Graylog: Adding API Security to SIEM Platform with Open-Source Core

An Intellyx Brain Candy Update

Graylog offers a Security Information and Event Management (SIEM) platform that it built on the Apache Trino fast distributed query engine, leveraging the Apache Iceberg high-performance data format for large analytics tables.

The resulting high-performance data lake supports Graylog’s newest API security offering by maintaining activity logs of all API traffic in an organization.

The API security from Graylog provides API discovery including the discovery of rogue API traffic and deprecated APIs. It also provides real-time signature detection to uncover malware and other malicious traffic to and from APIs (as its SIEM product does across the enterprise threat surface).

Graylog offers its platform as SaaS, but most customers run self-managed instances of Graylog in the cloud.

We last covered Graylog in June 2024.

Copyright © Intellyx BV. Intellyx is an industry analysis and advisory firm focused on enterprise digital transformation. Covering every angle of enterprise IT from mainframes to artificial intelligence, our broad focus across technologies allows business executives and IT professionals to connect the dots among disruptive trends. None of the organizations mentioned in this article is an Intellyx customer. No AI was used to produce this article. To be considered for a Brain Candy article, email us at pr@intellyx.com.

SHARE THIS: