
Automated OT Asset Management
SANCTUARY Insight combines continuous passive network monitoring with non-intrusive active interrogation. The platform identifies all IT and OT devices down to the field level – side-effect-free, precise, and optimized for sensitive production environments.
Seamless OT Asset Management
Are you struggling to manage and secure your growing OT landscape? SANCTUARY Insight offers a single, end-to-end solution that seamlessly automates OT asset discovery, vulnerability analysis, and actionable recommendations. Gain real-time transparency, streamline compliance, and empower your team to optimize security and efficiency in your production environment. Take control of your OT security today.
Automatic Discovery and Inventory of All OT Devices
SANCTUARY Insight gives you the ability to take control with a comprehensive, automated solution. Our innovative platform seamlessly combines passive and active discovery, providing unprecedented visibility into your entire OT landscape. Effortlessly identify all devices, from network equipment to field sensors, and gain detailed insights through native protocol communication, ensuring your critical processes are not disrupted. Actionable security recommendations guide you in remediating vulnerabilities, while intuitive dashboards keep you informed and in control. Insight uses sensors installed in the production network to identify all IT and OT devices. These sensors can be deployed as hardware or software components and collect detailed information about each device, such as:
- Device Type
- Manufacturer
- Model Designation
- Serial Number
- Firmware Version
- Operating System
- Installed Software
- Network Connections

OT Asset Visibility and Efficiency
As an OT administrator, you know how important it is to effectively manage your OT resources. Conventional IT tools are inadequate in the OT landscape, as the devices are sensitive and often lack sufficient computing and network capacity. This is where SANCTUARY Insight comes into play. Our solution intelligently collects device information via IT protocols (e.g., ARP, SNMP, LLDP), OT protocols (PROFINET, EtherNet/IP, ModbusTCP, OPC-UA, BACnet, and many others), as well as manufacturer-proprietary protocols such as Siemens S7 or Beckhoff ADS.
Passive Discovery
Our solution begins with the passive discovery of Ethernet-based devices. This first phase provides a comprehensive overview of your network topology without disrupting operations.
Active Discovery
This is followed by the active phase, in which we dig deeper using OT-specific protocols. Through non-intrusive communication, we extract detailed information about each device. Importantly, this active interaction is indistinguishable from normal OT device communication.
Minimal Network & Device Impact
Worried about overloading the network or a PLC? Don't be. Our communication is gentle and generates only minimal traffic. We target specific devices and speak their native protocols, ensuring both accuracy and device preservation.
Comprehensive Cybersecurity Analysis
Insight goes beyond basic asset management features and provides comprehensive cybersecurity analysis of OT devices. This includes:

- Correlation with Security Risk Databases
- Detection of Unpatched Security Vulnerabilities
- Analysis of Firmware Images for Known Vulnerabilities
- Identification of Potential Attack Vectors
Actionable Recommendations and Risk Assessment Support
The results of the cybersecurity analysis are visualized in an intuitive dashboard, providing OT operators with a real-time overview of the state of the OT landscape. The dashboard also includes actionable recommendations for remediating security issues.

SANCTUARY Insight empowers organizations to improve and efficiently manage the cybersecurity of their production environments. The solution provides valuable support in conducting risk assessments, as required by standards such as IEC 62443, particularly in times of staffing shortages.
FAQ
Contact
Would you like to test Insight or receive a quote? Contact us!