Altosec
Technology

Open standards, architecture that runs inside your organisation

Altosec is not a black box; it is a platform built on mature open components that can run on your own infrastructure.

Foundations

What it is built on

ModSecurity + OWASP CRS

The WAF engine is built on the widely adopted ModSecurity and the OWASP Core Rule Set. Rule sets are customisable and your own rules can be added.

Horizontally scaled edge

Edge nodes process traffic independently; capacity grows by adding nodes. Even if the management layer is unreachable, nodes keep running with the policy they already have.

Central logging and analytics

Access and event records are collected in one place, feeding real-time analytics and Penetra's policy mining.

Audit trail

Every change in the console is recorded with who, what and when; you can roll back to a previous configuration.

Data sovereignty

In on-premise and air-gapped deployments, traffic, log and scan data never cross the organisation's boundary. The AI assistant can run against a model on your own server.

Offline operation

Offline licensing and update flows are supported for environments without internet access.

See it with your own traffic

Walk through the Sentra console and Penetra's output in a demo environment; we will size the deployment model and capacity against your own traffic profile.