Built for the organizations that can't afford to go dark.
Spotlight is purpose-built for critical infrastructure environments — where downtime isn't an inconvenience, it's a public safety event. Select your industry below.
Downtime doesn't just hurt. It costs.
Ransomware crews target manufacturers hard, and for an obvious reason. When production goes down, the losses are immediate and calculable — idle lines, spoiled inventory, missed contracts, and reputational damage. And the attack surface keeps expanding as factories modernize and connect more equipment to IT networks.
Spotlight gives your operations team one inventory across the full IT/OT landscape and a fix path that does not require a site visit — so a finding becomes a handled incident, not a three-day production halt.
What Spotlight actually does here
- Discovery runs from an agent’s own neighbour table, so finding the rest of the estate generates no scan traffic
- Passive by default: active scanning stays off until an administrator turns it on for a specific network, and devices that look industrial are excluded from it automatically
- Firewall configuration reconciled against firewall logs — rules that no longer match the traffic hitting them
- Sustained-breach alerting with hysteresis: one finding for a busy machine, not twenty
One portal. Every client site. Every device.
Your clients are small manufacturers, co-ops, clinics and municipalities — sites with a mixed estate, no security staff, and no appetite for an appliance in the rack. You are the security team, and you are billing by the hour to do work that should be a dashboard.
Spotlight gives you a multi-tenant portal across every client, one inventory per site covering both the machines that take an agent and the machines that do not, and a per-client report you can hand over at the end of the month. Deployment runs through an in-LAN relay, so there is no VPN to stand up and no hardware to ship.
Multi-tenant, role-based, branded — no per-site console to log into
Deployment runs through an in-LAN relay from one machine you can already reach
Documented evidence of the work you did, ready to hand to the client
Authorized reseller programme with sales and technical enablement
The grid is a target. Treat it like one.
Nation-state actors, ransomware groups, and unsophisticated opportunists are all actively probing energy infrastructure. Rural electric co-ops and municipal utilities are prime targets precisely because they're resource-constrained — often one IT person managing decades of OT equipment with no visibility into what's actually on the network.
Spotlight changes that equation. Agents deploy across the machines that take one and discover the rest from there, giving you a single inventory, posture findings on a schedule you control, and remote remediation — without requiring a team of analysts or a mandatory deployment engagement every time something goes wrong.
What Spotlight actually does here
- Discovery runs from an agent’s own neighbour table, so finding the rest of the estate generates no scan traffic
- Passive by default: active scanning stays off until an administrator turns it on for a specific network, and devices that look industrial are excluded from it automatically
- Every finding and its fix explained in plain English, with remediation gated on your approval
- Findings carry stable identities, so an acknowledgement survives a policy change
Clean water is a public safety issue. So is your network.
Water and wastewater facilities are heavily targeted and thinly defended. High-profile attacks on municipal water systems have already demonstrated that threat actors are willing to manipulate chemical treatment processes to cause direct harm.
Most water facilities operate with skeleton IT staff managing aging control systems that were never designed with cybersecurity in mind. Spotlight provides the visibility and automated remediation capability these teams need — without requiring a dedicated security team to operate it.
What Spotlight actually does here
- One-click deployment through an in-LAN relay — no VPN to stand up, no appliance to ship
- Passive by default: active scanning stays off until an administrator turns it on for a specific network, and devices that look industrial are excluded from it automatically
- Every finding and its fix explained in plain English, with remediation gated on your approval
- Firewall configuration reconciled against firewall logs — rules that no longer match the traffic hitting them
Pipeline security can't wait for a service ticket.
The oil and gas sector operates some of the most complex and geographically distributed OT environments in the world — offshore platforms, pipeline SCADA systems, refineries, and processing facilities that run 24/7 with zero tolerance for unplanned downtime.
After Colonial Pipeline, the industry knows the stakes. But knowing the risk and having the tools to address it are different things. Spotlight bridges that gap — deploying agents across the full upstream, midstream, and downstream environment and giving operators the ability to act on findings remotely, without dispatching anyone to a remote site.
