Overview
Architecture Overview
Deploy a complete log pipeline in your VPC via CloudFormation. CloudWatch logs flow through Firehose to S3 and OpenSearch with pattern detection, Athena SQL, and dashboards.
Architecture Overview
Subscription Editor
Dashboard
Pattern Detection
Log Processor is a production-ready, centralized log processing pipeline that deploys entirely within your AWS account via CloudFormation. Ingest CloudWatch logs through Firehose into S3, search with OpenSearch, and query with Athena SQL -- all without data leaving your VPC. The solution includes automated subscription management, configurable retention policies, pre-built OpenSearch dashboards, a web-based subscription editor with Cognito authentication, CloudWatch alarms, and a full monitoring dashboard. Deploy in minutes with a single CloudFormation stack -- no servers to manage, no external dependencies, and no data egress.
Protect sensitive data with 40+ built-in context-aware pattern detectors covering PHI, PII, financial, and credential categories. Automatically redact, filter, or tag sensitive fields per log stream, and add custom patterns instantly without redeployment. Advanced and Enterprise tiers include per-pattern CloudWatch metrics with category and severity dimensions for targeted alerting, plus automated compliance reports summarizing event volume, pattern detections, and top log groups -- delivered on a configurable schedule via SNS with secure S3 download links. Enterprise tier adds cross-account log ingestion and S3 access log replication from multiple AWS accounts into a single searchable pipeline.
Pricing starts at $29/month for datalake-only (Athena SQL queries at approximately $5/month AWS infrastructure cost), $149/month for Essential with OpenSearch and dashboards, $299/month for Advanced with dedicated masters and compliance reporting, and $599/month for Enterprise with cross-account ingestion, 6-node clusters, and 7-year retention defaults. All tiers run in isolated VPC subnets with KMS encryption and secure transport enforcement -- meeting network isolation requirements for FedRAMP, HIPAA, PCI-DSS, and SOC 2 compliance frameworks. AWS infrastructure costs are billed directly to your account separately from the software fee.
Highlights
- Deploy a complete log pipeline in minutes - CloudFormation stack with Firehose, S3, OpenSearch, Athena, dashboards, alarms, and retention policies. No data leaves your VPC.
- Detect, protect, and prove compliance - 40+ built-in patterns for PHI, PII, credentials, and SQL injection. Redact, filter, or tag per stream with custom patterns - no redeployment needed. Automated compliance reports, S3 access auditing, and isolated VPC subnets with KMS encryption meet FedRAMP, HIPAA, PCI-DSS, and SOC 2 requirements.
- Software fee only - no per-GB ingestion charges - Pay a flat monthly subscription regardless of log volume. AWS infrastructure costs are billed separately by AWS at standard rates.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/month |
|---|---|---|
Basic | Datalake + Athena SQL, pattern detection (tag mode), 90-day retention | $0.01 |
Essential | OpenSearch, dashboards, subscription editor, redact/filter, S3 access logging, KMS encryption | $0.01 |
Advanced | Dedicated masters, compliance reports, enhanced pattern metrics, email support (5 days) | $0.01 |
Enterprise | Cross-account ingestion, 6-node cluster, 7-year retention, email support (2 days), onboarding | $0.01 |
Vendor refund policy
No refunds. AWS infrastructure costs are billed directly by AWS. Software subscription can be cancelled at any time and access continues through the end of the current billing period. Data remains in your account after cancellation.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Basic and Essential tiers include documentation and GitHub-based support. Advanced tier adds email support with a 5 business day response time. Enterprise tier includes email support with a 2 business day response time, an onboarding call, and quarterly reviews. Visit perfware.cloud for up-to-date support details and documentation.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.