Workflow
Open Cybersecurity Schema Framework (OCSF)
icon
Search documents
Cribl Supercharges Incident Response in Amazon Security Hub with Open Cybersecurity Schema Framework (OCSF) Support
Globenewswire· 2025-12-02 20:30
Core Insights - Cribl is a launch partner for the new AWS Security Hub, enhancing its capabilities for security operators to manage critical security issues at scale [1][3] - The integration allows for centralized viewing of AWS Security Hub events within Cribl Search, improving analysis and correlation of security incidents [2][3] - The enhanced capability leverages the Open Cybersecurity Schema Framework (OCSF) to standardize data interchange while incorporating AWS-specific resource details [3][6] Group 1: Integration Features - The integration enables security teams to query data stored in Cribl Lake and other object stores, facilitating quick correlation of past incidents with real-time events [3] - Cribl Stream's extension for AWS Security Hub allows for the normalization of findings from various services into a unified view, accelerating prioritization [6] - The OCSF standard enhances the integration by allowing for the conversion of third-party findings into a standardized format with AWS-specific context [6] Group 2: Operational Efficiency - The centralized view reduces the time spent switching between different tools, improving the efficiency of security investigations [2] - Cribl Copilot Editor utilizes AI to recommend optimal mappings to the OCSF standard, minimizing manual effort in writing and debugging pipelines [6] - The integration supports automated workflows, allowing for faster resolution of incidents through better data correlation [6] Group 3: Company Overview - Cribl provides vendor-agnostic solutions for analyzing, collecting, processing, and routing IT and security data, catering to the needs of Fortune 1000 companies globally [5] - The company’s product suite includes Cribl Stream, Cribl Edge, Cribl Search, and Cribl Lake, designed for telemetry volume and variety [5]