Elastic + Sublime: Adding email to your security and observability stack
Blog post from Sublime Security
Sublime has announced a new partnership with Elastic to enhance email security through open and transparent collaboration, allowing for seamless integration of Sublime's security data into Elastic's platform. This partnership enables teams to ingest and analyze email security data from Sublime using Elastic's tools, including two specific data streams: Message Event and Email Message, alongside additional visualizations and dashboards in Kibana. Elastic's open detection rules and Event Query Language (EQL) facilitate the correlation of email data with other security information, such as endpoint and network telemetry, providing a comprehensive security overview. The integration also includes an Audit data stream to track significant configuration changes within Sublime, with customizable options for alerts and visualizations, making Sublime a pivotal component of a holistic security strategy when combined with Elastic's capabilities.