---
title: Guardsix Reviews
meta_title: 'Guardsix Reviews 2026: Details, Pricing, & Features | G2'
meta_description: Filter 108 reviews by the users' company size, role or industry
  to find out how Guardsix works for a business like yours.
aggregate_rating:
  rating_value: 4.3
  review_count: 108
  scale: '5'
date_modified: '2026-07-17'
parent_category:
  name: System Security
  url: https://www.g2.com/categories/system-security
---

# Guardsix Reviews
**Vendor:** guardsix  
**Category:** [Security Information and Event Management (SIEM) Software](https://www.g2.com/categories/security-information-and-event-management-siem)  
**Average Rating:** 4.3/5.0  
**Total Reviews:** 108
## About Guardsix
Guardsix is the sovereign security platform for lean European teams, bringing log management and audit-ready compliance to regulated industries, critical national infrastructure operators, and the Managed Security Service Providers (MSSPs) that serve them throughout Europe and beyond. Headquartered in Copenhagen, Denmark, Guardsix delivers sovereign-by-design security for organisations that carry real operational responsibility. The company employs several hundred cyber security specialists and keeps every organisation it serves in full control of their data, deployment, and operations. Guardsix provides a unified Command Centre platform combining: • Security Information and Event Management (SIEM) • Network Detection and Response (NDR) • Security Orchestration, Automation and Response (SOAR) • Fleet for enabling multi-tenant management • Governance for Healthcare internal risk compliance monitoring The platform is built to support European data sovereignty, regulatory compliance and operational control, with predictable node-based pricing and deployment options spanning on-premises, air-gapped, hybrid and cloud environments. Guardsix solutions help organisations: • Simplify audit readiness for regulations such as NIS2, DORA, and GDPR. • Support lean security teams with efficient log management and simplified workflows. • Scale security operations without increased complexity or ingestion-led pricing surprises. • Keep security data under European jurisdiction and control — where it lives, who operates it, and under whose laws. • Deploy on their own terms, on-prem and in infrastructure they control, keeping migration a real option at every renewal. • See clearly across their whole environment, with SIEM, NDR, SOAR, Fleet, and Governance in one sovereign platform rather than a stack of point tools. Guardsix maintains SOC 2 Type II attestation and designs its solutions in accordance with European data protection requirements. With a strong partner-first model, Guardsix works closely with regional MSSPs and service providers, combining sovereign-by-design security technology with European integrity and deployment flexibility.



## Guardsix Pros & Cons
**What users like:**

- Users appreciate the **ease of use** of Guardsix, making administration and navigation simple and efficient. (8 reviews)
- Users appreciate the **effortless integration and usability** of Logpoint, enhancing efficiency in managing diverse log data. (5 reviews)
- Users appreciate the **excellent customer support** provided by Logpoint, enhancing their experience and satisfaction with the product. (4 reviews)
- Users appreciate the **easy integrations** of Guardsix, allowing seamless compatibility with their tech ecosystem for enhanced functionality. (4 reviews)
- Users appreciate the **efficiency** of Guardsix in managing incidents and integrating with existing tools seamlessly. (4 reviews)
- Integration Capabilities (4 reviews)
- Integrations (4 reviews)
- Users value the **predictable pricing model** of Logpoint, enhancing budget control and supporting efficient incident management. (4 reviews)
- Users find LogPoint to be **more affordable than the competition** , making it an attractive choice for cybersecurity solutions. (3 reviews)
- Automation (3 reviews)

**What users dislike:**

- Users criticize the **poor interface design** of Guardsix, finding it difficult to understand and navigate effectively. (3 reviews)
- Users find the **poor log presentation** and overall interface slow, hindering their experience with Guardsix. (3 reviews)
- Users find the **interface complexity** challenging, but hope for improvements in the near future. (2 reviews)
- Users find the **confusing interface** of Guardsix difficult to navigate and slow to respond. (2 reviews)
- Users find there is an **information deficiency** regarding appliance design and resource requirements for new devices. (2 reviews)
- Integration Issues (2 reviews)
- Lack of Guidance (2 reviews)
- Lack of Training (2 reviews)
- Learning Curve (2 reviews)
- Learning Difficulty (2 reviews)

## Guardsix Reviews
  ### 1. Context-Driven SIEM That Enhances Incident Response

**Rating:** 4.5/5.0 stars

**Reviewed by:** Simon A.

**Reviewed Date:** November 20, 2025

**What do you like best about Guardsix?**

I appreciate that Logpoint treats context as a first-class citizen, which is crucial for handling modern cloud telemetry and traditional on-premise systems efficiently. It seamlessly unifies various types of telemetry and identity analytics without needing to patch together disparate tools. I love how Logpoint transforms a traditional SIEM into an investigation engine through its taxonomy model, which ensures that logs are standardized, making cross-environment investigations feel almost effortless. The focus on collecting meaningful data rather than just volume is refreshing, allowing me to sift through and extract valuable insights without being overwhelmed by unnecessary information. Additionally, Logpoint's integration with existing tools across security, identity, and infrastructure enhances its value even further, demonstrating its compatibility and adaptability with the rest of my tech ecosystem. This makes it a tool of choice over others we've previously used, like Splunk.

