Solutions matched to the problem, not to a catalog
Nine areas — from data recovery to protection of industrial networks. Each with specific vendor products that we implement and maintain.
Nine solution areas
Organized by business need, not by vendor — because that is what the conversation usually sounds like: "I need to restore data after an attack", "I have to demonstrate NIS2 compliance", "I don't know what is happening in the production network".
Xopero (SphereCyberX Backup & Recovery)
- Xopero ONE Backup & Recovery — protection of Windows/Linux/macOS workstations, physical servers, VMware and Hyper-V virtual machines, Microsoft 365, DevOps/Git/GitHub/GitLab and JIRA systems
- xSAIR (Secure AirGap Immutable Repository) — technology for logical, automatic network isolation of the repository based on a Zero Trust model
- Xopero Unified Protection (XUP) — an integrated all-in-one hardware and software solution with inline deduplication, with no license limits on endpoints and virtual machines
- Xopero Cloud Storage — a sovereign cloud backup repository located in the European Union
CloudFerro (Storage & Cloud Infrastructure)
- Object Storage S3 & Block Storage — secure, scalable storage of unstructured data and flexible disks for virtual machines
- Ephemeral storage — fast temporary memory for dynamic computing
- Virtual machine storage and virtual machine image storage
Tenable (Vulnerability & Patch Management)
- Tenable Patch Management — an automated module for orchestrating patches and software updates on endpoints and servers
- Nessus Professional / Nessus Essentials — the global standard for IT vulnerability scanning
- Tenable Vulnerability Management — scanning and managing cloud and hybrid vulnerabilities (formerly Tenable.io)
- Tenable Security Center — enterprise-level on-premise vulnerability management (formerly Tenable.sc)
BTC Solutions
- BTC eAuditor Patch Management — automation of patch deployment
CardinalOps (Cribl Agentic Detection Engineering)
- CardinalOps Detection Posture Management Platform — automatic validation and continuous mapping of detection rules against the MITRE ATT&CK matrix, and elimination of blind spots
- Continuous Threat Exposure Management (CTEM) — unification and correlation of preventive and detective controls
Cribl (The AI Platform for Telemetry)
- Cribl Stream — intelligent filtering, volume reduction, masking and dynamic routing of logs and telemetry
- Cribl Edge — collecting, processing and optimizing metrics at the network edge and on endpoints
- Cribl Search — searching and analyzing distributed telemetry data in place
- Cribl Lake — flexible, sovereign telemetry storage without vendor lock-in
- Cribl Guard (Background Detection) — detecting sensitive PII/PCI data in traffic using local NER and regex, without sending it to external LLMs
- Cribl Copilot / Copilot Editor — a generative assistant and editor for transformation pipelines in natural language
Elastic
- Elasticsearch (Core Stack) — a distributed, high-performance database, search engine and vector database for logs, metrics and security data
- Kibana (Core Stack) — a centralized visualization, analytics and configuration interface for managing the Elastic environment
- Logstash (Core Stack) — a pipeline engine for ingesting, transforming, enriching and exporting telemetry data
- Elastic Agent & Beats (Core Stack) — lightweight agents and specialized telemetry data shippers
- Elastic Observability — unified monitoring of logs, APM at the application code level and the health of physical and cloud infrastructure
Tenable (Attack Surface & Application Monitoring)
- Tenable Attack Surface Management (ASM) — managing the external, internet-facing attack surface
- Tenable Web App Scanning (WAS) — automatic security scanning of web applications and APIs
Fortinet (unified security and SecOps)
- FortiAI-Protect — DLP for prompts, guardrails for GenAI models, Shadow AI, zero-day sandboxing
- FortiAI-Assist — a GenAI assistant automating NOC/SOC work, alert triage, threat hunting and Day 1 to Day N network configuration
- FortiAI-SecureAI / FortiAIGate — a secure LLM gateway protecting model runtime against model tampering and prompt injection, GPU optimization
- FortiEndpoint / FortiNDR / FortiDeceptor — EDR/XDR endpoint protection, NDR network, deception technology
- FortiDLP — endpoint data loss protection combined with insider risk management
- FortiSandbox — AI-assisted protection against zero-day threats and ransomware
- FortiWeb & FortiADC — web application protection, API WAF and Load Balancing
- FortiSIEM & FortiSOAR — Next-Gen SIEM class systems, SOAR orchestration and SOC operations automation
WALLIX (Workforce Identity — formerly Trustelem)
