Go live on your own telemetry in 90 days — book a working session
Lansub Technologies
Industrial control room

Security & trust

Operational technology data deserves control-room grade security.

Digital Twin is designed for utilities and critical-infrastructure operators: least-privilege access, immutable audit, tenant isolation and deployment inside your perimeter when required.

Controls

Built-in, not bolted on.

Identity & SSO

Password sign-in with Argon2id hashing, account lockout and rotating sessions today; OIDC/SAML federation to Microsoft Entra ID, Okta or Keycloak per tenant.

Role-based access

Six platform roles (operator, planner, asset manager, developer, tenant admin, auditor) mapped to fine-grained permissions enforced in the console and the services.

Hash-chained audit ledger

Every approval, dispatch, configuration and identity event is appended to a SHA-256 chained ledger with independent verification.

Dual-control approvals

High-impact actions (write-back, dispatch, recommendations above thresholds) require a second approver enforced by the policy service.

Encryption

TLS 1.2+ in transit, encrypted storage at rest, secrets in managed vaults; browser sessions use httpOnly, SameSite cookies — tokens never touch client storage.

Tenant isolation

Tenant-scoped data and identities, schema-per-tenant option with row-level security, and dedicated environments for regulated customers.

Deployment & data residency

Your region, your perimeter.

Data residency

Deploy in any Azure region (India Central by default for Indian customers) or on-premises. Telemetry never leaves the chosen boundary.

Network posture

Private ingress, IP allow-lists, mTLS for edge collectors and per-edge credentials. No inbound connections into OT networks are required.

Operations

Structured logs to Log Analytics, health endpoints per service, retention tiers (hot/warm/cold) configurable per dataset.

Assurance

Standards we design against.

ISO/IEC 27001
information security management (programme in progress)
IEC 62443
industrial automation & control-system security zones
CEA / NCIIPC guidance
Indian critical information infrastructure
OWASP ASVS
application security verification for the console & APIs

Security documentation, architecture diagrams and penetration-test summaries are available to prospective customers under NDA.

Talk to our security team.

Bring your architecture and compliance requirements; we will map Digital Twin's controls to them.