NIS2 / KSC and SIEM in one platform

For essential and important entities: operators, data centers and public institutions. Compliance with the Polish KSC act without deploying separate tools — the SIEM and the compliance module work on the same data.

Ask about KSC compliance for your organization

NIS2 / KSC compliance module

  • Art. 23-aligned incident reporting — automatic 24h / 72h / 1-month deadline tracking from the moment of detection
  • Risk management with scoring and reviews
  • Versioned security policies (access control, BC/DR, supply chain) with staff acknowledgement tracking
  • Training registry: events with participant lists (including staff without a system account) and a mandatory-training catalog
  • Full audit trail of administrative actions: who, what, when, from which address

Carrier-grade SIEM

  • Syslog collector (RFC 3164/5424) for multi-vendor devices
  • Dedicated parsers: Juniper JunOS, Huawei VRP (NE8000/NE40E/CE), MikroTik RouterOS, Extreme EXOS, Cisco IOS/IOS-XE, Linux
  • PCRE rule engine with severity levels and correlation of syslog events with NetFlow/sFlow data
  • Real-time alerting: e-mail and webhooks (Slack, Teams, PagerDuty, custom APIs)

No-code detection rules

  • Built-in rule library: brute force, port scans, SYN flood, DNS abuse, C2 ports, SYN-ACK reflection, egress spoofing and more
  • Custom detection rules added from the admin panel — database-driven logic, no code changes
  • Adaptive false-positive suppression: per-CIDR overrides with service-role presets (CDN cache, web farm, IPTV, resolver)