- WALLIX IDaaS — cloud and on-premise single sign-on (SSO) and identity management, based on Trustelem technology
- WALLIX Authenticator (MFA Application) — a push/TOTP authentication app, compatible with SAML, LDAP and RADIUS
WALLIX (PAM, Secrets & PEDM)
- WALLIX PAM — control, password rotation and authorization of privileged accounts and API keys
- WALLIX Remote Access — rigorous supervision and recording of remote sessions of external developers and contractors
- WALLIX Web Session Manager — recording and control of sessions carried out through web interfaces
- WALLIX Enterprise Vault & AAPM — a vault for passwords, API keys and certificates for DevOps pipelines and application-to-application communication
- WALLIX One Enterprise Vault — a business password vault in a SaaS model
- WALLIX BestSafe (PEDM) — managing the permissions of processes and applications on workstations and servers according to the Least Privilege principle
- WALLIX IAG — periodic permission analysis and access reviews
- WALLIX ONE — an integrated Zero-Trust SaaS platform
- Malizen (UBA) — AI-based behavioral analysis of users for anomalies and insider threats
ESET
- ESET Endpoint Protection / EDR — continuous monitoring and multi-layered protection of workstations and servers
Safetica (Intelligent Data Security)
- Safetica ONE — proactive, inline detection and blocking of access to more than 200 unauthorized GenAI tools
- Safetica 11 / Safetica Platform — cloud-based DLP, behavioral risk assessment and insight into user activity in GenAI
- Safetica On-Prem — traditional on-premise DLP, device control and insider risk management
- Contextual Defense — contextual protection, data discovery and classification
BTC Solutions
- BTC eAuditor DLP — protection of data in motion and in use, USB device control
- Bluur AI — local, secure anonymization of documents before sending them to GenAI
- BTC eAuditor AI Classifier — behavioral blocking of dangerous processes and websites
Sara.Next (IGA — Identity Governance and Administration)
- Sara.Next — an IGA-class product that:
- automates HR processes (Joiner-Mover-Leaver)
- runs an electronic request workflow (Self-Service Portal)
- enforces periodic permission reviews (Access Certification)
- enforces security rules (Segregation of Duties — SoD)
Rublon · Wazuh · Zabbix
- Rublon MFA — a Polish strong multi-factor authentication solution for workstations and on-premise and cloud systems
- Wazuh SIEM/XDR — an open, scalable system for security monitoring, threat detection and incident analysis
- Zabbix Monitoring — open-source enterprise-class software for monitoring the performance and availability of servers, networks and services
Elastic (Security)
- Elastic SIEM — next-generation security analytics, automatic event correlation, anomaly detection using machine learning
- Elastic Endpoint Security (EDR/XDR) — agentless or agent-based prevention and detection of ransomware, malware and exploits
- Elastic Cloud Security (CNAPP / CSPM / KSPM) — continuous cloud security assessment, Kubernetes security posture management and cloud threat detection
- Elastic AI Assistant for Security — a generative-AI-based assistant supporting SOC analysts in interpreting alerts and optimizing detection rules
Arista Networks
- High-performance, intelligent enterprise-class network switches and transmission solutions for data centers and campuses
Juniper (HPE)
- Secure, automated enterprise-class network and transmission architecture — switches, routers, Wi-Fi — integrated with Zero Trust mechanisms
Fortinet (Secure Networking)
- FortiGate NGFW — next-generation firewalls and IT/OT network segmentation
- Secure Ethernet Switches (FortiSwitch) & Secure Wireless LAN (FortiAP)
- Secure SD-WAN & Universal ZTNA — secure distributed connectivity and unconditional access
GRCORE365
- A modular GRC platform supporting operational resilience, with AI Security elements. Modules:
- ISO/IEC 27001 · ISO/IEC 42001 · ISO/IEC 27017 · ISO/IEC 27018
- CRA · ISO 23001 · AI Act · NIS2 · UKSC
- What it is for: an integrated platform supporting security management to maintain operational resilience — through Governance, Risk and Compliance processes, including AI security management and AI solutions themselves that help analyze data from the organization's security layers
- Benefit for the client: one modular platform that helps meet the requirements of UKSC, NIS2, ISO 27001, ISO 42001, the AI Act and CRA, giving full insight into the organization's security level
Tenable (Exposure Management)
- Tenable One — an integrated platform for managing the organization's overall risk exposure
