
The implementation process for Armis software is designed to be efficient and minimally disruptive, leveraging its agentless deployment model to ensure rapid onboarding and integration into existing environments. The timeline for implementation typically ranges from a few hours to a few weeks, depending on the size and complexity of the organization’s network. Below is a detailed breakdown of the typical implementation process:
Estimated Time: 1–2 days.
Estimated Time: A few hours to 1–2 days for most organizations.
Estimated Time: 1–2 weeks (depending on the size of the network).
Estimated Time: 1–2 days.
Estimated Time: 1 week.
The entire implementation process typically takes between 2–4 weeks, depending on factors such as:
The scale of OT/IoT environments being monitored.
Armis’ agentless approach significantly reduces deployment times compared to traditional solutions that require agents or hardware installations.
Armis software is highly customizable to meet specific business needs across various industries and environments. The platform offers extensive flexibility in configuration, integration, and functionality, enabling organizations to tailor it to their unique requirements. Key customization capabilities include:
Armis allows organizations to define custom risk factors tailored to their specific environments. For example, businesses can create policies to monitor risks like obsolete protocols, default credentials, or end-of-life operating systems based on their unique security challenges.
Through Smart Active Querying, administrators can define query frequencies and customize device snapshot captures to validate controller integrity and identify unauthorized changes. This ensures compatibility with diverse IT, OT, IoT, and IoMT devices.
Organizations can define custom policies for automated actions such as quarantining devices, blocking connections, or triggering alerts based on specific risk thresholds or behaviors.
Armis integrates seamlessly with existing IT/security tools like SIEMs (e.g., Splunk), ticketing systems (e.g., ServiceNow), CMDBs, and enforcement platforms. These integrations can be customized to align with existing workflows and operational priorities.
Dashboards and reports can be tailored to display trends over time, benchmark performance, or focus on specific asset groups or risk factors. This customization helps organizations gain actionable insights relevant to their operations.
Armis is designed to work with a wide range of protocols and manufacturers across IT/OT/IoT environments. This vendor-agnostic approach ensures compatibility with diverse devices and systems while minimizing disruptions.
For advanced threat hunting, Armis dynamically configures honeypots tailored to the organization’s attack surface, enabling proactive defense against potential threats.
These customization options make Armis adaptable for industries such as healthcare, manufacturing, critical infrastructure, retail, and more.
The total cost of ownership for Armis includes several components beyond the base subscription fee. Here are the additional costs:
These fees cover tasks such as network integration (e.g., setting up SPAN ports), policy configuration, and initial training.
Contracts can be paid upfront or in installments depending on the agreement terms.
Resident Architect: Offers strategic guidance for optimizing the platform in large-scale deployments.
Additional subscriptions may be required for advanced features like dark web monitoring, dynamic honeypots, or early warning intelligence capabilities.
For deployments on platforms like AWS or Azure, customers may incur additional cloud hosting costs alongside the Armis subscription fee.
While basic training may be included during deployment, advanced training sessions or certifications may come at an additional cost.
Custom integrations or tailored configurations may require professional service fees depending on the complexity of the requirements.
Fees are generally non-refundable unless required by law.
These additional costs ensure that organizations receive comprehensive support while maximizing the value of their investment in Armis software. Pricing is typically customized based on organizational needs and deployment scale.
Armis provides comprehensive training and support to ensure new users can effectively deploy, configure, and use the platform. The training is designed to maximize the value of the Armis platform while equipping users with the knowledge required to manage and secure their connected devices. Here are the key components of Armis’ training and support offerings:
Available for customers via the Armis University portal or through private sessions.
Topics include Armis Essentials and niche areas such as advanced query building.
Regularly scheduled classes provide flexibility for remote learning.
Includes hands-on exercises and can be scheduled based on customer availability.
Training includes assessments via online exams or instructor evaluations.
Provides business hours availability (Monday-Friday, 8 AM-5 PM).
Includes access to dedicated resources like a Resident Engineer or Resident Architect for complex environments.
Resident Architects offer strategic guidance for optimizing the platform in large-scale deployments.
Operates 24/7/365 to address any questions or issues related to the Armis platform.
Includes case studies, webinars, and a rich resource center for self-learning.
Armis provides direct support during onboarding to ensure smooth integration with existing IT/security systems.
Low (Severity 4): 4 business days.
These training and support options ensure that new users can quickly become proficient with the platform while receiving ongoing assistance tailored to their needs.
