Back
News

Key2XS Deployment Models: Secure, Flexible, and Built for Critical Infrastructure


Key2XS Deployment Models: Secure, Flexible, and Built for Critical Infrastructure

Critical infrastructure organizations face a unique challenge when modernizing their security posture. While IT systems increasingly rely on cloud-native architectures, OT (Operational Technology) environments are often air-gapped, heavily regulated, and resistant to rapid change. This creates a tension: how can organizations adopt modern IAM-integrated key management without sacrificing the resilience and security of their OT landscape?

The answer lies in flexible deployment models and Key2XS, powered by KubeDNA, delivers exactly that.

 

Why Deployment Flexibility Matters

Physical key systems remain essential for securing critical assets such as substations, refineries, water facilities, and transport hubs. However, integrating these systems with IAM platforms requires a deployment strategy that fits both IT and OT realities:

  • Air-gapped OT environments where external connectivity is tightly restricted.

  • Cloud-first strategies driven by IT teams seeking scalability and cost efficiency.

  • Hybrid environments where cloud and on-prem coexist, with specific workloads distributed according to security, compliance, or operational needs.

A “one size fits all” approach does not work in this context. That’s why Key2XS offers multiple deployment models, ensuring organisations can choose the architecture that best aligns with their resilience, compliance, and operational objectives.

bluckey_container_trans

Powered by KubeDNA: Kubernetes at the Core

At the heart of this flexibility is KubeDNA, a Kubernetes management platform that provides secure, automated, and standardized container orchestration. By building on Kubernetes, Key2XS ensures:

  • Consistency across on-prem, hybrid, and multi-cloud deployments.

  • Security by design, with hardened images and controlled access policies.

  • Scalability, allowing organizations to expand their Key2XS footprint as new assets or geographies are added.

  • Resilience, with self-healing clusters and disaster-recovery capabilities.

KubeDNA enables Key2XS to deliver the same functionality regardless of the deployment model, simplifying operations while maintaining compliance with strict OT and regulatory requirements.

 

ChatGPT Image 23 sep 2025, 09_55_33

 

Deployment Models for Every Environment

1. Cloud-Native Deployment

For organizations embracing cloud adoption, Key2XS can be fully deployed in a secure cloud environment. This model provides:

  • Rapid provisioning and scaling.

  • Cost-efficient infrastructure management.

  • Seamless integration with cloud-hosted IAM solutions like Microsoft Entra ID, Okta, or SailPoint.

 

2. On-Premises Deployment

For air-gapped OT systems, Key2XS can be installed entirely on-premises. This model provides:

  • Full control within the organization’s own data centers or industrial networks.

  • Strict compliance with data sovereignty requirements.

  • Operation without any dependency on external connectivity.

 

3. Hybrid Deployment

In reality, many organizations operate in hybrid mode. With Key2XS, workloads can be distributed flexibly:

  • Cloud for IAM integration, analytics, and AI-driven key planning.

  • On-premises for real-time key system operations in OT networks.

  • A seamless bridge between IT and OT, without exposing sensitive environments.

 

Built for Critical Infrastructure

By leveraging KubeDNA’s Kubernetes management capabilities, Key2XS is not just a SaaS solution, it is a deployment-agnostic platform designed for the realities of critical infrastructure. Whether you are a DSO managing thousands of transformer houses, a refinery operator balancing IT and OT priorities, or a government entity bound by sovereignty rules, Key2XS can adapt to your architecture without compromise.

 

Conclusion

In a world where OT and IT must increasingly converge under frameworks like CER and NIS2, deployment flexibility is no longer optional, it is mission-critical. With Key2XS, powered by KubeDNA, organisations gain the confidence to deploy where they need, how they need, without sacrificing security, compliance, or performance.

Key2XS: Bridging the digital and physical access world, securely and flexibly.

