redborder
Open-source-based network detection and response platform from Spanish telecom engineering firm Eneo Tecnología, combining NDR, IPS, and SIEM-style correlation at carrier scale.
Visit Website ↗ + Add to CompareOverview
redborder is a network detection and response (NDR) platform that combines next-generation IPS, network traffic analysis, SIEM-style log correlation, wireless traffic analysis, and hardware/infrastructure monitoring into a single, horizontally scalable big-data pipeline. Built on an open-source core, the platform is designed to scale from small deployments up to carrier- and enterprise-grade networks, using machine learning-driven correlation to flag anomalous traffic patterns across large, high-volume network environments rather than relying purely on signature matching.
redborder is developed by Eneo Tecnología S.L., a network and telecom engineering firm based in Bilbao, Spain, with roots going back to the early 2000s. The product itself is best understood as a specialized security spin-off of that broader telecom engineering practice, aimed at internet service providers, large enterprises, and public-sector network operators that need visibility and correlation across very large volumes of network telemetry. As a small, privately held European vendor, redborder has grown organically rather than through venture funding, and its commercial footprint is modest relative to the well-capitalized NDR vendors it competes against.
redborder’s open-source foundation is a genuine differentiator — the core platform’s code is publicly inspectable, which is unusual in the NDR category and allows technically sophisticated buyers to evaluate the detection logic directly rather than trusting a vendor’s black-box claims. That said, the company has not published results from independent, named third-party evaluations such as MITRE ATT&CK Evaluations, so claims about detection accuracy and scale still rest primarily on the vendor’s own documentation and case examples.
Innovation Matrix Assessment
As a small, organically-grown team maintaining an open-source-based platform, redborder's release cadence appears steady but modest, without the funding or headcount to match faster-moving venture-backed NDR competitors.
Combines NDR, next-gen IPS, SIEM-style correlation, and wireless traffic analysis in one horizontally scalable pipeline designed to run from small networks up to carrier-grade scale, a genuinely broad operational scope for a small vendor.
No disclosed funding rounds, major customer announcements, or public growth metrics were found; the roughly 17-person team suggests a stable but slow-growing niche vendor rather than one with strong outside momentum.
An open-source-based, publicly inspectable NDR core is a meaningful departure from the closed, proprietary detection engines typical of the category, though the overall NDR approach itself is well established rather than novel.
No published results from independent, named third-party evaluations such as MITRE ATT&CK Evaluations were found; efficacy claims currently rest on the vendor's own documentation and case examples rather than outside verification.
Network detection and response remains core security infrastructure, but redborder's relevance is geographically concentrated and its scale is small relative to the NDR category's well-known incumbents.
Why CISOs Should Care
Offers a rare open-source-based NDR core that technically sophisticated teams can inspect directly, combined with broad network visibility spanning IPS, traffic analysis, and SIEM-style correlation in one platform.
What Makes It Different
Its open-source foundation and roots in carrier/telecom network engineering set it apart from the closed, proprietary detection engines common among mainstream NDR vendors.
The Matrix Verdict
43/100 — EMERGING / UNRANKED
A niche but technically credible NDR platform whose open-source transparency is a genuine differentiator, held back by small scale and the absence of independent third-party validation of its detection efficacy.
Editorial Note: Claims vs. Verified Findings
Company history, headquarters, and product architecture are drawn from redborder's own site and independent directories (Cyberwatching.eu, PitchBook); no independent, named third-party detection evaluation (e.g., MITRE ATT&CK Evaluations) was found, so efficacy claims remain vendor-sourced.
Sources
Alternatives to redborder
Forward
CISO ReviewedBuilds a mathematically accurate 'digital twin' of enterprise networks, letting teams verify network and security changes before they…
Zscaler
A cloud-native security-service-edge pioneer that routes all user traffic through a global proxy cloud instead of backhauling it…
Claroty
Cyber-physical systems protection platform securing industrial, healthcare and enterprise IoT devices for critical infrastructure operators.
Tailscale
A zero-configuration mesh VPN built on WireGuard that applies Google's BeyondCorp zero-trust model to make secure networking accessible…
TXOne Networks Inc.
OT and industrial control system cybersecurity built for zero operational disruption, protecting legacy manufacturing and critical infrastructure devices…
Illumio
A microsegmentation pioneer built on the assumption that breaches are inevitable, focused on containing lateral movement rather than…