NIS2 / KSC and SIEM in one platform
For essential and important entities: operators, data centers and public institutions. Compliance with the Polish KSC act without deploying separate tools — the SIEM and the compliance module work on the same data.
Ask about KSC compliance for your organizationNIS2 / KSC compliance module
- Art. 23-aligned incident reporting — automatic 24h / 72h / 1-month deadline tracking from the moment of detection
- Risk management with scoring and reviews
- Versioned security policies (access control, BC/DR, supply chain) with staff acknowledgement tracking
- Training registry: events with participant lists (including staff without a system account) and a mandatory-training catalog
- Full audit trail of administrative actions: who, what, when, from which address
Carrier-grade SIEM
- Syslog collector (RFC 3164/5424) for multi-vendor devices
- Dedicated parsers: Juniper JunOS, Huawei VRP (NE8000/NE40E/CE), MikroTik RouterOS, Extreme EXOS, Cisco IOS/IOS-XE, Linux
- PCRE rule engine with severity levels and correlation of syslog events with NetFlow/sFlow data
- Real-time alerting: e-mail and webhooks (Slack, Teams, PagerDuty, custom APIs)
No-code detection rules
- Built-in rule library: brute force, port scans, SYN flood, DNS abuse, C2 ports, SYN-ACK reflection, egress spoofing and more
- Custom detection rules added from the admin panel — database-driven logic, no code changes
- Adaptive false-positive suppression: per-CIDR overrides with service-role presets (CDN cache, web farm, IPTV, resolver)