Real Time Events
Catch and correct mistakes before they become security incidents and end up on compliance reports.
Real Time Events helps DevOps to monitor security threats, get alerts of potential incidents, and automate your remediation.
Real Time Events is now available for Microsoft Azure!
Take a look at our new features and learn how you can deploy security solutions on Azure with less effort.Optimize DevOps with Real Time Events
Catch mistakes before they hurt you
Receive alerts in real time for critical events that have taken place inside your AWS accounts. Notify through Slack and Email.
Secure your whole cloud
Monitor more than 500 security threats via CloudTrail and other Real Time Events across all of your accounts and regions through a single pane of glass.
Remediate in real time
Trigger Lambda Functions that react to and remediate predefined threats immediately, minimizing any exposure to seconds.
Need more ideas on how you can use Real Time Events?
Key Features To Automate Cloud Operations
Quick Installation
Just launch a CloudFormation Template and install our One Click Best Practices Templates.
Parse Data
Use conditions on any property nested within the source event to filter notifications and remediation.
Chat Integration
Event notifications via Slack and Email. Learn more about Slack integration.
Real Time Event Monitoring at an Affordable Pricing
Pay as you go and automate your cloud monitoring in AWS and Azure. No credit card required.
ALERTS
Per cloud account/month
- Unlimited Alerts
- Unlimited Users
- Slack App Integration
- Email Integration
- Role Based Access Control
- Single Sign On (SAML 2.0)
- API Access and Terraform
- Pay via AWS Marketplace or Credit Card
ALERTS + REMEDIATION
Per cloud account/month
- Unlimited Alerts
- Unlimited Users
- Slack App Integration
- Email Integration
- Role Based Access Control
- Single Sign On (SAML 2.0)
- API Access and Terraform
- Pay via AWS Marketplace or Credit Card
- Remediation Actions
Frequently Asked Questions (FAQs)
About Real-Time Events
You can use GorillaStack to filter and alert on any CloudTrail event.
For more information on the kinds of events you may wish to consider, you can read about high priority CloudTrail security events.
Receive notifications in real time as CloudTrail events take place. Typically a system event will write to CloudTrail in less than 10 seconds.
Pricing
Yes, you can pay for us via the AWS marketplace, GorillaStack will appear as an item on your bill every month.
We do! If you want to pay a year up front, we'll give you 2 months for free, you can get in contact at any time. Also, call us if you're a not-for-profit, we'll assess these on a case-by-case basis.
Getting Started
AWS Accounts are linked to GorillaStack by deploying a CloudFormation template. When deployed this CloudFormation template:
- Creates an IAM role for cross-account access. GorillaStack assumes this role when collecting data and executing actions and the role's IAM permissions control GorillaStack's level of privilege
- Creates a Lambda Function which has the sole responsibility of posting back to GorillaStack on successful or unsuccessful stack creation.
Azure subscriptions are linked by running a script in the Azure cloud shell.
The GorillaStack bill is only calculated based on the infrastructure that is linked to GorillaStack. If you don’t connect any AWS accounts we won’t charge you for coverage.
An AWS Account is linked to GorillaStack by deploying a CloudFormation template.
This CloudFormation template creates a role for cross-account access, containing IAM permissions which control what GorillaStack can do within a linked account.
Within GorillaStack you can enable and disable Rule Triggers and Actions to only allow what you want to use. When you make changes to enabled Rule Triggers and Actions we generate a unique CloudFormation template, containing only the IAM permissions you need.
To leverage all Triggers and Actions in GorillaStack Cost Optimization, a linked account needs to allow the following IAM permissions:
autoscaling:DescribeAutoScalingGroups
autoscaling:UpdateAutoScalingGroup
dynamodb:DescribeTable
dynamodb:ListTables
dynamodb:ListTagsOfResource
dynamodb:UpdateTable
ec2:DeleteSnapshot
ec2:DeleteVolume
ec2:DescribeAddresses
ec2:DescribeInstances
ec2:DescribeSnapshots
ec2:DescribeTags
ec2:DescribeVolumes
ec2:RebootInstances
ec2:ReleaseAddress
ec2:StartInstances
ec2:StopInstances
ecs:DescribeServices
ecs:ListClusters
ecs:ListServices
ecs:UpdateService
rds:DescribeDBInstances
rds:DescribeDBSnapshots
rds:ListTagsForResource
rds:StartDBInstance
rds:StopDBInstance
sns:ConfirmSubscription
sns:ListTopics
sns:Subscribe
sns:Unsubscribe
Yes.
We provide the option of customizing the template using the GorillaStack interface to restrict the available permissions to just the Rules Engine Actions and Triggers that you need (no CloudFormation knowledge needed!). This can be done on first-time Account Setup, or by updating the setup for already linked accounts.
More questions? We can help.
AWS Advanced Technology Partner
ARN Startup of the year 2017, 2018, 2019
Available via AWS Marketplace
Get Inspired
Learn how other companies like yourself use GorillaStack to manage their cloud resources.