Physical security & video estates
IP cameras, NVR/VMS, access control and intercoms on islanded LANs — onboarding reality, cert-capable vs limited gear, and security that ships with the integrator’s install.
Professional Services
Skans Labs professional services draw on deep, hands-on work across isolated camera estates, building automation, industrial control, and air-gapped networks — identity, segmentation, monitoring, firmware risk, and compliance evidence. We design and harden the island whether you adopt Skans, keep your existing stack, or mix both. The product is one tool in a broader practice; the engagement is about your enclave.

Breadth of practice
Our work sits where IT security playbooks stop: mixed-vintage IoT, controllers that cannot domain-join, networks that must stay offline, and operators who install cameras rather than run a SOC. That experience is broader than any single product.
IP cameras, NVR/VMS, access control and intercoms on islanded LANs — onboarding reality, cert-capable vs limited gear, and security that ships with the integrator’s install.
BMS, HVAC, lighting, elevators and metering (Siemens, Honeywell, JCI, Tridium and peers) — identity where the device supports it, segmentation and monitoring where it does not.
PLCs, SCADA, OPC UA, historians and sensors — change windows, no surprise writes to live processes, NIST 800-82-style compensating controls for legacy.
Enclave boundaries, jump hosts, 802.1X where viable, MAB/dynamic VLANs for limited devices, and honest designs for gear that will never hold a certificate.
How to assess software and firmware risk offline, prioritize what is actually exploited, and turn findings into operator-sized work — without a cloud scanner inside the island.
Who installs what, how content reaches an air-gap, backup and break-glass, and technical evidence maps for NIST 800-171 / CMMC-style reviews — product-agnostic where it should be.
How we engage
Scoped to the problem, not a forced software path. Typical shapes:

Independent of the box
We built the Skans appliance because these problems needed a durable product — but professional services are not a thin sales wrapper around a license. Many clients need design, risk, and operator process first; some already have tools; some later adopt Skans. All three are valid outcomes.

Who engages us
Add identity, admission and evidence to camera and access jobs — with a clear design even when the customer’s tools are not Skans.
Harden building automation and shared OT networks where IT owns the WAN and the plant or building still needs to stay offline.
A credible technical story for isolated CUI or sensitive enclaves — gaps, compensating controls, and evidence — without theater.
Contain legacy controllers and modern OPC UA gear with change windows, read-only monitoring, and no surprise writes to live processes.
Talk to us
Bring drawings, constraints, and the devices you actually have. We help with architecture, risk, and operator readiness across IoT and OT — Skans optional.