
Architecture
A real-time financial fraud detection platform. Transactions stream through Kafka and PySpark Structured Streaming into Snowflake, where risk is scored in-database with Snowpark and surfaced in a SOC-style dashboard that auto-refreshes every 10 seconds.
10s
Live refresh
8
Console pages
7
Snowflake features
1/sec
Txn stream
- Snowpipe ingestion + Streams & Tasks for change-data-capture and automation
- Dynamic Tables for self-maintaining, incrementally-refreshed aggregates
- Snowpark Python UDF for in-database risk scoring, plus z-score anomaly detection
- dbt staging → mart models transforming raw events into query-ready tables
- SOC-style 8-page console: live alerts, KPIs, severity, city & merchant analytics
