About the Elasticsearch Integration
Elasticsearch is the world’s most widely deployed open-source search and analytics engine, used by security teams as a high-performance data store and analytics backend for SIEM, log analysis, threat hunting, and security data pipelines. Part of Synqly’s Sink Unified API, the Elasticsearch integration enables security platforms to export security events and telemetry data from Synqly-connected tools directly into an Elasticsearch index for storage, analysis, and downstream detection. Integrate with Elasticsearch to build a flexible, high-performance security data pipeline that routes normalized security telemetry from your Synqly integrations into your Elastic cluster.
Integration Use Cases
Post Events
Writes a batch of `Event` objects to the Sink configured with the token used for authentication.


