Sign-in and roles
CAC/PIV, Entra ID, or Okta sign-in. Roles decide who may view the graph, approve a containment plan, or raise an execution level, and every decision is attributed to a person.
SAML 2.0 · OIDC · SCIM
Sovereign by default·Federated by policy·Audited by design
Kybernao runs on your site, under your authority, with or without a link. You decide where it runs, what it may touch, who can act, and what, if anything, ever leaves.
Identity, sovereignty, audit, and evidence are properties of the node, not features of a vendor cloud. Your ISSO, your assessor, and your mission owner get the same answer from the same source.
CAC/PIV, Entra ID, or Okta sign-in. Roles decide who may view the graph, approve a containment plan, or raise an execution level, and every decision is attributed to a person.
SAML 2.0 · OIDC · SCIM
The graph, findings, telemetry, and models never leave the node unless you say so. Federation is store-and-forward, scoped to the state you allow, and reversible with a purge.
Per-site retention · Purge on demand
Every run, finding, approval, containment action, and login is written to the node's ledger first. Stream to your SIEM when a link exists. Keep it inside when it does not.
Splunk · Sentinel · Elastic
Findings, retests, and audit events export as an evidence package mapped to NIST SP 800-53 and 800-82, in the shape your assessors already work from.
RMF · ATO · CMMC
A connected site with optional federation, or fully disconnected at the tactical edge. Same brain, same controls, same evidence.
The full platform inside your datacenter, plant, or substation. It operates alone and federates to Kybernao Cloud only on the schedule and scope you set.
The same platform in a backpack or a vehicle. It keeps mapping, testing, and defending through denied, degraded, and intermittent links, with nothing waiting on a cloud.
One terrain graph for defense missions, public utilities, and civilian agencies, from cloud identity to the physical process it can reach.
Kybernao Edge puts the whole platform in a vehicle, a forward position, or a backpack. It keeps mapping, testing, and defending through denied, degraded, and intermittent links, and shares only what you choose when a link returns.
Kybernao Site runs inside substations, plants, and water systems. It traces attack paths from enterprise identity through the OT boundary to the physical process, proves them in a twin, and defends the site when the corporate link is gone.
For agencies and facilities that answer to auditors and the public, Kybernao gives one terrain graph across cloud, on-premises, and vendor-connected systems, with authorized testing that never leaves an approved scope.
Start with one site or mission. Prove the paths that matter. Scale to a fleet of sovereign nodes with a mission engineer who stays with the program.
One node on site. Terrain graph built from your own environment. First path walked to its physical consequence.
NODE-R or NODE-X · 1 siteRed proves paths in the twin, then under Level 2 controls where you authorize it. Sentinel measures. Guardian holds containment.
7 paths · retests attachedA fleet of nodes federating through FedSpace, with evidence flowing into your authorization package on every cycle.
Fleet · FedSpace · ATO evidenceEvery node exposes findings, assets, plans, and audit events through a local API that works when the WAN does not. Evidence reaches the tools your operators already watch, under the identifiers they already use.
Node audit log
Stream every run, finding, approval, and containment event to Splunk, Microsoft Sentinel, Elastic, or ServiceNow when a link exists. Queue them when it does not.
Surface validated paths and their physical consequence in the C2 or operations console your operators already use, with the same identifiers as the node.
Retest window · 21:00
Build operator tooling against the node itself with scoped API keys or your identity provider's access tokens. No cloud round-trip.
SAML 2.0 or OIDC through Entra ID or Okta, with smart-card sign-in where policy requires it.
Machine-to-machine access for automation and internal tools, scoped per site and per role.
Use Kybernao Command, or put findings and retests into the dashboard or ticketing system your team already runs.
Governance is built into the node, not bolted on. Each control below writes its own audit record.
Sign in with CAC/PIV, or federate Entra ID or Okta over SAML 2.0 or OIDC. Directory changes flow in through SCIM, so a departure revokes access the same day.
Every run, finding, approval, containment action, and material state change is recorded on the node and can be streamed to Splunk, Sentinel, or Elastic.
Observe, Twin, and Live. Nothing runs against a live process without an operator raising the level, and every raise is logged.
Secure boot and a hardware root of trust on every node. Data encrypted at rest and in transit, with keys that never leave the site.
Each site keeps data for as long as you set, and you can wipe it at any time. Federate only the state you allow.
Findings, retests, and audit events organized for RMF and ATO packages, with the evidence your ISSO and assessors need.
Every finding carries the control IDs your assessors test against, from NIST SP 800-53 to program overlays.
Pilot, evaluation, and program pathways. Which vehicles apply depends on the program, and we will tell you which ones do.
Kybernao provides evidence and mappings. Authorization decisions remain with your program and its authorizing official.
Proven routes open tickets in the queues your watch floor already monitors.
CrowdStrikeYes. Every node runs the terrain graph, Red, Sentinel, Guardian, and Command locally. Federation through FedSpace is optional and store-and-forward, so a node never depends on it. Air-gapped sites are a supported configuration.
Nothing touches a live process at Level 0 (Observe) or Level 1 (Twin). Raising to Level 2 (Live) requires an operator with the right role to approve the specific path, and the approval is recorded in the audit log. Safety-critical assets can be excluded from Live entirely by policy.
On the node, inside your boundary. Kybernao staff have no standing access. If you enable federation, you choose which state leaves the site. Retention is configurable per site and data can be purged on demand.
Findings, retests, containment actions, and audit events are exported as evidence with control mappings to NIST SP 800-53 and 800-82. Your ISSO and assessors work from that package. Authorization decisions remain with your program and authorizing official.
Yes, through your identity provider using SAML 2.0 or OIDC, with smart-card authentication where your policy requires it. Roles decide who can view the graph, approve plans, or raise execution levels.
NODE-S and NODE-X for tactical and expeditionary use, NODE-I for industrial and OT sites, NODE-R for datacenters and program coordination. All four run the same platform and federate with each other.
Pilot and evaluation engagements are available directly. Program pathways including OTA, SBIR, and cooperative purchasing depend on the program, and we will tell you plainly what applies to yours.
Bring one site or mission. We build the graph from your environment, walk the first path to its consequence, and leave you the evidence.