OBSERVE

Data Stream

Feed security and analytics tools with real-time event data. No pipeline complexity, no vendor lock-in.

DOCS
Data Stream

event delivery

configuration time

connectors available

Security visibility without integration complexity

Detect threats in seconds

Feed your SIEM with near real-time data. Accelerate investigation and response.

Pass compliance audits

Retain logs for audits and investigations with secure, continuous backups that meet regulatory requirements.

Pay only for what you use

Consumption-based pricing with no hidden costs, no infrastructure to manage, and no vendor lock-in.

DNZ
Axur
Radware
Arezzo
Contabilizei
Magazine Luiza
Fourbank
Radware
Crefisa
Netshoes
Dafiti
Global Fashion Group
GPA Logo

"Azion shielded us from sophisticated cyberattacks and empowered us to modernize our infrastructure, reduce costs, and deliver the best shopping experiences to millions of customers across Latin America."

Allan Monteiro

CISO & Head of Technology

Take your data wherever you want, with no effort

Unified data collection

Collect event data from Applications, Functions, WAF Events, and Activity History through a single configuration. Use templates or custom mappings to capture the data needed for security, compliance, and performance analysis.

DOCS

Data collection from multiple sources with variable selection interface

Stream, filter, and route event data

Configure continuous event streaming with full capture or optional sampling. Apply filtering and transformations before routing data to SIEM, analytics, and BI platforms.

DOCS

Secure pipeline architecture with stream processing capabilities

Integrate with your existing tools

Stream structured event data to SIEM, analytics, storage, and HTTP endpoints including Splunk, Datadog, BigQuery, S3, and Azure Monitor. Customize payload formats, batching, and delivery intervals to match your existing workflows.

DOCS

SIEM and analytics platform integration with real-time delivery

Frequently Asked Questions

How is Data Stream different from native cloud logging services?

Data Stream delivers data from Azion's global infrastructure directly to your existing tools—AWS Kinesis, Splunk, S3, BigQuery, Elasticsearch, and more—in near real-time. Unlike vendor-specific logging, it works across your entire stack without lock-in, with built-in filtering, sampling, and multi-destination support from a single configuration.

How fast is data delivery?

Data Stream delivers logs in near real-time with a maximum interval of 60 seconds or when 2,000 records are accumulated, whichever comes first. This ensures timely data availability for security monitoring, compliance, and analytics while optimizing throughput and reducing overhead.

Which connectors and endpoints are supported?

Data Stream supports more than 10 connectors including AWS Kinesis Data Firehose, Splunk, Amazon S3, Google BigQuery, Elasticsearch, Datadog, IBM QRadar, Azure Monitor, Azure Blob Storage, Apache Kafka, and standard HTTP/HTTPS POST endpoints. You can connect to multiple destinations simultaneously.

Can I filter and customize the data before streaming?

Yes. Data Stream allows you to select specific variables using ready-made templates or create custom configurations. You can filter by domains, apply sampling to control volume, and choose specifically, field by field the data before delivery. This helps reduce costs and ensures you stream only the data you need.

How does Data Stream handle high traffic volumes?

Data Stream scales automatically with your traffic using Azion's distributed global architecture. You can choose 100% data capture or apply optional sampling to manage volume. The service handles traffic spikes seamlessly with no configuration changes or performance degradation.

Is Data Stream suitable for compliance and audit requirements?

Yes. Data Stream enables continuous log retention for historical analysis and incident investigations. Stream to secure storage endpoints like S3 or Azure Blob Storage for long-term retention, helping meet PCI-DSS, HIPAA, and other regulatory requirements.

How do I integrate Data Stream with my SIEM?

Configure a stream in Azion Console or via API, select your data source (Applications, WAF Events, etc.), choose a template or customize variables, and connect to your SIEM endpoint (Splunk, IBM QRadar, Datadog, etc.). The integration takes minutes to set up. See our SIEM integration guide for detailed steps.
Want just receive raw logs in S3? No problem. Just setup the connector and you're all good.

What is the pricing model for Data Stream?

Data Stream uses transparent usage-based pricing. Pay only for the data you stream with no hidden fees, infrastructure costs, or vendor lock-in. Pricing is based on the volume of data transferred. See the pricing page for detailed information.

What data types can be exported for compliance and auditing?

Data Stream exports complete field types to support compliance and audit requirements. For Applications, you can capture request data (timestamp, client IP, HTTP method, URI, headers, user agent), response data (status codes, bytes sent, cache status), and performance metrics (upstream response time, request time). For WAF Events, fields include attack signatures, threat scores, blocked requests, rule IDs, and geographic data. Activity History provides user actions, API calls, configuration changes, and authentication events. All data includes precise timestamps, session identifiers, and can be filtered by domain, allowing you to meet requirements for PCI-DSS, HIPAA, SOC 2, and GDPR with detailed audit records.

DOCS

Access to all features.

Gain Real-Time Observability