Axoflow at Gartner Security & Risk Management Summit, London

Axoflow at Gartner Security & Risk Management Summit, London

Axoflow is heading to Gartner Security & Risk Management Summit in London, September 22–24, 2026, at ExCeL London - our first European event. It feels a little surreal saying that: our engineering base is in Budapest, and this is the first time we're bringing the booth to the continent part of our team calls home. We'll be in the Startup Village, booth #306.

This is a different room than our usual US shows. It's C-level heavy, and Gartner's own 2026 CISO research says exactly what that room is worried about: "75% of CISOs identify budget or resource constraints as a challenge to meeting their strategic objectives in the next 6 months." — Source: Gartner, Chief Information Security Officer: 2026 Mission-Critical Priority (MCP), 2026. Their own agenda even programs a session on vendor consolidation and cost rationalization. That's the conversation we're built for.

Cut your SIEM bill, not coverage.

That's the line on our booth this year, and it's the whole pitch. Most environments are indexing raw, unfiltered log volume because nobody built the layer that decides what's worth indexing before it reaches the SIEM. The instinct is to blame the SIEM vendor. It's rarely the SIEM. It's the data hitting it.

Axoflow sits in front of whatever SIEM you already run — Splunk, Sentinel, QRadar, whatever it is — and classifies, normalizes, and decides what's signal before it gets there. What you pay to index is what you actually need to detect, investigate, and keep. Everything else lands in low-cost storage, still there in full when you need it for an investigation or an audit.

What we're showing: detection before ingest

The new part this year is Detection running in-stream. Rules execute in the pipeline itself, before the event ever reaches your SIEM, and only the findings get forwarded on. Not the raw log. The alert.

That's a different cost equation than sending everything and letting the SIEM sort it out afterward, and a different reliability one for the detection engineer: the rule runs against data Axoflow already normalized, so a vendor log-format change upstream doesn't quietly break the detection downstream.

It's also another step of where we're taking the platform: a pipeline that stops needing to be babysat, storage that adapts to whatever you throw at it, detection that runs where the data already lives. That full picture is the Autonomous Security Data Layer.

Detection is in early access now. Come see it live at the booth.

Who's there

Balázs Scheidler — CEO & Co-founder. Creator of syslog-ng, presenting both sessions above.

Sándor Guba — CTO & Co-founder. Creator of the Kubernetes Logging Operator, leads Axoflow's technical vision — and co-presents the SEC2009 workshop.

Neil Boyd — VP of Sales & Co-founder. Eight-plus years driving syslog-ng adoption in North America; works directly with CISOs on cutting SIEM cost without cutting coverage.

Richard Hosgood — Director of Sales Engineering. He'll walk you through exactly how Axoflow slots in front of the Splunk ingestion you already run.

Mate Benedek, VP of Marketing. The go-to person on-site for analyst conversations — find him if you want to talk about where security operations are heading.

Book a meeting

We'll be running one-on-one sessions throughout the show. If you're attending Gartner SRM London and want to talk about cutting your SIEM bill without cutting coverage, or seeing in-stream detection live, find us at booth #306 or book time with us.

Follow Our Progress!

We are excited to be realizing our vision above with a full Axoflow product suite.

Sign Me Up
This button is added to each code block on the live site, then its parent is removed from here.

Fighting data Loss?

Balázs Scheidler

Book a free 30-min consultation with syslog-ng creator Balázs Scheidler

Recent News

Axoflow at Splunk .conf26
Axoflow at Central Ohio InfoSec Summit 2026
Axoflow at Gartner Security & Risk Management Summit 2026