当前位置: 首页 > 软件库 > 云计算 > Serverless 系统 >

streamalert

授权协议 Apache-2.0 License
开发语言 JavaScript
所属分类 云计算、 Serverless 系统
软件类型 开源软件
地区 不详
投 递 者 吕博耘
操作系统 跨平台
开源组织
适用人群 未知
 软件概览

StreamAlert - Serverless, Realtime Data Analysis Framework

StreamAlert is a serverless, real-time data analysis framework which empowers you to ingest, analyze,and alert on data from any environment, using data sources and alerting logic you define. Computersecurity teams use StreamAlert to scan terabytes of log data every day for incident detection andresponse.

Features

  • Rules are written in Python; they can utilize any Python libraries or functions
  • Ingested logs and generated alerts can be retroactively searched for compliance and research
  • Serverless design is cheaper, easier to maintain, and scales to terabytes per day
  • Deployment is automated: simple, safe and repeatable for any AWS account
  • Secure by design: least-privilege execution, containerized analysis, and encrypted data storage
  • Merge similar alerts and automatically promote new rules if they are not too noisy
  • Built-in support for dozens of log types and schemas
  • Built-in collection of broadly applicable community rules
  • Fully open source and customizable: add your own log schemas, rules, and alert outputs

Ready? Let's get started!

Resources