A threat-detection service that analyzes logs to detect signs of malicious activity.
It analyzes multiple data sources -- VPC flow logs, CloudTrail, DNS logs -- using machine learning and threat intelligence. Since it works just by enabling it, it's adopted in many environments as the first step in security measures.
© 2026 ITBGM