**What do you dislike about Guardsix?**

Logpoint's power is derived from its structured approach, but this comes with a real learning curve. If I don't invest the time to understand its taxonomy and query language, I won't unlock its full potential. The system isn't necessarily complicated, but it's different from the 'anything goes' approach used by traditional SIEMs. The strict taxonomy, structured query language, and dashboards follow a very defined logic, requiring dedicated time and effort to master effectively.

**What problems is Guardsix solving and how is that benefiting you?**

Logpoint unifies cloud and on-premise telemetry, replacing multiple tools and saving time spent on incident responses. It emphasizes meaningful data collection, standardizing logs for effortless cross-environment investigations, transforming it into a powerful investigation engine.

  ### 2. Used logpoint for years as a security analyst

**Rating:** 3.0/5.0 stars

**Reviewed by:** Verified User in Computer & Network Security | Enterprise (> 1000 emp.)

**Reviewed Date:** February 17, 2025

**What do you like best about Guardsix?**

I think the simplicity is a key factor with logpoint, its simple to use and is quite easy to learn compared to other SIEM platforms.

**What do you dislike about Guardsix?**

I think the logs are presented very poorly and it lacks a lot of the functions that a SIEM like splunk has.

**What problems is Guardsix solving and how is that benefiting you?**

Helps us build use-cases for detecting malicious activity.

  ### 3. Logpoint Core experience

**Rating:** 4.5/5.0 stars

**Reviewed by:** Fabien L. | Senior Sales Engineer / IT Manager / Trainer, Mid-Market (51-1000 emp.)

**Reviewed Date:** February 02, 2022

**What do you like best about Guardsix?**

Ease of deployment and day to day exploitation.
Intégration with other tools. Ability to have an integrated SOAR with alert and case management

**What do you dislike about Guardsix?**

It miss some advices to well design and size the appliance when adding new devices. Indeed it's possible to overkill ressources just because we are not aware of needed ressources

**What problems is Guardsix solving and how is that benefiting you?**

Central view about logs and ability to cross these information to valuable inputs about IT usage. Automate the incident response

  ### 4. Logpoint has helped us become more efficient at a lower cost

**Rating:** 5.0/5.0 stars

**Reviewed by:** Verified User in Events Services | Enterprise (> 1000 emp.)

**Reviewed Date:** April 25, 2023

**What do you like best about Guardsix?**

The solution is easy to use. The new case management capabilities means we can manage all incidents more efficiently and save time in our daily work. The licensing model means we can easier control our budget

**What do you dislike about Guardsix?**

It does require some configuration to get the most value out of the solution, but that is what I expect from any SIEM tool.

**What problems is Guardsix solving and how is that benefiting you?**

We have been able to gather several tools into one platform, which makes it easier to work with in our SOC.

  ### 5. MSSP experience with Logpoint

**Rating:** 4.0/5.0 stars

**Reviewed by:** Ivo M. | Cyber Security Solutions Engineer, Mid-Market (51-1000 emp.)

**Reviewed Date:** March 07, 2023

**What do you like best about Guardsix?**

Support is great, Relatively easy to configure and set up the MVP. Fine-tuning takes more time and effort.

**What do you dislike about Guardsix?**

Fine-tuning features to work exactly as you intend can be tricky. I wish there were more manuals available online for configuration.

**What problems is Guardsix solving and how is that benefiting you?**

At Telia Estonia, we deploy and manage Logpoint for our Business Customers. Our customers are satisfied with Logpoint capabilities and support.

  ### 6. Easy to use

**Rating:** 4.0/5.0 stars

**Reviewed by:** Fredrik R. | Small-Business (50 or fewer emp.)

**Reviewed Date:** March 07, 2023

**What do you like best about Guardsix?**

The best part about logpoint is that it is easy to use.

**What do you dislike about Guardsix?**

Lacks some integrations that is vital for us.

**What problems is Guardsix solving and how is that benefiting you?**

Its helping us secure our environment and providing our courts with a secure network.

  ### 7. All in one solution

**Rating:** 4.0/5.0 stars

**Reviewed by:** Brandur K. | Enterprise (> 1000 emp.)

**Reviewed Date:** March 07, 2023

**What do you like best about Guardsix?**

That you can basically handle a complete incident from one dashboard.

**What do you dislike about Guardsix?**

Management overhead. But it is my current understanding that this will improve a lot in the coming year.

**What problems is Guardsix solving and how is that benefiting you?**

Consolidation of log deep-dives

  ### 8. SIEN administrator

**Rating:** 4.0/5.0 stars

**Reviewed by:** Erik N. | Mid-Market (51-1000 emp.)

**Reviewed Date:** March 07, 2023

**What do you like best about Guardsix?**

SIEM execution speed. Easy to use and easy to administrate.

