Axoflow Launches AxoDetect, Bringing Detection Into the Pipeline and Making the SIEM Optional
Axoflow's AxoDetect enters early access, executing Sigma rules in-stream so only alerts reach the SIEM while full-fidelity logs land in the AxoLake data lake.
Axoflow released AxoDetect in early access, announced at Splunk .conf26, which runs customer Sigma detection rules in-stream on normalized security data before SIEM ingestion. Alerts travel to the SIEM while full-fidelity logs land in AxoLake, the company's low-cost security data lake that also runs on-premises. Vendor-cited outcomes include 50% lower SIEM spend and 85% faster resolution at an industrial company, and 80% data volume reduction at a government agency.