Syteca Structure and Architecture
Monitor insider activity. Detect anomalies. Respond to incidents. ALL-IN-ONE
Syteca is an agent-based software product supporting various deployment options. Syteca has the flexibility to deploy as SaaS, on-premise, or in hybrid environments. We deliver monitoring and protection Clients for different types of endpoints, centralize and store data on the Syteca Application Server side and provide a centralized Web-based management panel.
Syteca сlients
Syteca Clients help to deter, detect, and disrupt insider threats on any type of desktops and servers:
- Infrastructure servers,
- Terminal servers,
- Jump servers,
- Physical and virtual desktops.
The most complete set of supported platforms:
- Windows,
- Linux,
- macOS,
- X Window System,Physical and virtual desktops.
- Citrix, and
- VMware.
The Client captures user screens with mouse moves according to the recording settings and simultaneously logs important metadata such as application names, titles of active windows, keystrokes, etc.
The monitored data is sent to the Syteca Application Server for storage and analysis, or, if there is no network connection, is stored in the Client protected cache until the connection is restored.
You may configure the Client depending on how intensive security monitoring should be, up to making screen captures every second or based on each mouse click or key pressure. You may enable the special Protected mode to ensure the safety of Client work and integrity of monitored data.
Syteca enables easy solution deployment providing remote Client installation options.
Syteca application server
Syteca Clients send monitored data to the Syteca Application Server, which analyzes the data and stores it in a central database. If the monitored data contains events that correspond to user-defined rules, the Server generates instant alerts and initiates automated incident response if needed.
The Server is also responsible for storing the configuration data, sending the update packages to Clients, performing database cleanup, and creating reports and corresponding statistics.
Syteca Application Server can optionally work with third-party MS SQL or PostgreSQL databases, allowing for a flexible choice depending on your security, economical, and processing speed needs.
Web management tool
The Management Tool is the primary Syteca user interface. It allows you to manage Clients, configure security alerts to potential incidents, define and assign permissions to Syteca users, manage access to endpoints, as well as view and analyze monitored security data received from Clients.
Solution architecture
Combining various types of Syteca Clients, you can protect and increase the visibility of each part of your particular IT infrastructure. For large deployments, we provide high availability and disaster recovery to improve system stability and multi-tenant mode to meet data segmentation and isolation requirements.
Basic deployment scheme
You can achieve maximum visibility and control of any activity performed within your infrastructure by installing a Client of the corresponding type to each endpoint.
Jump server deployment
You can install just one Syteca Terminal Server Client on a jump server to monitor all sessions that come through it and, if needed, manage access to endpoints within the protected perimeter using Syteca PAM toolset.
Scale for growth with the Master panel
These days, security personnel from organizations that have data centers distributed over various different geographical locations face many challenges while managing the risk of insider threats.
The Master Panel is a component of Syteca which is used for viewing the sessions of all of an organization’s Clients. This component combines the data from all isolated Syteca Application Servers or deployments into a single user interface.
Multi-tenant mode
Multi-tenant mode was developed for professional service companies managing the security of their clients and for large organizations with geographically separated offices and independent departments.
This deployment mode allows multiple independent tenants to operate in Syteca environment. Data of each tenant including monitored data, user credentials, Client names, System configuration, etc. is completely independent and not accessible by other tenants.
Multi-tenant mode is available in Enterprise Edition. See licensing details.
Let’s talk about your enterprise data protection needs
Enterprise data security has never been at a greater risk than it is today. Contact us to learn more about how Syteca can ensure your data protection against insider threats.