Listing Thumbnail

    CyberCX Amazon Security Lake – Security Data

     Info
    Sold by: CyberCX 
    CyberCX AWS Security Lake is a fully managed security data lake solution that centralises and normalises security log and event data from AWS services, third-party sources, and on-premises environments. It enables real-time threat detection, incident response, and compliance reporting through seamless integration with SIEM platforms like Splunk.

    Overview

    CyberCX delivers a robust customised AWS Security Lake implementation leveraging native AWS capabilities to automatically centralise and normalise security data from AWS services (e.g., CloudTrail, VPC Flow Logs, Config), SaaS platforms, and on-premises sources. The solution uses Infrastructure as Code (IaC) such as Terraform, Cloudformation, ensuring consistent and automated deployments. Logs are ingested in the Open Cybersecurity Schema Framework (OCSF) format, enabling interoperability across analytics tools. Integration with SIEM tools like Splunk enhances threat visibility and response capabilities. This service aligns with regulatory requirements and includes optional CyberCX Managed Services for ongoing operational support.

    Amazon Security Lake can collect logs and events from the following natively supported AWS services:

    • AWS CloudTrail management and data events (S3, Lambda)
    • Amazon Elastic Kubernetes Service (Amazon EKS) Audit Logs
    • Amazon Route 53 resolver query logs
    • AWS Security Hub findings
    • Amazon Virtual Private Cloud (Amazon VPC) Flow Logs
    • AWS WAFv2 logs

    Amazon Security Lake can collect logs and events from third-party custom sources. A Security Lake custom source is a third-party service that sends security logs and events to Amazon Security Lake. Before sending the data, the custom source must convert the logs and events to the Open Cybersecurity Schema Framework (OCSF) and meet the source requirements for Security Lake including partitioning, parquet file format and object size and rate requirements.

    Highlights

    • Supports ingestion from AWS native services and third-party sources using OCSF, enabling unified analytics and compliance reporting.
    • Includes Infrastructure as Code automation for scalable deployment and integration with SIEM tools such as Splunk for advanced threat detection and response.
    • Delivered by CyberCX, a Premier Tier AWS Partner with Security and Government Competencies and Authority to Operate designation in APAC.

    Details

    Sold by

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    The CyberCX AWS Support Service provides 24/7 assistance from our team of skilled support consultants.

    Contact us on: NZ Phone: +64 800 467 046 AU Phone: +61 1800 531 942 Email: aws-sales@cybercx.com  Contact Us: