Find clear answers to the most common questions about LECS technologies, solutions, use cases, and partner opportunities.
Browse the FAQs by topic to quickly find the information you need. Can’t find what you’re looking for? Contact us.
Read all FAQs about LECS in the Manufacturing, OEM and Chemical Industry.
Read all FAQs about LECS in Public Administration and Healthcare.
No. LECS operates in Stealth mode and analyzes traffic passively by mirroring the network. It does not intervene in the physical path of control packets, ensuring zero latency and maintenance of original production cycle times.
LECS protection can also be 100% On-Premises. This ensures active and autonomous defense even in totally offline environments, with no dependence on the cloud for security operations.
No. Thanks to LECS technology, it does not require the installation of any software onboard the machines. It connects externally to the network, protecting critical assets and legacy systems without the need for upgrades or configuration changes.
LECS monitors data flows by identifying exfiltration attempts or unauthorized access to process servers by performing countermeasures to protect the data.
OEMs can offer “Secure by Design” machinery that is already compliant with Cyber Resilience Act (CRA) requirements. This not only increases the value of the supply, but also protects remote access for maintenance.
No. LECS operates in Stealth and Agentless mode, analyzing traffic passively without any interruption of services. It is designed to integrate transparently with naval IT/OT infrastructures and OEM-certified systems, providing protection without altering the original configurations.
Yes. LECS can also be On-Premises. Tires-IA artificial intelligence resides locally, enabling the system to detect and block threats in real time even in the complete absence of external connectivity.
LECS monitors network movements, identifies silent threats and attempts to exfiltrate custom designs and technical drawings. Each event is also notarized, ensuring the integrity of corporate know-how.
No. LECS is a Plug & Play solution that installs in about 10 minutes. Thanks to agentless technology, there is no need to install any software on on-board devices or shut down critical systems, allowing the shipyard or owner to maintain full operations.
No. LECS is a Plug & Play solution designed for monitoring and protection without the need for complex configurations. The system can be deployed on dedicated or virtual hardware (Hyper-V, Proxmox, VMware) and does not require the installation of agents on endpoints, ensuring business continuity during activation.
LECS fills the internal visibility gap. The system identifies lateral threats and movement within the network, detecting abnormal activity that normal firewalls cannot intercept.
The platform is designed to simplify security management. Regardless of the line chosen, all alerts and notifications are sent in real time via Email, Telegram and dedicated Android/iOS App (new release). In addition, the system generates automatic reports to facilitate network status monitoring without requiring constant tuning activities.
Yes. Through Host Protection and deep traffic analysis, the Detection & Response Engine constantly monitors the behavior of all nodes connected to the network, identifying anomalies and ensuring a coordinated response to threats.
Through the Tires-IA engine, the system performs intelligent correlation of network events, filtering out background noise and false positives. This allows the SOC to display only qualified and contextualized alerts, optimizing investigation time.
Absolutely. LECS is designed to complement the existing ecosystem: it provides native telemetry and logs ready to be integrated with SIEM, XDR and Incident Response platforms, closing the visibility triangle (EDR + SIEM + NDR).
No. LECS is an agentless solution that analyzes network traffic by mirroring (SPAN). This eliminates the need for systemic changes on endpoints or initial tuning activities, making deployment immediate.
It strengthens traceability, audit readiness, and the quality of digital evidence—supporting compliance, post-incident investigations, and cyber-insurance claims.
Yes, LECS natively supports more than 100 IT and OT protocols. This allows the SOC to extend monitoring to IoT devices and industrial infrastructure that usually escape traditional security systems.
LECS Embedded is designed to integrate natively into the machine, minimizing the impact on operations and preserving the stability of industrial systems. The goal is not to add complexity, but to increase the level of control and protection.
Perimeter-only protection does not always see what is happening in the detail of individual machinery. LECS Embedded brings security closer to critical components and provides more granular visibility into events, logic, and anomalies
Yes. The LECS architecture is designed for critical OT, SCADA, and supply chain environments, with a focus on business continuity, integration, and constant monitoring.
Yes. Log collection and traceability, along with visibility into events, help the compliance and auditability journey required in many regulated industry settings.
Virtual LECS is designed for VMware, Hyper-V, and Proxmox environments so that it can be deployed consistently across different virtualized infrastructures.
Not necessarily. On-Premise management with local dashboard via HTTPS is also available. However, for some essential services such as updates and licensing, an outbound connection to LECS servers is required, consistent with corporate network policies.
Sizing depends on the volume of traffic and the number of hosts. The correct principle is not to stop at the minimum necessary, but to provide an adequate margin to ensure continuity, performance and scalability.
The solution uses two dedicated interfaces for mirroring traffic analysis, keeping the management network separate from the flow observation component.
