DataStream is a security data pipeline platform from VirtualMetric. It helps SOC teams collect, normalize, enrich, filter, and route security telemetry before it reaches the SIEM. The platform sits between your log sources and your SIEM, data lake, analytics platform, or storage. It reduces ingest volume and delivers clean, structured data to each destination.
DataStream collects telemetry through agentless, read-only connections over WinRM and SSH, with optional agents for deeper visibility. It parses raw logs and normalizes them into standardized schemas including ASIM, OCSF, ECS, CIM, and UDM. Context-aware filters remove low-value events, so only relevant data hits the SIEM. Other logs route to analytics platforms or low-cost storage in parallel. A vectorized pipeline engine processes data across all CPU cores for high throughput at low latency. Write-ahead logging maintains data integrity and supports crash recovery without external systems like Kafka.
What are the key features of DataStream?
What benefits should users expect from DataStream?
Who uses DataStream?
DataStream serves enterprise SOC teams and MSSPs. Enterprise security teams use it to control telemetry volume and cost across Microsoft Sentinel, Elastic, Splunk, and other SIEM platforms. MSSPs use it to normalize logs across many tenants without building custom pipelines for each one. It fits environments with high log volume, multiple data formats, and rising SIEM ingest bills.
We have not yet collected reviews for DataStream. Share your experience with PeerSpot's community.
Share a review