# Faction Networks > Faction returns control of networks, data, OT/IoT, and AI to their owners. Generation 3 Zero Trust: your keys and your trust fabric — not a vendor's cloud. Faction Networks provides Generation 3 Zero Trust — owner-controlled keys and trust for networks, data, OT/IoT and AI. This file is a curated index of the site for AI assistants. ## Platform - [Why Gen 3?](https://www.factionnetworks.com/platform/nextgen/): How security evolved from perimeter defense to cloud-centralized identity — and why owner-controlled, Generation 3 Zero Trust is required for the new era. Generation 3 Zero Trust · Control. Peace of Mind.The Next Generation of Zero TrustHow network security has evolved from perimeter defense to cloud-centralized identity — and why the next generation of owner-controlled trust is required to meet the challenges of the new era.Every major evolution in cybersecurity has followed a shift in infrastructure. Generation 1 protected trusted internal networks with firewalls and VPNs. Generation 2 recognized that the perimeter had dissolved and centralized trust in cloud-managed control planes. Both were genuine advances in their time.Neither was designed for the environment organizations operate in today — one where infrastructure, devices, supply chains, and AI systems all influence security outcomes, and where the very platforms that manage trust have themselves become high-value targets.This paper traces that evolution and introduces Generation 3 Zero Trust: a model in which organizations own and control the trust relationships that govern their networks, devices, data, and AI. The shift is not simply stronger authentication. It is ownership and control of trust itself.Control. Peace of Mind. Security built so trust is owned and controlled by you — delivered and verified by architecture, not promised by policy.Why Trust Models Are Breaking DownThe challenge is no longer just keeping attackers out. It is maintaining control.Modern organizations operate in environments where users, devices, infrastructure, supply chains, and AI systems all influence security outcomes.01Cyber Criminal & Nation-State ThreatsCriminal and nation-state actors increasingly target infrastructure, devices, and supply chains — not only users and applications. Security must extend beyond traditional perimeter and endpoint models.02AI DisruptionOrganizations are deploying AI systems faster than governance frameworks are evolving. Identity, authorization, and accountability become critical — and AI is being leveraged by bad actors to exponentially increase their ability to discover and exploit vulnerabilities.03Hardware & Supply Chain ExposureTrust assumptions now extend beyond software into manufacturing, sourcing, and connected devices. Organizations need visibility into the trust relationships that underpin their environments.04OT & IoT ExpansionIndustrial systems, medical devices, sensors, cameras, and connected infrastructure keep expanding the attack surface while operating outside traditional endpoint security models.Generation 1 · VPNs & FirewallsGen 1: Built around the perimeterVPNs and Firewalls were designed to defend the perimeter. Organizations trusted everything inside the network and concentrated on keeping attackers out. Firewalls enforced a boundary; VPNs extended it to remote users.The model worked when users, devices, and applications largely operated inside a single controlled environment. Its organizing assumption was simple — inside means trusted — and for its era, that assumption was reasonable.But the explosive migration to the cloud demolished that assumption. As applications, data, and users moved outside the building, the perimeter dissolved. The model's deepest weaknesses became structural:The gateway is a visible perimeter that attackers can scan, probe, and target from the open internet.Access depends on credentials — usernames and passwords that are routinely phished, stolen, or brute-forced.A single compromised credential or misconfigured rule can expose the entire network behind it.OT and IoT devices sit unprotected — they cannot run VPN agents and remain exposed on the local network.The Perimeter ModelInternetAttackers scan & probe the visible gateway▸ scan ▸ probe ▸ phishFirewall · VPNTrusted interior — flat, implicit trustWorkstationscredentialedServerscredentialedOT / IoTno agent · exposedThe flaw is structural. One breach of the gateway — or one phished credential — exposes a flat interior where everything is implicitly trusted, and devices that can't run agents go unprotected.… - [Platform Overview](https://www.factionnetworks.com/platform/): Most platforms protect users and apps. Faction extends Zero Trust to infrastructure, OT and IoT devices, data, and AI-enabled operations — under owner control. The Platform · Control. Peace of Mind.Generation 3 Zero TrustA new trust model for modern infrastructureMost cybersecurity platforms focus on protecting users and applications. Faction extends Zero Trust principles to infrastructure, OT and IoT devices, data, and AI-enabled operations.Get Early AccessRequest Technical BriefingWhat Makes Generation 3 DifferentFinally, Zero Trust Has a Secure Foundation01Zero Knowledge ArchitectureFaction routes encrypted communications without holding your encryption keys or any decryptable content. Customers have full visibility and control inside of their network, Faction has none.02Owner-Controlled KeysOrganizations create, control and store the keys to their Faction Network. Trust and trust relationships originate with the owner, not the vendor.03Zero Trust for the CloudFaction leverages all the benefits of the Cloud, but never trusts centralized infrastructure — even our own — that becomes a high-value target.04Hardware-Embedded Zero TrustFaction Pods and Portals secure OT, IoT, embedded systems, and infrastructure, making them invisible and unreachable on the Internet.05AI SecuritySecure private AI infrastructure and ensure human identity-bound accountability and policy enforcement for Agentic AI.06Cyber AssuranceIndependent Cyber Lab inspection and verification of hardware + supply chain and continuous monitoring of network integrity back up Zero Trust.Architecture OverviewTrust you can understand and verifyGeneration 3 Zero Trust is more than a security philosophy — it is a different architecture. See where Faction sits, what it controls, and how it reduces dependency on centralized infrastructure.High-Level ArchitectureWhere Faction sitsEndpoints connect through a Waypoint into a single encrypted overlay that