 

🇳🇱 Privacyverklaring – Key2XS

Laatst bijgewerkt: 4 april 2025

Bij Key2XS hechten wij veel waarde aan jouw privacy en de bescherming van persoonsgegevens. In deze privacyverklaring leggen wij uit welke gegevens wij verzamelen, waarom wij dat doen en hoe wij deze gegevens beveiligen.

1. Wie zijn wij?

Key2XS B.V.
Kraanspoor 50, 1033 SE Amsterdam
KvK-nummer: 96651504
E-mail: info@key2xs.com
Website: www.key2xs.com

2. Welke gegevens verzamelen wij?

  • Voor- en achternaam
  • E-mailadres
  • Telefoonnummer
  • Functie en bedrijfsnaam
  • IP-adres
  • Inloggegevens
  • Gebruiksgegevens van onze software

3. Waarvoor gebruiken wij deze gegevens?

  • Het leveren van onze diensten
  • Accountbeheer en toegangscontrole
  • Klantcommunicatie
  • Wettelijke verplichtingen
  • Verbetering en beveiliging van onze diensten

4. Rechtsgrond voor verwerking

  • Uitvoering van een overeenkomst
  • Wettelijke verplichting
  • Gerechtvaardigd belang
  • Toestemming

5. Gegevensopslag en hosting

Alle gegevens worden opgeslagen binnen de Europese Unie. Wij maken gebruik van ISO-gecertificeerde hostingpartners die voldoen aan de AVG.

6. Delen van gegevens met derden

Wij delen jouw gegevens niet met derden, tenzij dit wettelijk verplicht is of noodzakelijk voor onze dienstverlening. Met derden sluiten wij verwerkersovereenkomsten af.

7. Beveiliging van gegevens

Wij nemen maatregelen zoals:

  • Encryptie
  • Tweefactorauthenticatie
  • Toegangsbeheer
  • Regelmatige audits

8. Bewaartermijnen

Gegevens worden niet langer bewaard dan nodig of wettelijk verplicht.

9. Jouw rechten

  • Inzage, correctie, verwijdering
  • Beperking of bezwaar
  • Gegevensoverdraagbaarheid

Neem contact op via info@key2xs.com.

10. Klachten

Je kunt een klacht indienen bij ons of bij de Autoriteit Persoonsgegevens (www.autoriteitpersoonsgegevens.nl).

11. Wijzigingen

Wij behouden ons het recht voor deze verklaring te wijzigen. Check regelmatig onze website voor updates.

🇬🇧 Privacy Policy – Key2XS

Last updated: April 4, 2025

At Key2XS, we highly value your privacy and the protection of personal data. This privacy policy explains what data we collect, why we collect it, and how we secure it.

1. Who we are

Key2XS B.V.
Kraanspoor 50, 1033 SE Amsterdam
Chamber of Commerce (KvK) number: 96651504
Email: info@key2xs.com
Website: www.key2xs.com

2. What personal data do we collect?

  • Full name
  • Email address
  • Phone number
  • Job title and company
  • IP address
  • Login credentials
  • Usage data from our software

3. Why do we process your data?

  • To provide our services
  • Account and access management
  • Customer communication
  • Legal compliance
  • Service improvement and security

4. Legal grounds for processing

  • Performance of a contract
  • Legal obligation
  • Legitimate interest
  • Consent

5. Data storage and hosting

All data is hosted and stored within the European Union. We use ISO-certified hosting providers that comply with the GDPR.

6. Sharing data with third parties

We do not share your data with third parties, unless legally required or necessary for our services. Data processors are bound by processing agreements.

7. Data security

We implement measures such as:

  • Encryption
  • Two-factor authentication
  • Access control
  • Regular security audits

8. Data retention

We retain data only as long as necessary or legally required.

9. Your rights

  • Access, correction, deletion
  • Restriction or objection
  • Data portability

Contact us at info@key2xs.com to exercise your rights.

10. Complaints

You may file a complaint with us or with the Dutch Data Protection Authority: www.autoriteitpersoonsgegevens.nl.

11. Changes

We reserve the right to update this privacy policy. Please check our website regularly for updates.