**What do you dislike about Guardsix?**

Backup function is slow. Interface is slow

**What problems is Guardsix solving and how is that benefiting you?**

Incident responce


## Guardsix Discussions
  - [What is your experience with Logpoint for SIEM, and what do you recommend for new users?](https://www.g2.com/discussions/what-is-your-experience-with-logpoint-for-siem-and-what-do-you-recommend-for-new-users)
  - [What is LogPoint used for?](https://www.g2.com/discussions/what-is-logpoint-used-for)

- [View Guardsix pricing details and edition comparison](https://www.g2.com/products/guardsix/reviews?filters%5Bsentiment_snippet%5D=1267100&qs=pros-and-cons&section=pricing&secure%5Bexpires_at%5D=2026-07-27+03%3A35%3A59+-0500&secure%5Bsession_id%5D=da8c4116-48a3-4924-8979-c755c31b3c71&secure%5Btoken%5D=62863de72a9333510bbcca77fc1394d9625424e2f8f605e96c902c2d258af0db&format=llm_user)
## Guardsix Integrations
  - [Wazuh](https://www.g2.com/products/wazuh/reviews)

## Guardsix Features
**Visibility**
- Dashboards and Visualizations
- Alerts and Notifications
- Reporting

**Data Preparation**
- Data Sources
- Indexing
- Automated Tagging
- Data Blending

**Analysis**
- Incident Reporting
- Network Visibility
- Metadata Enrichment
- Metadata Management

**Generative AI**
- AI Text Summarization

**Functionality - SAP Security Software**
- Visualizations
- Log Analysis
- SIEM capabilities
- Prebuilt content and integrations
- User Identification
- 360 degree security

**Agentic AI - User and Entity Behavior Analytics (UEBA)**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

**Agentic AI - SAP Store**
- Autonomous Task Execution
- Multi-step Planning
- Cross-system Integration
- Adaptive Learning
- Natural Language Interaction
- Proactive Assistance
- Decision Making

**Orchestration**
- Asset Management
- Security Workflow Automation
- Deployment
- Sandboxing

**Response**
- Resolution Automation
- Resolution Guidance
- System Isolation
- Threat Intelligence
- Incident Investigation

**Network Management**
- Activity Monitoring
- Asset Management
- Log Management

**Monitoring and Management**
- Automation
- Performance Baseline
- Real-Time Monitoring

**Analysis**
- Continuous Analysis
- Behavioral Analysis
- Data Context
- Activity Logging

**Automation**
- Workflow Mapping
- Workflow Automation
- Automated Remediation
- Log Monitoring

**Analysis**
- Track Trends
- Detect Anomalies
- Metric and Event Data
- Search
- Alerts
- Live Tail

**Response**
- Incident Alerts
- Response Orchestration

**Agentic AI - SAP Security Software**
- Autonomous Task Execution
- Cross-system Integration
- Proactive Assistance

**Information**
- Proactive Alerts
- Malware Detection
- Intelligence Reports

**Records**
- Incident Logs
- Incident Reports

**Incident Management**
- Event Management
- Automated Response
- Incident Reporting

**Detection**
- Anomaly Detection
- Incident Alerts
- Activity Monitoring

**Orchestration**
- Security Orchestration
- Data Collection
- Threat Intelligence
- Data Visualization

**Visualization**
- Dashboards
- Data Discovery

**Detection**
- Multi-Network Monitoring
- Asset Discovery

**Agentic AI - Log Monitoring**
- Autonomous Task Execution
- Multi-step Planning
- Cross-system Integration
- Adaptive Learning
- Natural Language Interaction
- Proactive Assistance
- Decision Making

**Personalization**
- Endpoint Intelligence
- Security Validation
- Dynamic/Code Analysis

**Management**
- Incident Alerts
- Incident Case Management
- Workflow Management

**Security Intelligence**
- Threat Intelligence
- Vulnerability Assessment
- Advanced Analytics
- Data Examination

**Response**
- Alerting
- Performance Baselin
- High Availability/Disaster Recovery

**Agentic AI - Log Analysis**
- Autonomous Task Execution
- Multi-step Planning
- Cross-system Integration
- Adaptive Learning
- Natural Language Interaction
- Proactive Assistance
- Decision Making

**Generative AI**
- AI Text Summarization
- Generate Attack Scenarios
- Generate Threat Detection Rules
- Generate Threat Summaries

**Generative AI**
- AI Text Generation
- AI Text Summarization

**Agentic AI - Threat Intelligence**
- Autonomous Task Execution
- Multi-step Planning
- Proactive Assistance
- Decision Making

## Top Guardsix Alternatives
  - [Microsoft Sentinel](https://www.g2.com/products/microsoft-sentinel/reviews) - 4.4/5.0 (273 reviews)
  - [IBM QRadar SIEM](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews) - 4.4/5.0 (282 reviews)
  - [CrowdStrike Falcon Endpoint Protection Platform](https://www.g2.com/products/crowdstrike-falcon-endpoint-protection-platform/reviews) - 4.6/5.0 (416 reviews)

