Skip to main content

Platform

A complete security platform for your complete data

One platform. One data lake.
One vendor that isn’t reading your data.

A Cylake rack appliance seen from below, its teal faceplate of crescent vents angled across the frame.
Most cybersecurity vendors sell you a software product that only takes care of a single function. Cylake gives you a complete, vertically integrated platform: software, hardware, security, and AI built as one system, under your full control.
Nir Zuk CEO, Cylake

One system that you control, not relying on many parts you don’t

Every security function has full access to all data. Every layer connects to the same data lake and runs on infrastructure you fully control. There is no abstraction layer routing your data through a public third party. No integration tax.

No vendor managing data they shouldn’t see. No obstacles or hidden fees to get your own data back.

Technical schematic: seven security domains — cyber lakehouse, modern SOC, endpoint and browser security, data security, AI security, cloud security and IoT/OT security — feeding down through unified AI, then unified detection, automation and orchestration, into one complete data lake, with the Cylake agent and beyond-logs sources beneath it.
Fig. 1 Every security function works on the same data lake. Hardware, software, and AI are layers of a fully integrated system rather than point-products bolted on to each other.

Built on first principles, not compromises

  1. All cybersecurity functions: endpoint, browser, cloud, SaaS, data, OT & IoT, AI, and everything else.

  2. Your data stays on your infrastructure. Cylake cannot access it, read it, or route it externally. That isn’t a policy commitment; it’s an architectural one.

  3. The platform is sovereign and hardened from the ground up, drawing on years of experience securing critical environments. You own it and only you run it.

  4. On-premises does not mean left-behind. The platform is updated like a SaaS product: zero-touch dynamic updates and expansions, AI-driven cluster management, and capacity that scales by racking more hardware.

  5. Hardware footprints can be right-sized for any deployment scenario. From a single site to a federated deployment, the architecture fits the mission.

  6. You decide if you need help from a trusted security service provider and whether the platform gets deployed on your premises or in their private datacenter.

Four hardware form factors:

Purpose-built hardware for each role in the architecture: from ingestion and detection through hot investigation storage to long-term retention.

A Cylake management server with its lid removed — dual power supplies, twin CPU heatsinks, memory banks, the cable loom and the fan wall across the front.
  1. 01

    Central Server

    • Investigation & response workflows
    • Policy & AI
    • Visualization
    • Platform management
  2. 02

    Compute Server

    • Data ingestion
    • Enrichment & normalization
    • Stateless, stateful, and behavioral detections
  3. 03

    Hot Storage

    • Rapid investigation workflows
    • NVMe storage array
  4. 04

    Warm Storage

    • Long-term retention
    • High-density HDD array

A data lake that is actually a data lake

Identity, network, cloud, SaaS, IoT, endpoint, browser, and everything else: ingested completely, not sampled. The Cylake data lake holds everything your security tools generate, not a filtered subset routed through the vendors’ collection and reduction layers.

Visibility requires completeness. Completeness requires control. Cloud-era and frontier AI vendor architectures can’t offer both.

Sovereignty & Architecture
Technical drawing: the Cylake agent — endpoint, data, browser and AI — alongside rich third-party telemetry for identity, SaaS, cloud, proprietary data, user files and threat intel, all feeding one ingestion pipeline into a single complete data lake.
Fig. 2 First- and third-party data and telemetry landing in one lake, unsampled. The AI reads what the lake holds, not a filtered subset of it.

AI without the sensitivity tradeoff

AI in security means routing your data through a public cloud model. The more sensitive your environment, the more you throttle what gets sent, which means the less the AI can see.

Cylake runs AI natively on your infrastructure against your complete data lake. Unlock; don’t throttle.

Our Approach to AI
A Cylake rack unit from above — the brushed lid, its perforated vent panel, and the teal faceplate along the front edge.
A Cylake rack unit from the rear and side — the brushed chassis on its rails, dual hot-swap power supplies, the fan bank and a port panel of network cages and service sockets.
A Cylake rack unit seen from the front and above, its teal faceplate carrying the perforated fan cutouts and the power button.
Close detail of a Cylake compute board — a CPU heatsink beside the labeled DIMM slots and a bank of memory sockets.
  1. 01

    Unified AI
    Machine Learning and Generative AI, trained on your data, running on your hardware. No prompt routing. No third-party training on your data.

  2. 02

    Agentic workflows
    Investigations, triage, and response workflows driven by AI agents with access to the full picture, not a sampled slice.

  3. 03

    Complete data visibility
    AI operates on complete, unthrottled data. The sensitivity of your data isn’t a reason to limit what your models can see.