ERA One — unified security and IT-Ops platform
A sovereign platform that combines XDR and IT infrastructure management in a single
lightweight agent and a single console. Runs entirely within the customer perimeter —
on-prem / air-gap, with no foreign cloud. One agent, one platform,
one control center instead of a "zoo" of 5–6 systems and subscriptions.
Platform editions
ERA Core (XDR)
Telemetry, data lake, Sigma + MITRE, assets, cases, SOC portal.
ERA Control AI
AI investigation: storyline, verdict. LLM inside the perimeter.
ERA Response
SOAR: host isolation, IP block, ITSM ticket.
ERA Vuln
CVE scan, schedules, credentialed scan.
ERA Federated / National
STIX/TAXII, IoC exchange between perimeters.
ERA Workbench
Unified timeline: endpoint + identity + network + email.
ERA Exposure
Local CREM: asset risk score within the perimeter.
ERA BYO-EDR Hub
Third-party EDR telemetry into a unified data lake.
ERA Manage
UEM: ITAM, patches, App/USB Control, BitLocker, Virtual Patching.
ERA Service
ITSM-lite: service desk, SLA, CMDB.
ERA Provision
PXE/imaging bare-metal, automatic agent registration.
ERA PAM
Vault, SSH/RDP proxy, session recording.
ERA Observe
SNMP, NetFlow, discovery (agentless).
Engineering heritage
Promisec
Infrastructure Intelligence
Continuous configuration audit and compliance control — the foundation of endpoint management.
Sirin Labs
Secure-by-Design
Threat isolation, channel protection, and security at the core architecture level.
Syrinx Systems
High-Performance Telemetry
Ultra-lightweight telemetry collection and network monitoring without network overhead.
Platform architecture
ERA One›
Editions (XDR / Manage / Service / PAM …)›
Management server + Data Lake›
Local repository (MinIO)›
One Agent›
Windows / Linux / macOS / servers›
Web console
Deployment model
One platform — two deployment profiles. Data, data lake,
AI, and investigations always remain in your perimeter; outbound traffic is limited to licenses,
protection updates, and support telemetry (only if you allow it).
| Criteria | ERA Sovereign (air-gap) | ERA Sovereign Hybrid |
| Data, data lake, AI, cases | In customer perimeter | In customer perimeter |
| Rule / CVE / AI pack updates | Offline package (removable media) | Automatic from ERA cloud |
| Licensing and support | Offline key | Online subscription + offline fallback |
| Outbound connectivity | None (full isolation) | Outbound only, per policy |
| Best for | Public sector, critical infrastructure, strict air-gap | Banking: "data at home, support like the cloud" |
Hybrid mode is enabled deliberately and is configurable: raw data, personal
information, and investigation materials never leave the perimeter in either mode.
Enterprise benefits
One lightweight agent (CPU < 2%, RAM < 150 MB) and a unified console.
UEM and XDR — one organism without integration gaps.
On-prem and air-gap: data never leaves the perimeter.
Continuous protection updates — offline package or from ERA cloud (hybrid).
Offline Ed25519 licensing; PII redaction on the agent.
Scale to tens of thousands of nodes in a cluster.
Modular licenses — pay for what you use.
AD/LDAP, REST API, SIEM, STIX/TAXII, NGFW integration.