Air-gapped security assessment
MagenX installs from a single installer on hardware you control and assesses the estate without an outbound connection.
Built for estates with no route out
Isolated estates are usually assessed by hand, because most tooling expects a path to the internet. MagenX does not. The installer runs on a machine inside the boundary, the assessment runs there, and the results stay there. Nothing has to leave the building for the product to work.
What is examined
One pass covers four layers and scores them together into a single posture view.
- Active Directory privilege, delegation and trust structure
- Microsoft Entra ID and Azure, where a tenant is in scope
- Network topology and reachability between segments
- FortiGate policy, read through the FortiManager API
What you get out of it
Findings arrive in one graph, so a weakness in one layer is shown against what it actually reaches. Attack simulation walks that graph from a chosen foothold and names the single change that closes the most routes; crown jewels works backwards from an asset you name. Scheduled scans build an append-only change history on the same machine, so an isolated estate keeps a record of how it moved over time.
FAQ
Where is the assessment data held?
On the machine you installed it on, inside the boundary. Scan results, the posture score and the change history are stored locally and stay there.
Every finding above is evidence you can hand to the person who owns the object.
Get a demo