No article in the knowledge graph for Logpoint yet.
Who is Logpoint?
Logpoint is a cybersecurity vendor providing Security Information and Event Management (SIEM), threat detection, and response platforms for enterprise environments.
- SIEM offerings for centralized log collection and analysis (SIEM).
- Security Operations (SecOps) platforms for threat detection, incident investigation, and response workflows (security operations).
- User and Entity Behavior Analytics (UEBA) capabilities for anomaly detection across identities, endpoints, and infrastructure (UEBA).
- Compliance and audit support through log retention, reporting, and security control monitoring (governance, risk, and compliance).
- Integration with security, IT operations, and infrastructure tools through APIs, connectors, and standardized data formats (security ecosystem integration).
Show more
More About Logpoint
Logpoint focuses on cybersecurity analytics and operations platforms used by enterprises, public sector institutions, and managed security providers to monitor IT environments, detect threats, and support incident response. Its offerings center on SIEM, where log and event data from infrastructure, applications, networks, and security controls are collected, normalized, and analyzed to surface alerts and security-relevant insights.
The Logpoint platform (SIEM) supports ingestion of machine data from heterogeneous sources, correlation of events, and rule-based or analytics-driven detection. It typically relies on architectures that use agents, collectors, or integrations to pull data from endpoints, servers, cloud platforms, and security appliances into a centralized data store. Normalization and parsing of log formats enable cross-system queries and dashboards, which SecOps center (SOC) teams use for monitoring and investigations.
Beyond SIEM, Logpoint includes capabilities in UEBA and security orchestration and response workflows (security analytics and response). UEBA features apply statistical models and pattern analysis to detect deviations in user or system behavior, such as unusual access, privilege use, or data movement. Incident response workflows help SOC analysts triage alerts, review context across multiple data sources, and document response steps.
Logpoint products integrate with directory services, firewalls, endpoint security tools, cloud services, identity and access management platforms, and other security products through connectors, APIs, and standardized protocols such as syslog. Support for standard query languages and dashboards allows security teams to build custom views for compliance reporting, operational monitoring, and threat hunting. The platform is typically deployed in data centers, cloud environments, or hybrid architectures according to enterprise requirements.
From a marketplace categorization perspective, Logpoint fits into SIEM, security analytics, and SecOps tooling used by enterprises that require centralized visibility, compliance documentation, and structured incident handling. It is selected as part of broader security architectures that may also include Endpoint Detection And Response (EDR), network detection, and identity security, with Logpoint acting as a central aggregation and analysis layer for security-relevant telemetry.
Our description of Logpoint. Updated January 2026.