Armis employs robust security measures to protect data across IT, IoT, OT, medical devices (IoMT), and cloud environments. The platform is designed with a strong focus on confidentiality, integrity, availability, and compliance with global security standards. Key security measures include:
The agentless design ensures that no software needs to be installed on devices being monitored, reducing attack surfaces while maintaining data integrity.
Sensitive data at rest is encrypted using AES-256 encryption standards.
Supports administrative versus read-only access levels and limits visibility/control based on assigned roles.
Integrates with identity providers such as Google Apps or Microsoft Azure Active Directory for seamless Single Sign-On (SSO).
Alerts are triggered when deviations from established baselines are detected.
Provides detailed reporting capabilities for compliance audits.
APIs are secured using authentication keys to ensure that only authorized systems can interact with the platform.
All collected or derived data can be exported securely via CSV/XLSX files or APIs for further analysis while maintaining confidentiality.
Conducts regular penetration testing and vulnerability assessments to identify potential weaknesses in the system.
Provides detailed audit trails for forensic analysis post-incident.
These measures collectively ensure that customer data is protected from unauthorized access while enabling organizations to maintain compliance with industry regulations and standards.
Armis releases updates to its Centrix™ platform multiple times a year, typically on a quarterly basis, with each release introducing new features, enhancements, and integrations. These updates are designed to improve the platform’s capabilities in asset intelligence, vulnerability management, and threat detection. Here are key details about Armis' update process:
By maintaining a regular update schedule and providing robust support for new features, Armis ensures that its platform remains cutting-edge in addressing evolving cybersecurity challenges.
Armis has a well-defined policy regarding data ownership and portability that prioritizes customer control over their data while ensuring compliance with global standards. Below are the key aspects of this policy:
Armis processes customer data solely to provide its services.
This data is irreversibly anonymized to ensure that it cannot be traced back to individual customers or devices.
Upon termination of a subscription, customers have a limited period (typically 30 days) to retrieve their data before it is deleted from the platform.
After contract termination or upon request, customer data is securely deleted from Armis’ systems in compliance with industry standards.
Customers can request deletion or anonymization of specific datasets to meet regulatory requirements.
Any third-party integrations (e.g., SIEMs or CMDBs) are governed by customer-configured permissions.
This policy ensures that customers maintain full control over their data while benefiting from seamless integration and portability options provided by Armis’ platform.
Armis provides flexible scalability options to accommodate organizational growth or downsizing. The platform is designed to scale seamlessly in both cloud and on-premise environments, making it suitable for organizations of all sizes. Key terms for scaling include:
As a SaaS-based platform, Armis can automatically add or reduce cloud resources to meet customer needs without requiring manual intervention. This ensures that the platform can handle increased workloads or reduced usage efficiently.
For on-premise deployments, Armis uses independent collectors that can scale horizontally. Organizations can deploy additional collectors to monitor more devices or handle higher traffic volumes as their infrastructure grows.
The platform allows customers to adjust the number of monitored assets (IT, IoT, OT, IoMT, and cloud devices) as needed. This flexibility ensures that organizations only pay for what they use.
Armis optimizes cloud resources dynamically, ensuring cost-effective scaling for organizations with fluctuating demands.
These features make Armis highly adaptable to changing organizational needs, whether scaling up during periods of growth or scaling down during consolidation.
The terms and conditions for contract renewal and cancellation with Armis are outlined in its subscription agreements. Key points include:
Renewal terms may include adjustments to pricing based on changes in the number of monitored assets or additional features added during the contract term.
Upon termination, customers have 30 days to retrieve their data before it is securely deleted from Armis’ systems.
Leased hardware appliances (if applicable) must be returned within 30 days of termination at Armis' expense.
These terms ensure transparency while allowing customers flexibility in managing their subscriptions.
Armis meets a wide range of international compliance standards, making it suitable for organizations across regulated industries such as healthcare, finance, manufacturing, and critical infrastructure. Key compliance standards include:
Provides detailed reporting capabilities to support NIST compliance audits.
Offers data anonymization options and robust access controls.
Secures medical devices (IoMT) and protects patient data in healthcare environments.
Monitors compliance with PCI DSS requirements for secure payment processing systems.
Helps organizations comply with the European Union's NIS2 directive by providing asset visibility, vulnerability analysis, and real-time threat detection.
Supports compliance with CIS Controls by providing visibility into all connected assets and enforcing security policies.
Adheres to strict security requirements for federal agencies using cloud services.
Meets the German Federal Office for Information Security’s C5 framework for securing cloud environments.
Aligns with ISO 27001 standards for information security management systems (ISMS).
These compliance capabilities make Armis a trusted solution for organizations operating in highly regulated industries worldwide.