RemediationThe Olympus engine · Understand & respond

Confirm the threat.
Block it everywhere.

Turn a detection into a block. The moment something is confirmed malicious, NIKSUN acts across every layer — on the endpoint, on the network, and at the domain — pushing the block to the enforcement points you already run and verifying it in the lake. Three components do the work: EndShield on the host, NetShield across the network, and RouteShield at the domain. Every action is triggered by correlated evidence and provable after the fact.

One confirmed threat · blocked everywhere
EndShieldEndpoint · block & segmentEnforced

Act on the host itself + Zero-Trust segmentation. No third-party EDR.

NetShieldNetwork · block the hostBlocked

Push the block to firewalls, CDNs, & cloud security groups — one console.

RouteShieldDomain · block the lookupDenied

Stop known-bad & disallowed domains — allow / deny lists & category policy.

What you get

A detection is only worth the block behind it.

Block across every layer

One confirmed threat, blocked on the endpoint, on the network, and at the domain — EndShield, NetShield, and RouteShield acting together, triggered by correlated evidence.

Reach the tools you already run

NIKSUN doesn't ask you to rip out what works — it orchestrates your firewalls, CDNs, cloud security groups, and endpoint controls through 500+ Connectors, many of them two-way.

Verified, not fire-and-forget

After the block, NIKSUN re-checks the traffic in the lake and proves the threat can no longer reach you — every action recorded and provable.

How it works

Detect. Decide. Block. Verify.

Detect

Something is confirmed malicious — a ThreatStream threat match, an NDR detection, or a Maya correlation.

Decide

Maya weighs the evidence and Playbooks' approvals set the guardrails — block automatically or with one click.

Block

EndShield, NetShield, and RouteShield push the block wherever the threat can be stopped — host, network, and domain.

Verify

NIKSUN re-checks the lake and confirms the threat can no longer reach your network.

One platform · not another point tool

Response that starts from the truth.

Point tools block on a single, isolated signal. NIKSUN blocks on correlated evidence already sitting in the data lake — the packets, flows, logs, and threat intel that prove the threat is hostile — then verifies containment in that same lake. Detection, decision, action, and proof in one place, across endpoint, network, and domain.

Works across the engine

Pairs naturally with…

Know the Unknown

Turn every detection
into a block.

See how NIKSUN blocks a confirmed threat everywhere at once — on the endpoint with EndShield, across the network with NetShield, and at the domain with RouteShield — verified in the data.