01 / THE STACKLOGICAL ARCHITECTURE
Security context travels with the conversation.
LAYER 01 — 02Identity + Device
Authenticate the user; evaluate endpoint security and integrity.
Entra ID / Azure ADActive DirectoryOktaDevice posture
LAYER 03ShieldiT
Secure communication and Mobile Threat Defense.
EnterpriseFSXDefenseExecutive
LAYER 04 — 05ManageiT
Policy, administration, federation, and governance.
IdentityDevicesPoliciesRiskFederationIntegrations
LAYER 06SentinelIQ
Compliance, intelligence, supervision, and investigation.
SupervisionAuditInvestigation
LAYER BEHAVIOUR VARIES BY EDITION, DEPLOYMENT AND CONFIGURATION.
02 / DOMAINSPROTECT · GOVERN · UNDERSTAND
PROTECTShieldiT
Protect the user, the mobile device, and the communication itself.
EnterpriseFSXDefenseExecutive
GOVERNManageiT
Control the environment from one operational plane.
IdentityDevicesPoliciesRiskFederationIntegrations
UNDERSTANDSentinelIQ
Turn communications and security context into a defensible record.
ComplianceBehaviorFraud indicatorsInvestigations
03 / CONTEXTWHAT IS EVALUATED
Communication is evaluated with the context around it.
SentinelIQ relates communication activity to the user, the endpoint, the policy that applied, and the parties involved.
01User
02Device
03Communication
04File
05Policy
06Related users
04 / INTEGRATION LAYEREXISTING INVESTMENTS
Designed to strengthen the security architecture you already operate.
IDENTITY & ACCESS
- Microsoft Entra ID / Azure AD
- Active Directory
- Okta
- SAML / OIDC / LDAP / SCIM
- CAC / PIV where applicable
ENDPOINT & DEVICE
- Microsoft Intune
- Enterprise MDM / EMM environments
SECURITY OPERATIONS
- Microsoft Sentinel
- Splunk
- IBM QRadar
- SIEM / XDR platforms
COMPLIANCE & ARCHIVING
- Microsoft Purview
- Smarsh
- Global Relay
- eDiscovery and customer archives
05 / DEPLOYMENT LAYERARCHITECTURE CONTINUUM
From rapid deployment to full infrastructure control.
01SaaSRapid deployment and centralized management.
02DedicatedCustomer-specific infrastructure and isolation.
03Private CloudGreater infrastructure and operational control.
04Sovereign CloudData residency and jurisdictional requirements.
05On-PremisesCustomer-controlled infrastructure.
06GovernmentApplicable government-specific architectures.
07IsolatedAir-gapped options for applicable Defense deployments.
Request an architecture briefing.
ASPIS architects walk security, identity and compliance teams through how the platform maps onto an existing environment.