- Tenable One AI Exposure — continuous mapping, identification and assessment of the attack surface generated by AI systems, including ChatGPT, MS Copilot and Copilot Studio
BTC Solutions
- IT Asset Management — inventory, records, software license compliance monitoring and IT infrastructure status
- RODOprotektor / RODOOperator — management of GDPR documentation and registers
- BTC eHelpDesk & Sygnalista — ticketing and whistleblowing systems
Cyrima · Neula
- Cyrima Platform — continuous assessment, evaluation and visualization of the risk and maturity of cybersecurity and AI systems
- Neula GRC low-code — a flexible workflow platform for digitizing, orchestrating and automating GRC procedures: incident handling, asset register, supplier risk management
CloudFerro Sherlock (AI Project Management)
- Search Agents & Knowledgebases — automated building of secure RAG knowledge bases: OCR, chunking, embeddings
- Project management — dedicated workspaces, usage monitoring and AI cost allocation
Elastic (Enterprise Search)
- Elastic Enterprise Search (App Search & Workplace Search) — a unified platform for secure, instant enterprise search across the organization's distributed resources
- ESRE (Elasticsearch Relevance Engine) — a toolset for advanced semantic search, integration with LLM models, and generating and storing vector embeddings for AI/RAG applications
Nimblr (AI Security Awareness)
- Nimblr Security Awareness Platform — automated phishing and smishing simulations based on AI and behavioral psychology
- Nimblr Instant Learning — immediate, interactive guidance at the moment an employee makes a mistake, plus five-minute micro-trainings
- Training on AI social engineering threats — preparing the organization to defend against multi-channel TOAD attacks and deepfake vishing
- Dedicated training platform — AI prepares training from the organization's internal documents, tailored to local needs
CloudFerro (Sovereign European Cloud)
- CloudFerro Sherlock (Managed Generative AI Service) — a fully sovereign, GDPR- and AI Act-compliant managed AI cloud environment in Poland, WAW3-2 region
- Managed Kubernetes — a managed, flexible container orchestration environment integrated with OpenStack and Ceph
- Virtual compute infrastructure — virtual machines, Spot instances, dedicated GPU resources for machine learning
- Dedicated private cloud and White Label public clouds
- EODATA repository — access to more than 90 PB of satellite data
- Cloud and satellite platforms — CREODIAS, CDSE, CODE-DE, WEKEO, EOLAB, DEDL
- BASTION — a containerized, mobile cloud environment based on Kubernetes orchestration and Ceph storage, designed to operate under limited or zero connectivity; a DUAL USE solution
OVHcloud
- Sovereign private and hybrid cloud and advanced, multi-layered protection against DDoS attacks
Stormshield OT (Airbus Defence and Space)
- SNS Industrial Firewalls (SNi10, SNi20, SNi40, SNi50) — physically and logically hardened NGFW firewalls for segmenting and protecting SCADA/ICS industrial networks against operational paralysis
- Stormshield Endpoint Security (SES) for OT — proactive hardening and signature-less behavioral protection of embedded systems, SCADA and legacy devices, with no need for constant updates
- Stormshield Data Security (SDS) — encryption of files, disks and Outlook mail to NATO and EU Restricted military standards
Tenable OT Security
- Tenable OT Security — continuous protection, inventory and vulnerability identification for industrial automation (formerly Tenable.ot)
Fortinet OT Security
- FortiGate Rugged Series — hardened industrial NGFW firewalls designed to operate in extreme temperatures, dust and humidity
- OT Security Service — signature and protection profile subscriptions for industrial protocols, including Modbus, DNP3, BACnet
- NAC for OT — agentless identification, classification and access control of IoT and IIoT devices in the industrial network
- NDR for OT — detecting behavioral anomalies in OT machine communication
- SOC Analytics for OT — correlation of industrial logs and events in a central SecOps console
- OT Tech Alliance — certified and confirmed interoperability with the systems of leading industrial automation vendors
Not every product on the list is right for every organization — and that is what we discuss at the start. Selection is preceded by an analysis of the existing architecture, threats, the organization's maturity and risk profile. See the scope of our services. Full product taxonomies of the key vendors: Xopero, Cribl, Fortinet, WALLIX and Tenable — in the Key vendors section.
We will match the solution to your architecture
Every implementation is designed individually — for your existing architecture, risk profile and business goals.