Respond to security threats faster with Tines and Observability Pipelines
Blog post from Datadog
Tines and Datadog Observability Pipelines are presented as complementary tools for automating security-log processing and response, enabling teams to standardize, enrich, tag, filter, and route logs before they reach a SIEM. Observability Pipelines manages log transformation and routing, while Tines orchestrates workflows across systems such as Okta, ServiceNow, Slack, MDM platforms, and CMDBs, using APIs and Reference Tables to update pipeline logic in real time. Example workflows include automatically tagging activity associated with an offboarded employee as high risk, suppressing alert storms generated by known vulnerability scanners while escalating unfamiliar sources with threat context, and allowing analysts to tag a suspicious user’s activity during an investigation. By linking operational decisions and analyst judgments directly to log-processing rules, the integration aims to reduce manual triage, alert fatigue, maintenance work, and response times while improving visibility into potentially risky activity.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Observability | 27 | 3,175 | 737 | 186 | -24% |
| Real-time | 3 | 4,432 | 1,050 | 222 | -31% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.