Nozomi Networks NOZOMI ARC™ Logo

Nozomi Networks NOZOMI ARC™

Host-based security sensor for OT endpoints with threat prevention capabilities

OT Security
Commercial
Visit website
Claim and verify your listing
0

Nozomi Networks NOZOMI ARC™ Description

Nozomi Networks ARC is a host-based security sensor designed for operational technology environments that provides endpoint detection, threat prevention, and network monitoring capabilities. The product operates as both an endpoint security agent and a lightweight network sensor, collecting data from OT endpoints and sending it to Nozomi Guardian or Nozomi Vantage for analysis and correlation. The solution monitors USB device usage, tracks user activity, performs local behavior analysis using Sigma rules, and implements threat prevention through YARA and STIX detection mechanisms. It offers three threat response modes: Detection Mode for visibility without intervention, Quarantine Mode to block and contain malicious files, and Delete Mode to immediately remove threats. As a network sensor, ARC performs passive traffic monitoring, discovers neighboring devices on the host's subnet, and enriches asset data through active queries. The product continuously monitors assets for inventory, security, and performance data while conducting vulnerability assessments. ARC Embedded extends the platform's capabilities to industrial controllers at Purdue levels 0-1, monitoring east-west communications, process variable readings, and controller logic changes. It tracks changes in software, firmware, hardware status, program logic, and operating state, while monitoring physical access including user logins and USB peripheral usage. The solution is designed to operate primarily in user space with minimal kernel-level access, distinguishing it from traditional endpoint protection platforms that may disrupt OT operations.

Nozomi Networks NOZOMI ARC™ FAQ

Common questions about Nozomi Networks NOZOMI ARC™ including features, pricing, alternatives, and user reviews.

Nozomi Networks NOZOMI ARC™ is Host-based security sensor for OT endpoints with threat prevention capabilities developed by Nozomi Networks. It is a OT Security solution designed to help security teams with Asset Discovery, Behavioral Analysis, Endpoint Security.

Have more questions? Browse our categories or search for specific tools.

FEATURED

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Logo

Fractional CISO services for B2B companies to build security programs

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

13
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

7
TestSavant AI Security Assurance Platform Logo

AI security assurance platform for red-teaming, guardrails & compliance

5
OSINTLeak Real-time OSINT Leak Intelligence Logo

Real-time OSINT monitoring for leaked credentials, data, and infrastructure

5
Mandos Brief Logo

Weekly cybersecurity newsletter covering security incidents, AI, and leadership

5
View Popular Tools →