CAKTU connects isolated IBM i security data to Microsoft Sentinel — normalized, alert-ready, and proven in production. The one system that never makes it into the SIEM, covered.
The AS400 runs the business — ERP, accounting, logistics, core banking — and almost never reaches the SOC. It’s isolated, journal-based, and outside most security teams’ skill set. So it sits there: a compliance blind spot on the most critical box in the building, with your name on the monitoring.
Security events pulled off the IBM i and forwarded to Sentinel reliably — without touching production workloads.
Journal data mapped to Sentinel’s schema so it correlates with everything else your SOC already watches.
Parsers, dashboards, and detection rules included — usable on day one, not just logs sitting in a table.
CAKTU is the engine underneath — white-labeled if you prefer. Fixed-fee deployment per AS400 system, then an annual per-endpoint license you resell with your own margin.
We deploy, tune, and hand over — plus optional managed-tuning that pays for itself by trimming the ingestion that drives your Sentinel bill.
Tell us the setup and we’ll show you exactly how its data lands in Sentinel.