Skip to content

redborder

Open-source-based network detection and response platform from Spanish telecom engineering firm Eneo Tecnología, combining NDR, IPS, and SIEM-style correlation at carrier scale.

Visit Website ↗ + Add to Compare
43/100Emerging / Unranked

Overview

redborder is a network detection and response (NDR) platform that combines next-generation IPS, network traffic analysis, SIEM-style log correlation, wireless traffic analysis, and hardware/infrastructure monitoring into a single, horizontally scalable big-data pipeline. Built on an open-source core, the platform is designed to scale from small deployments up to carrier- and enterprise-grade networks, using machine learning-driven correlation to flag anomalous traffic patterns across large, high-volume network environments rather than relying purely on signature matching.

redborder is developed by Eneo Tecnología S.L., a network and telecom engineering firm based in Bilbao, Spain, with roots going back to the early 2000s. The product itself is best understood as a specialized security spin-off of that broader telecom engineering practice, aimed at internet service providers, large enterprises, and public-sector network operators that need visibility and correlation across very large volumes of network telemetry. As a small, privately held European vendor, redborder has grown organically rather than through venture funding, and its commercial footprint is modest relative to the well-capitalized NDR vendors it competes against.

redborder’s open-source foundation is a genuine differentiator — the core platform’s code is publicly inspectable, which is unusual in the NDR category and allows technically sophisticated buyers to evaluate the detection logic directly rather than trusting a vendor’s black-box claims. That said, the company has not published results from independent, named third-party evaluations such as MITRE ATT&CK Evaluations, so claims about detection accuracy and scale still rest primarily on the vendor’s own documentation and case examples.

Innovation Matrix Assessment

Innovation Velocity 4/10

As a small, organically-grown team maintaining an open-source-based platform, redborder's release cadence appears steady but modest, without the funding or headcount to match faster-moving venture-backed NDR competitors.

Operational Value 6/10

Combines NDR, next-gen IPS, SIEM-style correlation, and wireless traffic analysis in one horizontally scalable pipeline designed to run from small networks up to carrier-grade scale, a genuinely broad operational scope for a small vendor.

Market Momentum 3/10

No disclosed funding rounds, major customer announcements, or public growth metrics were found; the roughly 17-person team suggests a stable but slow-growing niche vendor rather than one with strong outside momentum.

Category Disruption 4/10

An open-source-based, publicly inspectable NDR core is a meaningful departure from the closed, proprietary detection engines typical of the category, though the overall NDR approach itself is well established rather than novel.

Real-World Efficacy 4/10

No published results from independent, named third-party evaluations such as MITRE ATT&CK Evaluations were found; efficacy claims currently rest on the vendor's own documentation and case examples rather than outside verification.

Enduring Relevance 5/10

Network detection and response remains core security infrastructure, but redborder's relevance is geographically concentrated and its scale is small relative to the NDR category's well-known incumbents.

Why CISOs Should Care

Offers a rare open-source-based NDR core that technically sophisticated teams can inspect directly, combined with broad network visibility spanning IPS, traffic analysis, and SIEM-style correlation in one platform.

What Makes It Different

Its open-source foundation and roots in carrier/telecom network engineering set it apart from the closed, proprietary detection engines common among mainstream NDR vendors.

The Matrix Verdict

43/100 — EMERGING / UNRANKED

A niche but technically credible NDR platform whose open-source transparency is a genuine differentiator, held back by small scale and the absence of independent third-party validation of its detection efficacy.

Editorial Note: Claims vs. Verified Findings

Company history, headquarters, and product architecture are drawn from redborder's own site and independent directories (Cyberwatching.eu, PitchBook); no independent, named third-party detection evaluation (e.g., MITRE ATT&CK Evaluations) was found, so efficacy claims remain vendor-sourced.

Sources