Cyber assets and dependencies
Identify critical systems, identities and data flows. Examine which dependencies matter to the service and where the existing monitoring provides or lacks coverage.
02 / AXENTYR Security
Make assets, dependencies and coverage visible, then qualify alerts and coordinate the investigation of a cyber or operational incident.
Who it is for
Cybersecurity, site security and operations managers in institutions, banks and businesses that need a defined protection scope and clear incident responsibilities.
Development status
In development. The detailed service perimeter, integrations, equipment and support arrangements are being defined for each security scope.
The proposition
Build a view of assets and their dependencies, connect relevant authorised records, and assist teams in qualifying alerts with context. Track the evidence, investigation steps and handovers in one agreed workflow. People remain responsible for escalation, intervention and validation.
Cybersecurity and operational or site security are distinct scopes. Start from the systems, facilities and activities concerned, the monitoring already in place and the gaps in coverage. Define how an alert becomes an investigation and who coordinates the response.
Explore the Platform architecture A shared target architecture, with no required bundle of offerings.
Scope
Identify critical systems, identities and data flows. Examine which dependencies matter to the service and where the existing monitoring provides or lacks coverage.
Study facilities, access points, sensors and operational dependencies as a separate perimeter, with the people and procedures needed to check a physical or activity-related alert.
Link alerts to their context, record the evidence and investigation steps, and organise handovers. Define who validates findings and who may authorise an intervention.
How the work is structured
An engagement starts from your objective and defines the inputs, work and validation needed to address it.
Select cyber, operational/site security or both. Identify assets, dependencies, existing controls and the areas where observation or ownership is missing.
Agree which inventories, event logs, access records or sensor alerts may be used. Preserve their context, time window and access restrictions.
Relate an alert to the affected asset and activity. Assist reviewers with relevant context, distinguish evidence from hypotheses and record the checks still required.
Assign ownership, escalation and intervention authority. Track handovers and decisions, then have the responsible people validate the investigation and response report.
Questions in context
Illustrative situations. These examples describe a question, the inputs and a result to review; they are not accounts of delivered work.
Cybersecurity
Cybersecurity
Operational and site security
Operational and site security
Deliverables
A worked example
Separate cyber and site scenarios show how assets, evidence and coverage gaps shape a proposed response that still requires human approval.
Synthetic data. Every source, asset, state and decision below belongs to this example.
Does this activity fit an authorised change?
Assets & dependencies
Synthetic coverage in this scenario
Evidence retained
A new session appears in the identity record.
A role change is requested after the session begins.
A planned change exists, but the session is not linked to it.
Qualification & investigation
A sequence worth reviewing; the event alone does not establish misuse.
Compare the session and change record with the authorised maintenance scope. Ask the service owner to verify the link.
Proposed action
Human approval required
Security lead and service owner review scope, impact and reversibility before any action.
Await human validation of the change. No restriction is executed by this demonstration.
Keep evidence references, the reviewer’s reasoning, the approval owner and follow-up together. Status: awaiting human review.
Is the door event explained by the scheduled work?
Assets & dependencies
Synthetic coverage in this scenario
Evidence retained
Door checkpoint A records an access exception.
Maintenance is authorised in the nearby work area.
The work note does not confirm that this door was part of the task.
Qualification & investigation
An exception with a plausible work context, but no confirmed explanation.
Check the reader event against the approved work scope and ask the site operator to verify the checkpoint.
Proposed action
Human approval required
The site lead authorises the check and confirms who can act within the operating rules.
Await the site lead’s review. No door, access system or equipment is controlled here.
Keep evidence references, the reviewer’s reasoning, the approval owner and follow-up together. Status: awaiting human review.
These scenarios illustrate a review process. They do not establish deployed coverage or execute autonomous remediation.
Engagement options
Each offering has its own contract. Select the scope, access model and support arrangements that fit your needs.
Pricing structure
Before an engagement
Independent offerings
AXENTYR Security can be considered on its own. A combination is optional and starts with your needs.
Turn authorised sources into a clear view of the situation, its relationships, conflicting evidence and the options to examine.
Explore this offering 03Connect sensors, AI models and operators to a defined mission on a quadruped, humanoid or drone, with links to the client’s existing systems.
Explore this offeringUseful questions
Cybersecurity and operational/site security are distinct scopes. Cybersecurity concerns systems, identities, data and service dependencies. Operational/site security concerns facilities, access, sensors and essential activities. Each needs its own view of assets, coverage, responsibilities and incident workflow; they can also be coordinated.
Assist alert qualification by relating an event to the asset, activity and relevant evidence. Help organise investigation notes and handovers. People validate the findings and authorise action; the workflow does not automatically remediate systems.
No 24/7 human monitoring or response service is announced as available. Continuous coverage would require a capable team or partner, named responsibilities, escalation routes and an agreed service level.
No. Security has its own scope and contract. A robotics component is optional and would only be considered for a defined need, such as incorporating robot observations into a site’s incident workflow.
AXENTYR Security
Identify your priority assets, existing monitoring and incident workflow. Scope cyber or operational/site security around the evidence, coverage and responsibilities you need.
Scope a security engagement