Elastic Security on Elastic Cloud Serverless enters general availability
Implement AI-driven security analytics faster on Elastic Cloud Serverless, the easiest way to harness the innovations of Elastic Security
Elastic Security on Elastic Cloud Serverless is now generally available. You can launch a deployment in minutes — no prior experience required. Serverless projects are fully managed, minimizing total cost of ownership (TCO) and providing immediate access to the powerful features of the Elastic Search AI Platform and Elastic Security.
Get started now
Elastic Security on Elastic Cloud Serverless empowers security teams to get up and running quickly, complementing existing options for on-premises, hybrid cloud, and multi-cloud infrastructures. This unmatched versatility ensures that your strategy can adapt with evolving business needs.
The solution is engineered for SIEM, endpoint security, and cloud security use cases. You can operationalize these capabilities right away, which is especially valuable for organizations replacing a legacy SIEM like Splunk or QRadar.
Serverless elevates practitioners with guided onboarding to ramp up swiftly and with a focused UI for core SecOps workflows. To further accelerate investigation and response, Elastic AI Assistant for Security provides analysts with valuable guidance, insights, and context.
Reduce TCO with a fully managed solution
Elastic Cloud Serverless reduces total cost of ownership by delivering Elastic Security as a fully managed solution that dynamically scales to meet the needs of security teams.
The offering eliminates the operational overhead of managing infrastructure for security software. Practitioners can focus on their mission while Elastic handles administrative tasks like provisioning, scaling, monitoring, and upgrades.
I'd advise companies with on-premises or hosted cloud Elastic deployments to use serverless, so they can streamline administration and focus on what's important.
InfoSec leader and former technical consultant
Elastic Security scales efficiently and automatically on Elastic Cloud Serverless. There is no need for capacity planning or performance monitoring because the solution independently scales storage and compute (both up and down) to meet fluctuating demands.
Performance is paramount for security teams. When tested with 3,000+ concurrent queries on 5 TB of data, the solution consistently delivered response times in the low milliseconds. In a recent survey of serverless technical preview participants, 100% of respondents rated the offering either Good or Great for both operational stability and overall performance.
With easy and transparent pricing, customers pay only for what they use. Charges are based on the volume of data ingested and retained. Optional add-ons for endpoint and cloud protection enable customers to strengthen security further.
Powered by the Elastic Search AI Lake
Elastic Cloud Serverless delivers AI-driven security analytics using the efficient and performant Elastic Search AI Lake. With a new cloud-native architecture optimized for both short- and long-term retention, you can analyze data from across your holistic attack surface — even from years of archives. The solution further reduces storage costs by minimizing data duplication and applying advanced compression techniques and codecs, making it ideal for enterprise-wide security operations. We’ve validated performance at petabyte scale and are enhancing scalability further in future releases.
Serverless is engineered for organizations that need Elastic Security’s innovative features and optimized for centralized security operations center (SOC) teams deploying in the cloud. The offering is available on AWS (in four regions and counting) with support for additional cloud providers on the horizon.
Accelerate SecOps with cutting-edge capabilities
The following Elastic Security features equip practitioners to address challenges faster:
Collect and normalize popular data sources with prebuilt integrations and further broaden visibility by creating custom integrations with Automatic Import.
Visualize data on prebuilt and custom dashboards and quickly query the Search AI Lake.
Activate field-tested machine learning (ML) jobs and detection rules based on MITRE ATT&CK® coverage and create new ones with Elastic AI Assistant for Security.
Triage a flood of alerts down to the few attacks that matter with our Attack Discovery feature and uncover unknown threats with advanced analytics.
Elevate analysts with an intuitive UI and context-aware AI guidance.
The AI capabilities of Elastic Security on Elastic Cloud Serverless are made possible by the Elastic Search AI Platform. Customers can choose from a growing set of large language model (LLM) options, ranging from frontier models like Anthropic Claude to custom models via LM Studio. It grounds responses in real-time organizational context, such as user risk score, asset criticality, and host context, using retrieval augmented generation (RAG) to provide meaningful insights.
Try it free
Elastic Security on Elastic Cloud Serverless is the fastest and easiest way to experience AI-driven security analytics. Try it now.
The release and timing of any features or functionality described in this post remain at Elastic's sole discretion. Any features or functionality not currently available may not be delivered on time or at all.
In this blog post, we may have used or referred to third party generative AI tools, which are owned and operated by their respective owners. Elastic does not have any control over the third party tools and we have no responsibility or liability for their content, operation or use, nor for any loss or damage that may arise from your use of such tools. Please exercise caution when using AI tools with personal, sensitive or confidential information. Any data you submit may be used for AI training or other purposes. There is no guarantee that information you provide will be kept secure or confidential. You should familiarize yourself with the privacy practices and terms of use of any generative AI tools prior to use.
Elastic, Elasticsearch, ESRE, Elasticsearch Relevance Engine and associated marks are trademarks, logos or registered trademarks of Elasticsearch N.V. in the United States and other countries. All other company and product names are trademarks, logos or registered trademarks of their respective owners.