wazuh / wazuh-indexer

Wazuh indexer, the Wazuh search engine
https://opensearch.org/docs/latest/opensearch/index/
Apache License 2.0
6 stars 16 forks source link

Amazon Security Lake integration - DTD - OCSF compliant events #156

Closed AlexRuiz7 closed 4 months ago

AlexRuiz7 commented 4 months ago

Description

Events need to be OCSF compliant prior to its upload to Amazon Security Lake. We will map the events using the Detection Finding (2004) class

This issue aims to design and develop the data transformation into the OCSF.

More info in https://github.com/wazuh/wazuh-indexer/issues/145#issuecomment-1936220969.