What Spotlight actually does here
- One-click deployment through an in-LAN relay — no VPN to stand up, no appliance to ship
- Passive by default: active scanning stays off until an administrator turns it on for a specific network, and devices that look industrial are excluded from it automatically
- Firewall configuration reconciled against firewall logs — rules that no longer match the traffic hitting them
- Model portability, including to a model you host yourself
Protecting the systems communities depend on.
City halls, county agencies, emergency dispatch centers, traffic management systems, and public works operations run on a patchwork of aging IT and OT infrastructure — managed by small teams with general IT backgrounds, not cybersecurity specialists.
Ransomware groups specifically target municipalities because they know that public entities face intense pressure to restore services quickly, often making them more likely to pay. Spotlight gives local government the enterprise-grade protection that was previously only available to large agencies with large budgets — at a price point that makes sense for public sector.
What Spotlight actually does here
- Discovery runs from an agent’s own neighbour table, so finding the rest of the estate generates no scan traffic
- Every finding and its fix explained in plain English, with remediation gated on your approval
- Signed installers verified fail-closed, per-machine enrolment tokens, and an operator password that never reaches a command line, a log, or the job record
- Sustained-breach alerting with hysteresis: one finding for a busy machine, not twenty
Turn an unmonitored device fleet into an inventoried one.
Ten years after Mirai turned half a million cameras and DVRs into a botnet, most connected devices still ship insecure and unmanaged. Spotlight discovers and identifies those devices from the network — cameras, sensors, controllers, kiosks — puts an agent on the ones that will take one (Linux on ARM included), and keeps the rest in the same inventory as the machines it manages, turning an unmonitored fleet into a visible, managed one.
Discovery runs from an agent's own neighbour table, so it generates no scan traffic. Active scanning stays off until an administrator enables it for a network, and anything that looks industrial is excluded from it automatically. Remediation is approval-gated: you approve, we execute.
What Spotlight actually does here
- Devices surface from an agent’s own neighbour table, so discovery generates no scan traffic at all
- Passive by default: active scanning stays off until an administrator turns it on for a specific network, and devices that look industrial are excluded from it automatically
- Unagentable devices sit in the same inventory as the machines that do take an agent — one list, one dashboard
- Every finding and its fix explained in plain English, with remediation gated on your approval
The Challenges You're Dealing With
Enterprise protection on public budgets
Most enterprise cybersecurity tools are priced for Fortune 500 procurement teams. Municipal IT departments operate under strict budget constraints, often with no dedicated security line item at all.
Mixed legacy and modern systems
Traffic signals, 911 dispatch infrastructure, building management systems, and permit databases — all running on different platforms, many of which haven't been updated in years, sitting on the same network.
No dedicated security staff
The IT director is also the helpdesk. The network admin also manages the city website. There's no CISO, no SOC, and no one whose job it is to watch for threats — until something goes catastrophically wrong.
How Spotlight Helps
Enterprise-grade security. Public sector pricing.
Starting at $10 per endpoint per month, Spotlight is designed to be attainable for organizations that can't justify six-figure security tool budgets. No mandatory deployment fees. No hidden costs. Just protection.
Built for generalist IT teams
Spotlight's LLM translates complex security events into plain English. Your IT director doesn't need to be a cybersecurity expert to understand what's happening and what to do about it. The platform does the heavy lifting.
All your systems. One view.
From the city network to traffic management to building automation systems, Spotlight covers the full technology footprint of a municipal operation — IT and OT alike — in a single dashboard that any team member can use.
Keep services running for residents
Findings that surface on a schedule you control, and remote remediation, mean problems get fixed before they become outages. Residents keep access to the services they depend on. Your team keeps its nights and weekends. Everyone wins.
Compatible infrastructure
Protocols
Systems & Devices
Deployment Options
See what's on your network before attackers do.
Book a demo tailored to local government and see how Spotlight delivers enterprise-grade protection at a price point that works for public sector budgets.