Elastic, the Search AI Company, has announced Automatic Migration, a new feature that simplifies the transition from an incumbent SIEM to Elastic Security. Automatic Migration maps existing SIEM detection rules to equivalent Elastic-built rules using semantic search without the need for exact text matches. The feature also translates any rules that are not mapped, including associated lookups and macros, into new Elastic queries using generative AI grounded in custom knowledge.
“Many security teams are stuck using their inefficient SIEMs due to the significant time and money it takes to transition to a modern solution, with migrating detection rules, dashboards, and other artifacts among the most challenging aspects for migration,” said Santosh Krishnan, general manager of Security and Observability at Elastic. “By mapping and translating existing SIEM artifacts, Automatic Migration reduces the cost, complexity, and risk that comes with SIEM migration.”
Automatic Migration complements Elastic Security’s expansive suite of AI-driven security analytics features, including Automatic Import, Attack Discovery, and Elastic AI Assistant.
Availability
Automatic Migration is available in technical preview to all customers with an Enterprise license or the Security Analytics Complete tier of Elastic Cloud Serverless. For more details on how to make the switch to Elastic Security, read the Elastic blog.