SIEM Log-Source Monitor
ProblemAn MSSP's client log feeds were failing silently — dead log sources went unnoticed for days, discovered only mid-investigation.
BuiltPython platform verifying hourly, per client, that every SIEM log source is alive: REST API interrogation, sliding-window volume analysis, severity classification, and emailed HTML/Excel reports. Least-privilege service accounts with Cloudflare Zero Trust reachability.
ResultDetection cut from days to under one hour. First pilot caught a live Domain Controller feed outage (26,548 msgs/hr → 0) the same day it happened.