Guardsix (formerly Logpoint) is a sovereign SIEM, NDR, SOAR, Fleet & Governance platform for MSSPs and European critical-infrastructure security teams.
Category
Security
Pricing
Guardsix does not publish specific pricing tiers or numbers on its website. It markets 'predictable pricing' as an alternative to competitors' ingestion-based (data-volume) SIEM pricing, but exact costs require contacting sales.
Verified
Not yet
Last updated
August 6, 2026
GDPR CompliantEnterpriseCloudSelf-Hosted
Guardsix is the March 2026 rebrand of Logpoint, a European cybersecurity vendor founded in Denmark in 2003. Its Command Centre platform bundles SIEM, Network Detection and Response (NDR), Security Orchestration Automation and Response (SOAR), Fleet endpoint management, and Governance/compliance tooling into a single sovereign SecOps stack aimed at MSSPs, SOC teams, and operators of critical infrastructure such as hospitals, power grids, and water utilities. The company positions data sovereignty as its core differentiator, emphasizing on-premises and EU-hosted deployment so customers can 'connect what you already run without cloud dependency risk.' Guardsix's roots trace through the 2007 acquisition of Danish startup Immune (LogEx log management), the 2009 launch of the original LogPoint SIEM, the 2012 LogPoint rebrand, the 2021 acquisition of Israeli SOAR/XDR firm SecBI, a 2023 majority investment from Swedish firm Summa Equity, and the 2024 acquisition of Danish AI-NDR company Muninn under CEO Mikkel Drucker.
Key Features
SIEM — Log management and audit-ready evidence generation for compliance and security monitoring.
Governance — Access control and compliance management, including patient-record access governance for healthcare, supporting NIS2, GDPR, and CADA requirements.
Fleet — Endpoint visibility and control across distributed environments.
NDR (Network Detection and Response) — Monitors network traffic to detect threats and anomalous activity.
SOAR (Security Orchestration, Automation and Response) — Automates incident-response workflows to speed up remediation.
Broad third-party integrations — Connects with cloud providers (Google Cloud, AWS, Oracle), endpoint security (Sophos, ESET), network/firewall vendors (Palo Alto Networks, Cisco, A10 Networks), CyberArk, Rapid7, Qualys, and Salesforce without requiring customers to redesign their environment.
Pros & Cons
Pros
Consolidates SIEM, NDR, SOAR, Fleet, and Governance into one platform instead of stitching together point tools
Strong focus on EU data sovereignty with on-premises/local deployment options
Integrates with widely used security and cloud vendors (Palo Alto, Cisco, CyberArk, Rapid7, Qualys, AWS, Google Cloud, Oracle) without requiring customers to replace existing tooling
Deep cybersecurity pedigree via its Logpoint heritage, including acquired SOAR/XDR (SecBI) and AI-driven NDR (Muninn) technology
Markets predictable, non-ingestion-based pricing, addressing a common pain point with traditional SIEM cost models
Cons
No public pricing is disclosed, making it hard to evaluate cost without contacting sales
Recent rebrand (March 2026) from Logpoint may cause brand-recognition confusion during the transition period
Enterprise-grade SIEM/NDR/SOAR platform is likely overkill and cost-prohibitive for small businesses without dedicated security staff
Marketing is squarely aimed at Europe/critical infrastructure, so fit for non-European or non-regulated organizations is less clear