Cyber Security

NXLog

NXLog is a high-performance, cross-platform log management and security data collection platform trusted by enterprises worldwide to centralise, parse, and forward massive volumes of log data in real time.

Cyber Security Visit website

Why NXLog?

Enterprise security teams are drowning in log data scattered across Windows endpoints, Linux servers, cloud workloads, OT systems, and network devices. NXLog solves this by providing a single, lightweight agent and platform that collects, normalises, enriches, and forwards log and event data to any SIEM, SOAR, or log analytics destination β€” at scale, without dropping events. For Aquion resellers, NXLog represents a compelling attach sale alongside SIEM platforms such as Microsoft Sentinel, Splunk, IBM QRadar, and Elastic. Customers who already own a SIEM licence frequently struggle with log ingestion cost and coverage gaps β€” NXLog directly solves both problems, making it an easy conversation to start.

Core Product Portfolio

NXLog Enterprise Edition

The flagship agent and server platform for large-scale log collection, parsing, and routing. Supports 100+ input/output modules covering Windows Event Log, syslog, files, databases, cloud APIs, and more. Centrally managed with role-based access control.

NXLog Platform (Cloud)

A SaaS-delivered log management and analytics platform offering centralised log collection, structured search, dashboards, and alerting β€” without the overhead of managing on-premises infrastructure. Ideal for customers moving to cloud-first security operations.

NXLog Community Edition

A free, open-source log collector that enables organisations to evaluate NXLog's capabilities before committing to the enterprise tier. A great entry point for resellers to land a proof of concept quickly and drive upsell to Enterprise Edition.

OT & ICS Log Collection

NXLog extends visibility into operational technology environments, collecting logs from SCADA, ICS, and industrial devices. Addresses compliance and security requirements in sectors such as utilities, manufacturing, and critical infrastructure.

Key Enterprise Features to Lead With

When positioning NXLog to enterprise end customers, highlight these differentiators: Multi-platform agent coverage β€” NXLog runs on Windows, Linux, macOS, AIX, Solaris, and Raspberry Pi, giving customers true universal coverage across heterogeneous environments. High-throughput, low-footprint β€” The agent is engineered to handle hundreds of thousands of events per second with minimal CPU and memory impact, critical for large endpoint fleets. Advanced log parsing and enrichment β€” A powerful configuration language (NXLog config) allows teams to parse custom log formats, add contextual fields, mask sensitive data, and route events conditionally before they ever reach the SIEM β€” reducing ingestion costs significantly. Encrypted, reliable transport β€” TLS-encrypted forwarding with disk buffering ensures no log events are lost during network interruptions or SIEM downtime. Compliance-ready β€” Pre-built support for PCI DSS, HIPAA, ISO 27001, and Essential Eight log requirements helps customers accelerate audit readiness.

NXLog by the Numbers

15M+ Endpoints protected globally
100+ Input & output modules
50+ Supported operating systems & platforms
1M+ Events per second throughput

Target Market & Ideal Customer Profile

NXLog is best suited to mid-market and enterprise organisations with complex, multi-platform IT environments and an existing or planned SIEM investment. Key verticals include financial services, government, healthcare, utilities, and higher education β€” all sectors with strong compliance drivers and heterogeneous infrastructure. The ideal conversation is with a Security Operations Manager, CISO, or IT Architect who is either experiencing SIEM ingestion cost blowout, struggling with log coverage gaps on non-Windows systems, or trying to meet compliance mandates such as ACSC Essential Eight, PCI DSS, or ISO 27001. NXLog is also an excellent fit for managed security service providers (MSSPs) looking to standardise log collection across their customer base using a single, multi-tenant-capable agent platform.

Reseller Opportunity & How to Position

Attach to SIEM Deals

Any customer buying or renewing Microsoft Sentinel, Splunk, QRadar, or Elastic is a NXLog prospect. Position it as the log collection and cost-control layer that makes their SIEM investment go further.

Compliance-Led Entry

Use Essential Eight Maturity Level 2 and 3 log requirements or upcoming government compliance mandates as the conversation opener. NXLog helps customers demonstrate and evidence control effectiveness.

SIEM Cost Reduction Story

Customers with high-volume SIEM ingestion bills respond well to NXLog's filtering, aggregation, and pre-processing capabilities, which can dramatically reduce chargeable data volumes sent to cloud SIEMs.

Deal Registration

Register your NXLog opportunities through Aquion to protect your margin and access pre-sales technical support. Contact your Aquion account manager to discuss partner pricing and evaluation licences.

“NXLog gave us the ability to centralise log collection from over 12,000 endpoints across Windows and Linux β€” something we simply couldn't achieve cost-effectively with our SIEM agent alone. The difference in ingestion cost was significant and immediately visible.”
Infrastructure Security Lead β€” Large Financial Services Organisation, Australia

Frequently Asked Questions

How does NXLog licensing work?
NXLog Enterprise Edition is licensed per endpoint (agent) on an annual subscription basis. Volume tiers provide significant discounts for large deployments. Contact Aquion for a reseller price list and deal registration details.
Does NXLog replace a SIEM?
No β€” NXLog is a log collection, normalisation, and forwarding platform. It is designed to complement and enhance a SIEM, not replace it. Think of NXLog as the universal data pipeline that ensures your SIEM receives clean, complete, cost-optimised log data.
Can NXLog collect from cloud environments like Azure, AWS, and Microsoft 365?
Yes. NXLog supports log collection from major cloud platforms via API-based input modules, including Azure Event Hub, AWS CloudWatch, Microsoft 365 Audit Logs, and Google Cloud Logging.
Is there a free trial or proof-of-concept licence available?
Yes. NXLog Community Edition is freely available and can be used for POC deployments. Enterprise Edition evaluation licences are available through Aquion for qualified reseller opportunities.
How does Aquion support NXLog resellers?
Aquion provides pre-sales technical assistance, deal registration management, access to evaluation licences, and co-sell support for NXLog opportunities across Australia and New Zealand. Reach out to your Aquion account manager to get started.

Resources for Resellers

Ready to Add NXLog to Your Security Portfolio?

Contact Aquion to register your first NXLog deal, request evaluation licences, or access pre-sales technical support for your next enterprise opportunity.