Platform Solutions Mobile Integrations Trust & Architecture Contact

Trust & Architecture

For on-prem-first organizations, CycleOps cleanly separates the LAN, DMZ, MDR, and mobile access layers under controlled boundaries.

Deployment Topology

Architecture that respects enterprise boundaries

The portal can run in the DMZ, the operations core on the LAN, and the MDR and analytics layer on a separate security surface.

DMZ
Portal Web
Portal API
Mobile App
↓ X-Portal-Token
LAN Operations Core
Gateway
Worker
MariaDB / Redis / ClickHouse
Vault
↓ X-Service-Token
MDR and Observability
CycleOps-MDR
Prometheus / Grafana
Loki / SIEM
Trust Controls

Security features come built into the product

CycleOps' approach to trust is not just perimeter security; it is the integrity of identity, approval, audit, and recording on every sensitive action.

Vault and Secret Management

KV v2, AppRole, key rotation, path-based access, and an audit-oriented approach.

MFA and Step-up

A mobile push approval chain for sensitive operations, RDP sessions, and privileged access.

Audit and Compliance

Transaction history, data lifecycle, soft-delete, and auditable operation records.

Let's discuss the architecture for your environment

Let's map out your DMZ, LAN, AD, M365, MDR, and mobile access boundaries together.