Listing Thumbnail

    Query Federated Search

     Info
    Sold by: Query 
    Deployed on AWS
    Query is an AI-powered Security Data Operations platform that connects your distributed data and gives you high-context answers for faster investigations, threat hunting, and incident response.
    3.8

    Overview

    Query is an AI-powered Security Data Operations platform that creates a security data mesh by connecting distributed security data across SIEMs, EDRs, cloud storage, data lakes, identity, and network tools and more. With Query Federated Search & Analytics, security teams can search data where it lives, eliminating costly data duplication, and make better decisions, faster during investigations, threat hunting, and incident response.

    Query AI Agents deliver automation and real-time context, helping analysts cut triage & investigation time from hours to minutes. Teams gain expanded visibility, reduce security data costs, and make faster, higher-confidence decisions during incidents.

    Query Security Data Pipelines make moving security data to cloud storage simple and efficient. Pipelines deploy in under five minutes with no YAML, no packs, and no custom ETL jobs required. Data is written in ZSTD-compressed Parquet and partitioned for performance. Its everything you need to write to the gold layer of your security lake, without the overhead. The result is an 80%+ reduction in storage footprint, cloud-ready data for compliance, analytics, and security operations, and a scalable foundation for long-term security data retention.

    Query provides custom pricing for customers via Private Offer. Please contact info@query.ai  for more information.

    Highlights

    • Get up and running fast - pre-built integrations make it simple to connect the products and services you already use - like Amazon Athena, Amazon S3, Amazon Security Lake, Crowdstrike, Splunk, Datadog, SentinelOne, Okta, Jamf, Virus Total and more.
    • Choice and control - Query is your answer to managing security data costs. Choosing what to centralize and what to leave in place means never having to compromise on security value for cost reasons.
    • Faster, more accurate investigations - Query is the gateway into all of your security-relevant data, wherever it is stored. Analysts can stop wasting time pivoting from console to console, and start using data to decide and act with confidence.

    Details

    Sold by

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Query Federated Search

     Info
    Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (1)

     Info
    Dimension
    Cost/12 months
    Query Basic Plan
    $60,000.00

    Vendor refund policy

    Contact us at info@query.ai 

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    Software as a Service (SaaS)

    SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.

    Support

    Vendor support

    You can communicate with Query support directly from within the product or by emailing support@query.ai  Support from 9am - 6pm ET is included in all plans. 24/7 support is available.

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Databases & Analytics Platforms

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    0 reviews
    Insufficient data
    Insufficient data
    Insufficient data
    Insufficient data
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Federated Data Search
    Enables searching security data across distributed sources including SIEMs, EDRs, cloud storage, data lakes, identity, and network tools without centralizing data.
    Pre-built Integrations
    Includes pre-configured connectors for Amazon Athena, Amazon S3, Amazon Security Lake, Crowdstrike, Splunk, Datadog, SentinelOne, Okta, Jamf, and Virus Total.
    AI-Powered Automation
    Delivers AI Agents that provide automation and real-time context to reduce investigation and triage time.
    Security Data Pipeline
    Provides data pipeline functionality that deploys in under five minutes with ZSTD-compressed Parquet format and automatic partitioning for performance optimization.
    Data Compression and Storage Optimization
    Achieves 80%+ reduction in storage footprint through compression and efficient data formatting for cloud-ready compliance and analytics.
    Vector Database Capabilities
    Elasticsearch functions as a vector database with extensive GenAI integrations, providing unified access to ML models, connectors, and frameworks through API calls for semantic search and RAG applications.
    Observability and Monitoring
    Full-stack observability solution with OpenTelemetry native integration supporting 400+ integrations including AWS services like Bedrock, CloudWatch, CloudTrail, EC2, Firehose, and S3 for comprehensive visibility across environments.
    AI-Driven Security Analytics
    Security operations platform powered by Search AI Platform delivering AI-driven security analytics for SIEM, endpoint security, and cyber security with advanced automation features for attack surface analysis.
    Serverless Architecture
    Serverless deployment option built on Search AI Lake architecture combining vast storage, compute, low-latency querying, and advanced AI capabilities without infrastructure management requirements.
    Enterprise-Grade Data Management
    Unified data management across multiple sources with enterprise-grade security, flexible provisioning options across serverless, cloud, and on-premises infrastructure deployments.
    Real-time Data Collection and Indexing
    Collects and indexes machine-generated data from virtually any source or location in real time with automatic indexing upon data ingestion.
    Complex Event Correlation
    Correlates complex events spanning multiple diverse data sources using time-based correlations, transaction-based correlations, sub-searches, lookups, and joins.
    Scalable Data Processing
    Scales to collect and index tens of terabytes of data per day with distributed computing architecture.
    High Availability Clustering
    Provides clustering technology for availability and fault tolerance across distributed computing environments.
    Machine Data Search and Analysis
    Enables searching, analyzing, and visualization of machine data generated by IT systems and technology infrastructure across physical, virtual, and cloud environments.