No. LECS operates in agentless mode, meaning it does not require any software to be installed on the device. It protects the machine without altering its original configurations, preserving both its operation and system characteristics.
LECS analyzes network traffic flows to identify threats and suspicious behavior, helping prevent data exfiltration. It also analyzes telemetry rather than sensitive data itself, in compliance with GDPR requirements.
LECS prioritizes operational continuity. In the event of a threat, the system applies patented countermeasures to prevent malware from spreading without interrupting vital services or affecting the performance of medical equipment.
No. LECS is a Plug & Play solution that installs in about 10 minutes. Thanks to agentless technology, there is no need to install any software on on-board devices or shut down critical systems, allowing the shipyard or owner to maintain full operations.
Certainly. It is one of the strengths of our technology. LECS actively protects critical equipment and operating systems that are obsolete or can no longer be updated, making them secure without the need for direct intervention on the devices.
LECS is a Plug & Play solution that works “in parallel” with your network. It requires no traffic disruptions (zero downtime) and no changes to existing network parameters. Typical installation takes less than 10 minutes.
Absolutely. With Embedded modules and Agentless technology, LECS can protect PLCs, SCADA, and medical devices that cannot accommodate traditional security software, including “End of Life” systems that can no longer be upgraded by manufacturers.
It depends on the selected line. The Business and Professional lines use an on-cloud dashboard for maximum agility. The Corporate line, instead, provides on-premises management, where logs and the dashboard reside exclusively within your infrastructure—ensuring maximum data sovereignty and compliance with the strictest regulations (NIS2, ACN).
No, LECS is complementary. While firewalls protect the perimeter and antivirus the endpoints, LECS bridges the “blind spot” of internal visibility (Network Detection & Response). It identifies lateral movement and threats that have already breached external defenses.
Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.
75% of attacks today use valid credentials. If the cybercriminal logs in with a stolen password, he becomes an authorized user. The risk is no longer just the “infected file,” but anomalous activity occurring in the wrong context. CELESTIA closes this gap: it does not merely look for malware or suspicious files, but detects out of context actions, behavioral anomalies, and signs of compromise directly on the host.
Conventional antivirus and EDR focus primarily on malware, suspicious files, signatures, and known processes. Tiresia adds a different level of analysis: it observes identity, behavior, context, and host-based network signals to detect anomalous access, credential abuse, and lateral movements that often escape conventional tools.
No. LECS AGENT was created to be complementary. It integrates with existing protection and adds a layer of behavioral intelligence and host-based visibility without requiring replacement of the stack already adopted.
Yes. LECS AGENT is designed precisely to detect scenarios in which the attacker uses legitimate tools, stolen credentials, remote access, or fileless techniques. In these cases, the useful signal is not the file, but the out-of-context behavior.
Yes. One of the product’s strengths is coexistence with existing security software, thanks to a lightweight approach that is not focused on file scanning.
For the end customer it means more visibility, better anomaly detection and complementary protection to the tools already in place. For partners it means offering a new level of value, easier to propose because it does not require replacing the existing one but enhancing it.
No. LECS installs in 10 minutes without blocking services. Integration into the point-of-sale network is immediate and does not cause operational downtime, allowing business activities to continue smoothly.
No. LECS is a Plug & Play platform that automates detection and response. It is designed to provide immediate protection without requiring advanced skills or complex on-site infrastructure.
LECS actively protects the network and IoT devices by offering certified logs that ensure traceability and integrity of events. This facilitates audit processes and supports compliance with current regulations.
Yes. LECS is an Agentless and Plug & Play technology that installs in parallel with the network via a managed switch. It actively protects OT devices that have no OS or cannot be updated, without the need to install software and without interrupting critical services.
Yes, all logs are saved and certified as immutable, ensuring maximum auditability and legal validity.
No. LECS has been designed for maximum efficiency and ease of use. It operates fully autonomously thanks to AI, freeing IT staff from the manual analysis of alerts and logs.
The program is structured to be scalable and merit-based. For Bronze and Silver levels, no revenue constraints or minimum initial purchase are required, allowing the partner total freedom to evaluate the technology and market. Volume commitments are only expected for Gold and Platinum levels, for higher margins and benefits.
Cyber Evolution protects the partner’s work through the Deal Registration system. By registering the deal on the dedicated portal, the partner obtains commercial exclusivity on the specific opportunity, preventing overlaps and ensuring protection of the investment and time devoted to the project.
Certainly. Partners have access to NFR (Not For Resale) units under preferential terms. This allows them to test the solution internally, analyze network flows and logs, and gain full confidence with the installation process before proceeding with a Proof of Concept (PoC) at the customer’s site.
Training is modular according to the level of partnership. It starts from full technical documentation for the Bronze level to basic technical training and PoC support for the Silver level. Gold and Platinum partners have a direct communication channel with the R&D team for complex projects and critical infrastructure.