Overview
Kelpie helps small security operations teams manage incidents from first report through closure. Bring cases, tasks, playbooks, observables, comments, evidence, and team activity into one focused workspace so analysts can coordinate work and maintain a reliable record of decisions.
Use structured case lifecycles, severity and handling labels, repeatable playbooks, searchable threat intelligence, vendor watchlists, incident timelines, notifications, and Microsoft Sentinel import to reduce manual effort and improve response consistency. Kelpie is available as an AWS Marketplace container product for deployment in your AWS environment.
Highlights
- Manage the full incident lifecycle with structured cases, severity, handling labels, tasks, and auditable timelines.
- Coordinate repeatable investigations with playbooks, observables, evidence, comments, and team notifications.
- Turn threat intelligence and vendor reporting into practical context for active investigations.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
- Monthly subscription
- $800.00/month
Vendor refund policy
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Kelpie Container Image
- Amazon ECS
- Amazon EKS
Container image
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Version release notes
Initial Kelpie release for AWS Marketplace. Self-hosted incident response and case management for small security operations teams.
Additional details
Usage instructions
Subscribe to Kelpie on AWS Marketplace, then clone https://github.com/yumaitau/Kelpie-aws-deploy . Deploy with CloudFormation (cloudformation/kelpie-fargate.yaml), Terraform (terraform/), or Helm (charts/kelpie plus values-aws-marketplace.yaml). Pin container_image or Helm image.tag to 709825985650.dkr.ecr.us-east-1.amazonaws.com/yuma-it/kelpie-aws:1.0.0. Do not use :latest. First user registers at /sign-up, then creates the organisation. The image checks AWS License Manager CheckoutLicense; attach the IAM in iam-policy.json to the ECS task role or EKS IRSA role. Health check: GET /api/health on port 3000.
Support
Vendor support
For support, use https://github.com/yumaitau/Kelpie/issues . Deployment guidance is available at https://github.com/yumaitau/Kelpie-aws-deploy . Support covers product access, deployment guidance, and reasonable troubleshooting for the AWS Marketplace container product.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
![Golden Retriever Lifetime Study: Whole genome genotyping of Golden [...]](https://d1ewbp317vsrbd.cloudfront.net/195d16cd-0e4c-4c0c-8e4d-b925c55b9ca9.png)

