ASPIS Cyber Security
PLATFORM ARCHITECTURE

One architecture for secure, compliant communications.

Identity and device posture flow upward into every communication, policy decision, and audit record. Three layers, one architecture.

01 / THE STACKLOGICAL ARCHITECTURE

Security context travels with the conversation.

LAYER 01 — 02Identity + Device

Authenticate the user; evaluate endpoint security and integrity.

Entra ID / Azure ADActive DirectoryOktaDevice posture
LAYER 03ShieldiT

Secure communication and Mobile Threat Defense.

EnterpriseFSXDefenseExecutive
LAYER 04 — 05ManageiT

Policy, administration, federation, and governance.

IdentityDevicesPoliciesRiskFederationIntegrations
LAYER 06SentinelIQ

Compliance, intelligence, supervision, and investigation.

SupervisionAuditInvestigation

LAYER BEHAVIOUR VARIES BY EDITION, DEPLOYMENT AND CONFIGURATION.

02 / DOMAINSPROTECT · GOVERN · UNDERSTAND
PROTECTShieldiT

Protect the user, the mobile device, and the communication itself.

EnterpriseFSXDefenseExecutive
GOVERNManageiT

Control the environment from one operational plane.

IdentityDevicesPoliciesRiskFederationIntegrations
UNDERSTANDSentinelIQ

Turn communications and security context into a defensible record.

ComplianceBehaviorFraud indicatorsInvestigations
03 / CONTEXTWHAT IS EVALUATED

Communication is evaluated with the context around it.

SentinelIQ relates communication activity to the user, the endpoint, the policy that applied, and the parties involved.

01User
02Device
03Communication
04File
05Policy
06Related users
04 / INTEGRATION LAYEREXISTING INVESTMENTS

Designed to strengthen the security architecture you already operate.

IDENTITY & ACCESS
  • Microsoft Entra ID / Azure AD
  • Active Directory
  • Okta
  • SAML / OIDC / LDAP / SCIM
  • CAC / PIV where applicable
ENDPOINT & DEVICE
  • Microsoft Intune
  • Enterprise MDM / EMM environments
SECURITY OPERATIONS
  • Microsoft Sentinel
  • Splunk
  • IBM QRadar
  • SIEM / XDR platforms
COMPLIANCE & ARCHIVING
  • Microsoft Purview
  • Smarsh
  • Global Relay
  • eDiscovery and customer archives

INTEGRATIONS IN DETAIL →

05 / DEPLOYMENT LAYERARCHITECTURE CONTINUUM

From rapid deployment to full infrastructure control.

01SaaSRapid deployment and centralized management.
02DedicatedCustomer-specific infrastructure and isolation.
03Private CloudGreater infrastructure and operational control.
04Sovereign CloudData residency and jurisdictional requirements.
05On-PremisesCustomer-controlled infrastructure.
06GovernmentApplicable government-specific architectures.
07IsolatedAir-gapped options for applicable Defense deployments.

DEPLOYMENT & SOVEREIGNTY →

Request an architecture briefing.

ASPIS architects walk security, identity and compliance teams through how the platform maps onto an existing environment.

Request an architecture briefingExplore the Platform