Open standards, architecture that runs inside your organisation
Altosec is not a black box; it is a platform built on mature open components that can run on your own infrastructure.
What it is built on
ModSecurity + OWASP CRS
The WAF engine is built on the widely adopted ModSecurity and the OWASP Core Rule Set. Rule sets are customisable and your own rules can be added.
Horizontally scaled edge
Edge nodes process traffic independently; capacity grows by adding nodes. Even if the management layer is unreachable, nodes keep running with the policy they already have.
Central logging and analytics
Access and event records are collected in one place, feeding real-time analytics and Penetra's policy mining.
Audit trail
Every change in the console is recorded with who, what and when; you can roll back to a previous configuration.
Data sovereignty
In on-premise and air-gapped deployments, traffic, log and scan data never cross the organisation's boundary. The AI assistant can run against a model on your own server.
Offline operation
Offline licensing and update flows are supported for environments without internet access.
See it with your own traffic
Walk through the Sentra console and Penetra's output in a demo environment; we will size the deployment model and capacity against your own traffic profile.