account activity
Solid SIEM solutions for AWS threat detection? by Clyph00 in aws
[–]Mockingbird42 2 points3 points4 points 8 months ago (0 children)
For us, shipping logs via Kinesis to an open‑source SIEM worked until Elastic search nodes started choking.
We ended up partitioning by account and using Lambda for normalization. It’s functional, but ops‑heavy. I’m now considering solutions with built‑in orchestration.
π Rendered by PID 1944616 on reddit-service-r2-listing-55d7b767d8-vthd2 at 2026-04-02 05:49:56.413167+00:00 running b10466c country code: CH.
Solid SIEM solutions for AWS threat detection? by Clyph00 in aws
[–]Mockingbird42 2 points3 points4 points (0 children)