Skip to main content

Welcome to UTMStack

UTMStack is a unified threat management platform that combines SIEM (Security Information and Event Management) and XDR (Extended Detection and Response) capabilities. Our platform provides real-time correlation of log data, threat intelligence, and malware activity patterns to identify and halt complex threats.

Get started

Quickstart

Get UTMStack up and running in minutes

Installation guide

Complete installation instructions for Ubuntu and ISO

System requirements

Hardware and resource requirements for your deployment

Deploy agents

Install agents on Windows and Linux endpoints

Core capabilities

Log management

Collect, parse, and correlate logs from 30+ sources

Threat detection

Real-time threat detection with correlation rules

Threat intelligence

Integrated threat intelligence feeds and IOC matching

SOC AI

AI-powered alert prioritization and analysis

Compliance

HIPAA, SOC2, and CMMC compliance monitoring

SOAR automation

Automated incident response and workflows

Integrations

Connect UTMStack with your existing security infrastructure:

AWS

Azure

GCP

Office 365

CrowdStrike

Sophos

API and architecture

API reference

RESTful API for automation and integration

Architecture

System architecture and scalability

Community and support

GitHub

View source code and contribute

Discord

Join our community on Discord

Build docs developers (and LLMs) love