Everything ops teams need, in one place
OpsGuardian replaces the fragile stack of five separate tools most teams run today — without losing the depth you need when something goes wrong at 2am.
See everything, miss nothing
The OpsGuardian agent ships metrics and logs over OpenTelemetry in near-real-time. Anomaly detection and adaptive baselines mean you get paged on real problems, not transient spikes.
-
OpenTelemetry-native ingestion
No proprietary agent protocol. Your existing OTel pipelines work unchanged.
-
Adaptive anomaly detection
Baselines recalibrate automatically over time — no manual threshold tuning per host.
-
Anomaly-based alerting
Related alerts from the same incident window are raised together. Your on-call sees one page, not twenty.
-
Pre-built dashboards
Curated dashboards for Linux, Windows, Kubernetes, and NGINX — ready the moment your agent connects.
-
Full-text log search
Index and search all logs across every host. Filters by level, host, time range, and freetext.
Alerts that tell you what to do, not just what broke
Every alert in OpsGuardian carries context: which host, which metric, what the AI thinks the root cause is, and which compliance control it affects.
Multi-channel notifications
Route alerts to Email, Slack, Microsoft Teams, PagerDuty, OpsGenie, or a generic Webhook. Different severities can go to different channels.
Threshold alerting
Set static thresholds per metric and host. Alerts fire when a value crosses the configured boundary — no false positives from transient spikes.
Anomaly detection
Z-score analysis and AI classification surface deviations from normal patterns automatically — no manual baseline tuning required.
Severity tiers
Critical, High, Medium, and Low. Critical alerts trigger immediate notifications; others are batched into digests.
Compliance tagging
Alerts are automatically tagged with the ISO 27002, CIS, NIST, SOC 2, or PCI-DSS controls they affect.
Alert history & audit trail
Every alert, acknowledgement, and resolution is stored with timestamps and the user who acted on it.
Compliance guidance without the consulting invoice
When OpsGuardian fires an alert, the AI engine maps it to the relevant compliance control and proposes specific, tested remediation steps — no framework interpretation required from your team.
Unused service accounts flagged → disable or remove per control A.9.2.6.
SSH root login detected → disable PermitRootLogin, enforce key-based auth per CIS 5.3.4.
Log rotation gap → enforce AU-11 compliant rotation schedule.
Unapproved software installed → AI references CC7.2 (System Operations) and suggests removal and documentation steps.
Unencrypted port open on cardholder segment → alert maps to Req 4.2.1.
AI credits
Each AI remediation suggestion consumes one credit. Credits reset monthly. Unused credits don't roll over. You can see your usage in real time from the dashboard.
Essentials
100 / mo
Professional
1 000 / mo
Enterprise
10 000 / mo
Framework guidance
Every AI remediation suggestion references the relevant control IDs from the framework(s) you have enabled. This is guidance-level mapping — it helps your team act on findings with the right control context, not a monitored control engine.
Know what's vulnerable, fix it fast
The agent reports installed packages and running services. OpsGuardian correlates them against the NVD CVE database and shows you the CVEs that matter for your specific fleet — not a generic advisory dump.
CVE inventory per host
Every host gets its own CVE list, scored by CVSS severity, filtered to what's actually installed.
AI-guided remediation
For each CVE, the AI proposes the exact package command or config change needed. No manual cross-referencing.
Explicit approval
Remediation actions require explicit approval before execution.
Audit trail
Every patch action — approved, rejected, or executed — is logged with timestamps and the user responsible.
Run scripts on any host — with guardrails
Admins and operators can queue scripts for remote execution through the OpsGuardian agent. No direct SSH access required. Every command requires explicit confirmation before the agent runs it.
-
Admin or operator initiated
Remote execution is available to org admins and operators. Commands are submitted through the platform and confirmed before execution.
-
Dangerous-pattern flagging
Commands matching rm -rf /, mkfs, dd if=/dev/zero, curl|sh, and fork-bomb patterns are flagged and audit-logged as advisory warnings.
-
Full audit trail
Command text, submitting user, execution timestamp, stdout/stderr, and exit code are stored permanently.
Remote execution is available on Enterprise plan organisations. The feature must be explicitly enabled by an Organisation Admin.
One platform, five frameworks
Enable the frameworks relevant to your organisation. For every AI remediation suggestion, OpsGuardian references the relevant control IDs — giving your team the right context to act and document findings.
ISO/IEC 27002:2022
Information security controls for organisations implementing ISMS. AI remediation suggestions reference controls across asset management, access control, cryptography, and incident management.
CIS Benchmarks
Prescriptive hardening guides for Linux, Windows, and containers. AI suggestions reference the relevant CIS control IDs for each finding.
NIST SP 800-53
Security and privacy controls for any org following the NIST CSF. AI suggestions reference relevant control IDs including AU, SI, SC, and IA families.
SOC 2 Type II
Trust services criteria for SaaS and cloud providers. AI remediation references relevant Trust Services Criteria (CC6, CC7, CC8) in its guidance.
PCI-DSS v4
Payment card industry standard. AI guidance references Requirements 1, 4, 6, 8, and 10 for findings on cardholder environment hosts.
Custom controls
Enterprise plan includes the ability to define your own control mappings for internal or industry-specific frameworks.
OpsGuardian