Technology · Services · Expertise

More than
one box.

RX-OS is our flagship. But cognitive security doesn't start or end with a single appliance. Here is the full stack we deploy across Belgian and European critical infrastructure — eight capabilities, one vision.

Talk to an architect →
Capability matrix

Eight capabilities.
One integrated approach.

Combine what you need. Each capability stands on its own, but together they build a cognitive defense greater than the sum of its parts.

T·01

RX-OS Cognitive Core

Cognitive operating system for OT

Our hero product. Passive detection, self-learning baseline, sub-40 ms anomaly detection.

Included
  • Passive SCADA/PLC/RTU detection
  • ANIMA cognitive reasoning
  • NIS2 audit trail
  • On-premise · no cloud egress
1U appliance Learn more
T·02

OT Audit & Assessment

Where do you actually stand?

Complete OT-network inventory, vulnerability scan, NIS2 gap analysis and risk score — in 2 weeks.

Included
  • Asset discovery (passive + active)
  • NIS2 Art. 21 gap analysis
  • IEC 62443 maturity score
  • Board report + remediation roadmap
Fixed price · 2 weeks
T·03

Managed Detection & Response

24/7 OT-SOC under EU jurisdiction

Our analysts watch your RX-OS feeds 24/7, triage alerts, escalate on your playbook, coordinate response — from Aalst, not Bangalore.

Included
  • 24/7 monitoring in EU
  • Belgian Tier-2 & Tier-3 analysts
  • MITRE ATT&CK for ICS playbooks
  • Monthly executive report
SLA · 15 min MTTD
T·04

Incident Response Retainer

When it hits the fan, you call us first

Pre-negotiated hours, 1-hour SLA, a team that already knows your network. So ransomware doesn't cost you your negotiating position.

Included
  • 1-hour response SLA
  • Forensics + containment
  • Threat actor negotiation (if needed)
  • CCB/CSIRT coordination
Annual contract · retainer
T·05

Secure OT Architecture

Segment before it's too late

IEC 62443 zones-and-conduits design, DMZ hardening, firewall rules that don't break production. Delivered with test report and as-built.

Included
  • IEC 62443 zone design
  • Micro-segmentation (OT VLANs)
  • DMZ architecture + data diode
  • Change management playbook
Project · 6–12 weeks
T·06

vCISO / vCTO as a Service

A CISO on your board · without the hire

Fractional security leadership. Monthly board presence, quarterly audit, annual NIS2 dossier. EU jurisdiction, one face, no translator needed.

Included
  • Board reporting (EN/NL/FR)
  • NIS2 dossier upkeep
  • Third-party / vendor risk
  • Insurance & audit liaison
Monthly subscription
T·07

Training & Tabletop Exercises

Your team rehearses — or your attacker rehearses on you

OT-security training for engineers, phishing simulations for office staff, tabletop exercises for the board. NL, FR, EN.

Included
  • OT cyber hygiene (engineers)
  • Phishing simulation campaigns
  • Board tabletop (crisis rehearsal)
  • NIS2 awareness (ISO 27001 maps)
Per module · on-site or remote
T·08 { }

ANIMA API & Integrations

Your SIEM, your SOAR, your ticketing — fed

Open API, CEF/syslog/Kafka connectors, native integrations with Splunk, Sentinel, Elastic, ServiceNow, Jira. Your existing stack, better fed.

Included
  • REST + Webhook API
  • CEF · syslog · Kafka · OpenTelemetry
  • Splunk · Sentinel · Elastic · QRadar
  • ServiceNow · Jira · PagerDuty
Included with license
Comparison matrix

Which combination fits you?

Three typical profiles we see daily across Belgian and European clients.

T·01T·02T·03T·04T·05T·06T·07T·08
NIS2 starterYou urgently need compliance and a first risk score.
Operator-gradeYou need continuous monitoring without an in-house SOC.
Flagship protectionYou are an essential entity with in-house SOC and strict audit duties.
Our approach

First watch, then think, then build.

We always start with an audit — never with a quote. Only after seeing what actually lives on your network do we design an architecture that fits. No one-size-fits-all, no off-shelf US-SOC that doesn't speak your language.

01

Observe

Two weeks of passive discovery on your OT network. We collect, we do not yet judge.

02

Understand

ANIMA builds a baseline of what is "normal" in your context — not a generic benchmark.

03

Build together

Only then do we propose a layered architecture. No template. No "10-year-old best practice".

Start with a conversation.
Not an invoice.

30 minutes with an OT-security architect. No sales. No SDR. Just a conversation about what you're building and protecting.

Request pilot →