- Organisation
- AVEVA
- Predecessor
- a previous SIEM platform plus overlapping security-analytics capabilities across multiple tools and advanced-feature licensing
- Destination
- Microsoft Sentinel cloud-native SIEM and SOAR, deployed with BlueVoyant and integrated with Microsoft Active Directory and Microsoft Defender services
- Workload
- security-operations analytics, detection, incident response, custom connectors, automation and visibility across AVEVA’s growing cloud footprint
- Stage
- completed
- Retirement status
- Microsoft’s dated customer evidence supports completion of the named SIEM migration. It does not establish retirement of every security product or completion of AVEVA’s wider all-application SaaS programme.
- Confidence
- High
- Next trigger
- A dated cutover, formal retirement statement or material later implementation milestone.
Programme context
AVEVA completed a like-for-like migration from its previous SIEM platform to Microsoft Sentinel, consolidating security analytics and automation on a cloud-native SIEM and SOAR platform.
Why this matters: This record identifies a named Irish or UK organisation, a bounded predecessor state, a destination platform, an affected workload and a source-stated operational stage.
Migration timeline
| Date or stage | Milestone | What changed | Evidence status |
|---|---|---|---|
| 3 September 2025 | completed | Microsoft states that the like-for-like SIEM migration was completed and that the joint AVEVA, Microsoft and BlueVoyant team delivered the project on time. | Confirmed |
Workload migration matrix
| Workload | Predecessor | Destination | Status by 28 Jul 2026 |
|---|---|---|---|
| security-operations analytics, detection, incident response, custom connectors, automation and visibility across AVEVA’s growing cloud footprint | a previous SIEM platform plus overlapping security-analytics capabilities across multiple tools and advanced-feature licensing | Microsoft Sentinel cloud-native SIEM and SOAR, deployed with BlueVoyant and integrated with Microsoft Active Directory and Microsoft Defender services | completed |
Implementation and architecture
- Microsoft Sentinel provides the cloud-native SIEM and SOAR destination.
- BlueVoyant led the proof of concept and supported full-scale deployment.
- Custom SIEM connectors and integrations with Microsoft identity and Defender services were implemented.
Known unknowns and contradictions
- The exact production cutover date is not stated.
- The source does not enumerate every retained security product.
- The wider application-to-SaaS programme is separate and is not claimed complete.
No missing fact is inferred to broaden the source-supported platform-change claim.
PlatformTrace analysis
Microsoft’s dated customer evidence supports completion of the named SIEM migration. It does not establish retirement of every security product or completion of AVEVA’s wider all-application SaaS programme.
Performance, cost, uptime and operational outcomes remain attributed source claims unless independently stated otherwise.
Evidence ledger
- AVEVA achieves secure SaaS migration goals with Microsoft Sentinel, 3 September 2025
Names the previous SIEM, the like-for-like migration to Microsoft Sentinel, BlueVoyant deployment support, custom connectors and completion on time.
- AVEVA Cambridge headquarters and R&D announcement, 5 May 2026
First-party AVEVA evidence that the organisation is headquartered in Cambridge, United Kingdom.
Approval: Issue #47 standing publication authority and the 28 July 2026 Lane 5 central filter.
Corrections and updates
28 July 2026 — Initial long-form Verified dossier published from the manual Lane 5 Ireland/UK intake and central filter. Later milestones will be appended rather than silently replacing this state.