Features and Capabilities

Secure60 is a modern security and compliance platform that centralises log storage, protects critical infrastructure, and helps you meet regulatory requirements. Built for security operations, compliance teams and IT administrators, it pairs long-term log retention with threat detection, real-time alerting and forensic search.

Whether your focus is long-term log retention (ISO 27001, PCI DSS, Essential Eight), detecting suspicious activity, or proving auditability across systems, Secure60 gives you the flexibility and visibility to operate securely.

Secure60 architecture: collectors in the customer environment feed the ingest layer, the platform stores and analyses events (rules, threat intelligence, anomaly analysis, threat management and response), and results flow out to the portal and external response tooling
The bigger picture

This page is the technical feature list. For the capability-by-capability overview, see the Platform overview, Log Management and SIEM.

Core capabilities

Centralised log collection & storage

Ingest logs from servers, firewalls, cloud services, applications and network devices, stored with integrity guarantees and the retention windows you set.

Compliance-ready retention & access control

Retention windows per log source, control over who can view or export data, and a tamper-evident audit trail — mapped to ISO 27001, PCI DSS, Essential Eight, NIST and HIPAA.

Searchable archive & reporting

Search stored logs for forensic or compliance investigations, and export detailed, timestamped reports for auditors or stakeholders.

Security monitoring & detection

A managed ruleset across hundreds of applications and devices, plus custom rules for anomalous behaviour. Route alerts to email, ticketing systems or SIEM dashboards.

Tenant hierarchy & RBAC

Multi-tenancy built into the core (MSP- and enterprise-friendly) with configuration inheritance between tenants, and fine-grained roles — Admin, Operator, Read-only — across the portal and API.

Data masking & privacy

Mask sensitive fields — usernames, IP addresses, patient identifiers — at the point of collection, to support privacy laws like GDPR and HIPAA.

Secure by design

Data is encrypted in transit and at rest, all access is logged, and internal processes follow ISO 27001 principles. Secure60 is itself ISO 27001:2022 certified.

Extended features

Threat correlation & scoring

Multi-field correlation and threat scoring through User and Entity behavioural analytics — built for SOC teams and managed service providers.

NetFlow & network insight

Ingest network flow data with flexible log search, metrics analysis and reporting.

Custom dashboards & visualisations

Build dashboards that visualise log volumes, top talkers, error trends or compliance KPIs over time.

Reporting engine

Pre-built reports plus easy custom reports built from search queries, metrics and entity data — all exportable.

API-first architecture

Fully documented REST APIs to automate ingestion, search, rule creation and export workflows.

Detailed capabilities

Log collection & management

Security monitoring & detection

Compliance & data protection

Platform

Analytics & reporting

Back to top