Explore Sentry
OPERATIONAL TECHNOLOGY SECURITY

Protect what
keeps the
world moving.

From industrial networks to the physical process,
Sentyx is building security around the assets,
connections, and activity that keep operations running.

BUILT FOR OTGROUNDED IN THE PROCESS
THE SENTRY INTERCEPTINTERACTIVE SIMULATION
0 threats stopped0 commands permitted
UNTRUSTED SOURCEUnauthorized control commandAttempting to reach industrial controls
Sentyx shield
Sentyx SentryThe boundary of trust
READY
Industrial operationsRUNNING
Control systemsProduction linesField equipment
Put Sentry to the test. Send a command toward the plant.
Simulated policy enforcement. No live system connected.
KNOW YOUR ENVIRONMENTUNDERSTAND THE ACTIVITYEVALUATE TRUSTPROTECT THE PROCESS
01 / THE PLATFORM

Connected infrastructure.
Operational context.

OT security needs a connected view of assets, communications, and physical processes. Sentyx brings these perspectives into one product direction: understand the environment, identify risk, and inform response.

01

Know what’s connected.

Build an understanding of industrial assets, their roles, and their relationships—from engineering and supervisory systems to controllers and field devices.

ASSET & ARCHITECTURE CONTEXT
02

Understand what’s happening.

Interpret industrial communications in the context of the process. A connection alone cannot explain whether an action is expected, authorized, or operationally appropriate.

PROCESS-AWARE THREAT DETECTION
03

Respond with context.

Connect security decisions to operational impact. Our approach combines evidence for investigation with explicit enforcement policies where supported and validated.

OT THREAT RESPONSE
02 / SENTYX SENTRY

A command arrives.
Trust is checked.

Explore protocol-aware enforcement and an illustrative
behavioral-trust scenario in Sentry.

SENTRYControl security
SIMULATED ENVIRONMENT
OPERATIONS / SECURITY OVERVIEW

Control layer overview

Demo monitoring
Events evaluated1This demo session
Commands blocked1Policy enforced
Commands permitted0Validation passed
Protected endpointRTU-01IEC-104 / IOA 1001
TRIGGER A SCENARIO

Send a simulated command to see Sentry respond.

Activity feed 1

Latest first

Select an event to inspect the decision.

Event investigation

EVT-0001
HIGH PRIORITY

Unauthorized master detected

A control command arrived from a source outside the trusted-master allowlist.

Command blockedAwaiting review
Source
192.0.2.44 / Unknown master
Target
RTU-01 / IOA 1001
Policy
UNTRUSTED_MASTER_v1
Protocol
IEC 60870-5-104
ENFORCEMENT TRACE
    Just now

    Raw command & decision logs

    EVT-0001
    SYNTHETIC IEC-104 TRAFFIC

    RX bytes show the incoming command; decoded fields and policy decisions are illustrative Sentry log records. Protocol reference

    Ready. Select a scenario to generate an event.SIMULATION ONLY

    Synthetic traffic and documentation-only IP addresses; no live control system is connected. Behavioral baseline detection and blocking are a concept demonstration, not a capability claim for the current STAR prototype. Reviewing an event does not change enforcement.

    03 / OUR APPROACH

    Closer to the process.
    Clearer on the risk.

    Industrial environments bring together people, workstations, networks, controllers, and machinery. Effective security needs to understand how these systems interact—and what a disruption means for the process.

    01

    Map the trust relationships

    Understand which systems should communicate, who can make changes, and where operational access crosses a security boundary. Familiar sources still need scrutiny.

    02

    Judge activity in context

    Consider the asset’s role, expected interactions, and process conditions when evaluating activity. Validate response policies against operational requirements before use.

    03

    Connect the network to the process

    Combine the architecture view with available controller, field-device, and I/O observations. Deeper context helps explain how network activity relates to physical operations.

    04 / LEVEL 0–1 DISCOVERY

    Visibility where
    the physical
    meets the digital.

    Understand the controllers, field devices, and signals behind industrial operations. Sentyx’s discovery focus reaches into the control and physical process layers.

    L1

    Understand the control layer

    Observe available controller communications to understand control assets, their functions, and their relationships with supervisory systems and field equipment.

    L0

    Bring field signals into view

    Combine network observations with connected hardware and I/O signals to understand activity closer to sensors and actuators.

    Visibility depends on the protocols, capture points, and I/O connections available in each deployment.

    INDUSTRIAL ARCHITECTURE

    The Purdue model

    Sentyx focus
    L4
    EnterpriseBusiness planning & logistics
    L3.5Industrial DMZIT / OT boundary
    L3
    Site operationsMES · Site historians
    L2
    Supervisory controlHMI · SCADA
    L1
    Basic controlPLCs · RTUs · Controllers
    L0
    Physical processSensors · Actuators · Field signals
    SENTYXVISIBILITY
    FOCUS
    LEVELS 0–1
    From controller communications to observed field signals.Purdue model reference

    Every operation matters.

    Explore the enforcement demo