustering conditions to trigger one or more alert clustering tags, which help create alert groups from fewer alerts. Creating alert groups from fewer alerts reduces noise, making it easier to identify critical
incidents, prioritize responses, and manage issues effectively.

## Before you begin

Role required: evt_mgmt_admin

## About this task

To create a tag def users need to use filter to define on which alerts the definition will apply and define a grouping criteria by specifying which field values
should be compared to create a group.

## Procedure

1. Navigate to AllEvent ManagementTag Based Alert Clustering EngineAlert Clustering Definitions.
2. Select New.
3. Configure the fields on the [Event Management tag based alert clustering definition form](https://servicenow-prod.fluidtopics.net/9ribopB2yx~HwN5Q7tmU6w "The form for creating or modifying a tag based alert clustering definition displays detailed information about the definition.").
4. Select Save.

## Result

The definition appears in the Tag Based Alert Clustering Definitions table and Service Operations Workspace (ITOM) \> Grouping automation. Alert groups created by this definition are categorized as Tag Cluster
groups.

*[\>]: and then