    Security credentials

     Info
    Validated by AWS Marketplace
    FedRAMP
    GDPR
    HIPAA
    ISO/IEC 27001
    PCI DSS
    SOC 2 Type 2
    No security profile
    -
    -
    -
    -
    -
    No security profile

    Contract

     Info
    Standard contract
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    3.8
    2 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    100%
    0%
    0%
    0%
    0 AWS reviews
    |
    2 external reviews
    External reviews are from PeerSpot .
    Kruthikk Nm

    Federated searches have transformed compliance audits but user access and trials still need improvement

    Reviewed on Apr 02, 2026
    Review provided by PeerSpot

    What is our primary use case?

    Query.ai  serves as a security platform that provides expanded data visibility without centralizing. I use it for query federated search, Query.ai  for Splunk, and for AI agents and data security pipelines. My background in IT pipelines and API integration enables me to use Query.ai for building AI agents. I can also use it for Splunk and federated search. Instead of building custom data pipelines to centralize, which is the kind of engineering work I have done with other platforms such as ClickHouse  and Pi, Query.ai lets me federate search across all sources without moving data.

    What is most valuable?

    The best feature that Query.ai offers is that I need not move into multiple databases. For example, I can use ClickHouse  and Pi in one federated search without moving my data, resulting in no pipelines, no duplication, and no ingestion cost inflation. For someone building data pipelines and who knows how painful data engineering overhead gets, this federated search without moving into multiple databases really helps me. I do not have to move into multiple databases or multiple platforms, and with just one federated search, I can go through all those databases within one direct application without causing any pipelines and duplication.

    Query.ai has positively impacted my organization with its ability to audit data flow and assist in compliance with HIPAA regulations. Since I work in a privacy-sensitive market, I use Query.ai to perform audit prep, which was entirely manual, error-prone, and resource-intensive before. With Query.ai, I can automate it, and HIPAA breach investigation response times, which were slow earlier, have sped up. Query.ai helps reduce costs and improve security in my organization, though I do not have the actual numbers, but the impact was significant.

    What needs improvement?

    A more user-friendly interface can add more users to the platform. Additionally, there could be a trial phase or a free trial version of Query.ai. I would like to use a free version without adding my credit card details or any payment details. If I could compare other audit trails or other audit software with Query.ai in real-time, that would be helpful.

    For how long have I used the solution?

    I have been using Query.ai for about six months.

    What other advice do I have?

    Query.ai performs well, but there are other software options that do auditing a little better. Overall, Query.ai is quite useful for auditing and database migration and data pipelines. Query.ai is a useful platform or software, especially in my domain, which is healthcare. The combination of communication data plus Query.ai's feature search creates a compelling story, particularly for multi-location practices where data sprawl is the norm and not an exception, making Query.ai useful in these situations. I would rate this review seven out of ten.

    reviewer2813226

    Automation has transformed reporting workflows and saves days by streamlining data lake projects

    Reviewed on Apr 01, 2026
    Review provided by PeerSpot

    What is our primary use case?

    My main use case for Query.ai  is connecting to data lakes and data marts using Amazon S3 . I have been connecting my data to Query.ai  data lakes and data marts while doing some transformation, creating reports, and sharing them with my clients. A reporting project is what I recently completed.

    What is most valuable?

    Query.ai is very simple, which makes it excellent for beginners to start with all of these features. The interface itself and the UI are what make Query.ai simple for beginners. I can see what all features are available in Query.ai, the different features, how they can be useful, how they are implemented, and the description of all processes. It is unique and simple.

    Query.ai has had a positive impact on my organization. I have been introducing this to my colleagues and they were very happy with this application.

    Time saving and accuracy are the main benefits. In my data mart and data lakes project, Query.ai has been very useful. All transformations were automated, which had a huge impact on our entire project. Everything is automated using Query.ai and we do not need to think about whether it is running or not. It will take care of itself.

    What needs improvement?

    I think integrating some LLM would be good because nowadays AI has a very huge impact. Additionally, I think it would be good if you add Amazon QuickSight  for the reporting functionality.

    For how long have I used the solution?

    I have been using Query.ai for the last one year.

    Which solution did I use previously and why did I switch?

    Query.ai was my first solution.

    What was our ROI?

    The time saving is a big thing. For example, work that needs to be completed in five days is completed in just one or two days, which is a big deal.

    What's my experience with pricing, setup cost, and licensing?

    My experience with pricing, setup cost, and licensing was good. I felt the pricing is somewhat higher.

    Which other solutions did I evaluate?

    Query.ai came into my picture and I analyzed it. I think this is a good option, so I went with this.

    What other advice do I have?

    Query.ai is very useful for my entire project and I like it. I will be sharing this with my colleagues and also with my friends who are working in other companies. I mention every time that Query.ai is really useful in real life. I gave this review a rating of eight out of ten.

    View all reviews