Security Analytics enables users for detecting security threats on their security event log data. It will also allow them to modify/tailor the pre-packaged solution.
Find a file
2026-09-10 11:29:46 -04:00
.github Bump 1password/load-secrets-action to v5.0.1 (security-analytics) (#1793) 2026-08-20 15:04:51 -04:00
build-tools Add ci.opensearch.org/m2/ mirror for plugin resolution (security-analytics) (#1751) (#1754) 2026-07-31 17:41:40 -04:00
checkstyle [Refactor] rebase to support latest core snapshot (#510) 2023-08-08 14:20:41 -07:00
formatter [Refactor] rebase to support latest core snapshot (#510) 2023-08-08 14:20:41 -07:00
gradle Guard eclipse() to spotless tasks and keep P2 mirror on pinned version (security-analytics) (#1805) 2026-09-10 11:29:46 -04:00
release-notes Add release notes for 3.8.0 (#1748) 2026-07-28 16:55:13 -07:00
scripts add build.sh to generate maven artifacts (#87) 2022-10-28 15:35:11 -07:00
src Onboards security-analytics plugin to centralized resource authz (#1735) 2026-08-19 13:52:14 -07:00
.codecov.yml Add Codecov workflow (#979) 2024-04-12 17:01:54 -07:00
.gitignore add skeleton for the security-analytics plugin (#3) 2022-06-08 11:41:09 -07:00
.whitesource Add .whitesource configuration file (#96) 2023-04-05 19:00:09 -07:00
build.gradle Guard eclipse() to spotless tasks and keep P2 mirror on pinned version (security-analytics) (#1805) 2026-09-10 11:29:46 -04:00
CODE_OF_CONDUCT.md Initial commit 2022-05-10 01:44:18 -04:00
CONTRIBUTING.md Initial commit 2022-05-10 01:44:18 -04:00
DEVELOPER_GUIDE.md Upgrade Lucene Codec to Lucene99 (#800) 2024-01-12 17:10:43 -08:00
gradlew Upgrade gradle to 8.14 and run CI with JDK 24 (#1560) 2025-07-23 14:01:30 -07:00
gradlew.bat Upgrade gradle to 8.14 and run CI with JDK 24 (#1560) 2025-07-23 14:01:30 -07:00
LICENSE Initial commit 2022-05-10 01:44:18 -04:00
MAINTAINERS.md Baselined maintainers list. (#1692) 2026-04-17 11:57:30 -07:00
NOTICE Initial commit 2022-05-10 01:44:18 -04:00
README.md fix code coverage calculation (#980) 2024-05-08 18:33:28 -07:00
security-analytics-commons-1.0.0.jar Updated security-analytics-commons-1.0.0.jar, bumped version to 3.7.0-SNAPSHOT, and upgraded Gradle wrapper to 9.4.1. (#1719) 2026-05-20 11:10:36 -07:00
settings.gradle Add ci.opensearch.org/m2/ mirror for plugin resolution (security-analytics) (#1751) (#1754) 2026-07-31 17:41:40 -04:00

Test Workflow codecov Documentation Chat PRs welcome!

OpenSearch Security Analytics

The OpenSearch Security Analytics aims to enable you to run security operations by automating threat detection and threat analysis on your data. Security analytics plugin will include a threat detection engine that will be pre-loaded with a set of detection rules, that you can customize and extend to alert on standard or custom attack patterns.

Highlights

  • This open-source framework for analyzing the security events will address the cost and complexity associated with running the security operations on your business and infrastructure data.
  • It will enable you to monitor your data, generate findings and send alert notifications automatically to your stakeholders.
  • The security analytics dashboards will let you manage your threats, correlate events and take remediation actions.

Documentation

Please see our documentation [ToDo].

Contributing

See CONTRIBUTING for more information.

Code of Conduct

This project has adopted the Amazon Open Source Code of Conduct. For more information see the Code of Conduct FAQ, or contact opensource-codeofconduct@amazon.com with any additional questions or comments.

Security

If you discover a potential security issue in this project we ask that you notify AWS/Amazon Security via our vulnerability reporting page. Please do not create a public GitHub issue.

License

This project is licensed under the Apache-2.0 License.

Copyright OpenSearch Contributors. See NOTICE for details.