Articles
From VPC Logs to OCSF: A Streaming Pipeline with Kinesis and Zephflow
June 13, 2025The post explains how to build a streaming pipeline that converts AWS VPC Flow Logs into OCSF format using Kinesis and Fleak's ZephFlow. It shows how to standardize logs in real time for easier security analysis.
OCSF to S3: Streaming with Kinesis, Firehose, and Zephflow
June 15, 2025The post shows how to stream OCSF logs into Amazon S3 as Parquet files using Kinesis Firehose and ZephFlow. It enables scalable, real-time log storage ready for analytics and tools like Security Lake.
The Core Anatomy of OCSF: Understanding Event Classes, Categories, and Profiles
June 6, 2025The post breaks down the core structure of OCSF, focusing on event classes, categories, and profiles. It explains how this structure helps standardize and organize security data for better detection and analysis.
The Core Anatomy of OCSF: Understanding Event Classes, Categories, and Profiles
June 3, 2025The post introduces the Open Cybersecurity Schema Framework (OCSF) and its goal of unifying diverse security log formats. It highlights how OCSF improves interoperability across tools and simplifies threat detection.
Introducing the OCSF Mapping App: Streamlining Security Log Normalization with AI
April 22, 2025The post introduces Fleak's OCSF Mapping App, which uses AI to convert raw logs into OCSF format without requiring deep schema knowledge. It streamlines log normalization for faster integration and analysis.