Global Rail / Console docs
Get started

Overview

A 5-minute tour of how the Console is organised and what each surface does.

Surfaces

The Console is one product made of four operating surfaces. They share the same asset graph, the same evidence layer, and the same access model.

  • SecOps — continuous, scoped security assessments against your assets.
  • AI Audit — applicability, controls, evidence, findings, and reports for AI systems.
  • Threat Library — curated catalog of rail-relevant threats, mapped to checks.
  • Live SOC — incoming detections, triage, and incident timelines.

The evidence layer

Every check the Console runs produces a record: what was tested, when, against which asset, with which result, and signed by which engine. Audit, SecOps and Live SOC all read from the same store, so what you prove once you can prove anywhere.

Continuous, but cautious

The Console learns continuously from real incidents and translates them into checks, controls, and action. It is an incident-to-detection pipeline, not an autopilot — a human reviews every detection before it ships, and nothing is pushed into your environment without your say-so.