In October 2019, Garrett Spong announced the integration of Elastic Maps into the Elastic SIEM app, now known as Elastic Security, which enhances SIEM capabilities by visualizing geospatial data. This integration allows users to visualize sources, destinations, and traffic flow through maps, providing the ability to filter data using the global time filter and query bar, and display document details by interacting with map points. The initial implementation required the map to work with ECS-compliant indices and the use of the new Embeddables API to create a point-to-point data source. By ensuring compatibility with Beats and Elasticsearch’s GeoIP Processor, users can easily display geospatial data on the map. The integration also supports filtering events and time ranges to aid in investigations. Future enhancements include adding custom tooltips for more interactive and context-sensitive actions. Elastic encourages users to explore these features and provide feedback through the SIEM Discuss forum or GitHub.