Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailor the pre-packaged solution.
Find a file
AWSHurneyt 6760806aac
Fix bug when deleting detector with 0 rules. (#1648)
Signed-off-by: Thomas Hurney <hurneyt@amazon.com>
2026-02-27 13:14:54 -08:00
.github jdk upgrade to 25 and gradle upgrade to 9.2 (#1618) 2025-12-02 08:38:00 -08:00
build-tools maven content added in repositories.gradle (#1621) 2025-12-08 19:19:06 -08:00
checkstyle [Refactor] rebase to support latest core snapshot (#510) 2023-08-08 14:20:41 -07:00
formatter [Refactor] rebase to support latest core snapshot (#510) 2023-08-08 14:20:41 -07:00
gradle jdk upgrade to 25 and gradle upgrade to 9.2 (#1618) 2025-12-02 08:38:00 -08:00
release-notes [AUTO] Add release notes for 3.5.0 (#1642) (#1643) 2026-02-10 10:01:33 -08:00
scripts add build.sh to generate maven artifacts (#87) 2022-10-28 15:35:11 -07:00
src Fix bug when deleting detector with 0 rules. (#1648) 2026-02-27 13:14:54 -08:00
.codecov.yml Add Codecov workflow (#979) 2024-04-12 17:01:54 -07:00
.gitignore add skeleton for the security-analytics plugin (#3) 2022-06-08 11:41:09 -07:00
.whitesource Add .whitesource configuration file (#96) 2023-04-05 19:00:09 -07:00
build.gradle Increment version to 3.5.0-SNAPSHOT (#1627) 2026-01-22 12:19:23 -08:00
CODE_OF_CONDUCT.md Initial commit 2022-05-10 01:44:18 -04:00
CONTRIBUTING.md Initial commit 2022-05-10 01:44:18 -04:00
DEVELOPER_GUIDE.md Upgrade Lucene Codec to Lucene99 (#800) 2024-01-12 17:10:43 -08:00
gradlew Upgrade gradle to 8.14 and run CI with JDK 24 (#1560) 2025-07-23 14:01:30 -07:00
gradlew.bat Upgrade gradle to 8.14 and run CI with JDK 24 (#1560) 2025-07-23 14:01:30 -07:00
LICENSE Initial commit 2022-05-10 01:44:18 -04:00
MAINTAINERS.md Adding toepkerd to MAINTAINERS.md (#1585) 2025-10-01 09:38:40 -07:00
NOTICE Initial commit 2022-05-10 01:44:18 -04:00
README.md fix code coverage calculation (#980) 2024-05-08 18:33:28 -07:00
security-analytics-commons-1.0.0.jar Upgrade SA Commons JAR to netty 4.1.30.Final (#1638) 2026-01-29 15:59:16 -05:00
settings.gradle add skeleton for the security-analytics plugin (#3) 2022-06-08 11:41:09 -07:00

Test Workflow codecov Documentation Chat PRs welcome!

OpenSearch Security Analytics

The OpenSearch Security Analytics aims to enable you to run security operations by automating threat detection and threat analysis on your data. Security analytics plugin will include a threat detection engine that will be pre-loaded with a set of detection rules, that you can customize and extend to alert on standard or custom attack patterns.

Highlights

  • This open-source framework for analyzing the security events will address the cost and complexity associated with running the security operations on your business and infrastructure data.
  • It will enable you to monitor your data, generate findings and send alert notifications automatically to your stakeholders.
  • The security analytics dashboards will let you manage your threats, correlate events and take remediation actions.

Documentation

Please see our documentation [ToDo].

Contributing

See CONTRIBUTING for more information.

Code of Conduct

This project has adopted the Amazon Open Source Code of Conduct. For more information see the Code of Conduct FAQ, or contact opensource-codeofconduct@amazon.com with any additional questions or comments.

Security

If you discover a potential security issue in this project we ask that you notify AWS/Amazon Security via our vulnerability reporting page. Please do not create a public GitHub issue.

License

This project is licensed under the Apache-2.0 License.

Copyright OpenSearch Contributors. See NOTICE for details.