About

A senior-only engineering team for production Elastic.

Tocharian works on Elastic Security and SIEM, platform performance and cost, observability, and search — for organizations already running Elasticsearch in production. Every engagement is delivered by engineers who have run these systems at scale themselves.

The team

A core Elastic architect working with a small group of senior Elastic specialists, assembled per engagement. No juniors, no handoffs.

Elastic partnership

Tocharian OÜ is a Registered Elastic Partner, incorporated in Estonia. We work inside the Elastic ecosystem, but our engagements are fixed-scope engineering — our fees do not scale with what you ingest or retain. Making your cluster cheaper costs us nothing.

Scope of work
Elastic Security & SIEMDetection engineering & alert qualitySplunk to Elastic migrationCluster performance, stability & costElastic Observability & APMEnterprise search, vector retrieval & RAGMCP servers & AI agent integrationPrivate and on-premise deployment
Luke, Founder · Elastic AI ArchitectPrincipal architect

Luke

Founder · Elastic AI Architect

Seven years of end-to-end enterprise Elasticsearch delivery across security, SIEM, observability, search, vector retrieval, and generative AI.

Elastic architecture, implementation, and support for enterprise clients in North America, Europe, and APAC — spanning retail, manufacturing, aerospace, finance, healthcare, travel, and internet.

Author and maintainer of twenty open-source MCP servers across Elastic, Kibana, threat intelligence, cloud, and data platforms, plus a published SecOps evaluation benchmark.

How we work

Solve real production problems

We work around system stability, alert quality, and results you can measure.

Collaborate with your team

We help internal teams deliver and build lasting capability, rather than creating opaque external dependencies.

Clear project boundaries

Every engagement defines scope, responsibilities, success criteria, and support boundaries before it starts.

Customers stay in control

You keep control of your data, infrastructure, model accounts, and every final business decision.

Security first

For MCP, AI agents, and automation we default to least privilege, human approval, and complete auditing.