governs networks, devices, data, OT/IoT, and AI. The Waypoint forwards traffic but sees only routing metadata, and the control plane stays off the public internet — reachable only from inside your Faction.Users & DevicesWaypointinternet-reachable · routing metadata onlyYour Factionencrypted overlay · owner holds the keysNetworksDevicesDataOT / IoTAI SystemsService Hall (the control plane) stays off the public internet — reachable only from inside your authenticated Faction.How Faction DiffersTrust controlled by you, not by usTraditional cloud ZTNA routes you through a vendor control plane. Faction establishes a direct, encrypted relationship governed by trust the owner creates and holds.Traditional Cloud ZTNAUserCloud Control Planevendor holds trust · public targetApplicationFactionUserOwner-Controlled TrustEnd-to-End Encryptedkeys held by ownerResourceAI Security ModelAI security with human control and accountabilitySecure your private AI infrastructure in a Faction Network, and deploy a Faction Trust & Control Layer to enforce policy and governance, control access, contain the blast radius, and keep a verified human in the loop.AI Agentsrequest access · execute actionsAI Cyber GuardianAI Governancemonitors & executes policyControls AI access & contains the blast radiusFaction Trust & Control LayerEnsures human-in-the-loop controlResources & Devicesaccess · control · executionCryptographic Kill SwitchHuman Approvalun-bypassable enforcementPartner Deployment ModelBuilt for MSPs and integratorsDeliver Generation 3 cybersecurity to your clients with peace of mind. Client ownership and control of keys and trust ensure that you can never become the point of compromise.MSP / MSSP DashboardSingle Pane of GlassEnd-to-End Encryptedkeys held by ownerCustomer Aowns & controls trustCustomer Bowns & controls trustCustomer Cowns & controls trustOT & IoT Security ModelProtection for devices that can't protect themselvesFaction Pods and Portals extend Zero Trust protection to OT and IoT machines and devices that can't protect themselves — regardless of operating system, age, or capability.Devices that can't run agentsIP CameraSensorPLC / ControllerLegacy MachineFaction Pod / Portalembedded zero … ## Solutions - [Virtual Private Circuits](https://www.factionnetworks.com/solutions/vpc/): Rapidly deploy a private, owner-controlled Zero Trust network — one fabric across sites, plants, cloud workloads, and distributed teams. You hold the keys. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Solutions · Virtual Private CircuitsTrue Zero Trust networking, owned and controlled by youRapidly deploy a private, owner-controlled network to secure critical OT and IoT, distributed teams and sites in a dangerous worldGen 3 Zero TrustEvery business needs Zero Trust Cybersecurity — but most can't afford itEvery organization now runs on connected systems — increasingly on the critical OT and IoT devices that keep operations running. It is no longer just your data at risk: an attacker who reaches those systems can disrupt the business itself. Yet legacy networks and perimeter security leave them open to anyone who gains a foothold, inside or out — and most connected devices aren't protected at all.The U.S. government has directed federal agencies to adopt Zero Trust — but attackers don't discriminate by size. Every business needs one. Faction makes it possible: enterprise-grade Zero Trust for your networks, devices, and data, at a fraction of the cost and complexity of SDN or ZTNA — and without a dedicated IT team.Do You Know Your True Risk?The threat is real and rising. State-sponsored actors have pre-positioned inside U.S. critical networks, and the FCC has determined that the foreign-made routers common in homes and businesses pose an unacceptable national-security risk — much of that hardware sitting in ordinary workplaces today.FCC Covered List — foreign-made routersRob Joyce — China's Cyber Explosives Are in PlaceBuilt for your industryManufacturing→Protect connected production lines, IP, and legacy machines — and address CMMC.Healthcare→Secure connected medical devices and records without disrupting care.Energy & Utilities→Defend distributed grid, water, and renewable assets against pre-positioned threats.Government & Public Sector→Owner-controlled Zero Trust across IT, OT, and legacy systems — federal to local.Critical Infrastructure→Keep essential systems running and off the public internet.Financial Services→Protect transactions, records, and customer data with keys only you hold.A Virtual Private Circuit is a private, owner-controlled network for organizations that need to secure distributed workplaces full of smart, dumb, and legacy devices — without the cost and complexity of enterprise SDN or ZTNA.You are the Certificate Authority and key controller. Your Faction Network is invisible on the internet and depends on no external CA, VPN, or IAM server — and it brings every device and group inside, as trust you own and control end to end.Faction Virtual Private CircuitNetwork OwnerFaction Network OwnerCreates & Controls Network KeyCertificate AuthorityFaction Encrypted OverlayInvisible on the InternetFaction NetworkInvisible & inaccessible on the internetNo VPN ServerNo Shared Centralized Cloud Control PlaneNo External Certificate AuthorityNo External IAM / Auth ServerConnected AssetsCloud Servers, VMs & AIFaction ConnectorOT & IoT Legacy DevicesFaction Pod/PortalUser Devices (Laptop, Mobile)Faction AppLegacy LANs (via Gateway)Faction PortalEnd to EndEncryptionWhat makes Faction differentNo Implicit TrustEvery user and device is cryptographically verified before any access. No shared passwords, and no anonymous connections possible.Inaccessible to InternetYour network can't be discovered, scanned, or probed from the internet. There is no visible gateway or attack surface to target.Zero-Knowledge infrastructureFaction routes your encrypted traffic but holds no keys and cannot read your data. What it cannot hold, it cannot expose.Owner-controlled keysEvery key is generated on your own device and distributed only to authorized members of your network — never held by Faction or a third party.Out-of-band authenticationNo usernames or passwords to phish. Members join through a direct, personal, out-of-band process bound to their device.Zero Trust for HardwareWith independ… - [Pods & Portals](https://www.factionnetworks.com/solutions/pods-portals/): USA-built, cyber-assured hardware gateways bring smart, dumb, and legacy OT/IoT devices into your owner-controlled network — no agent required on the device. Solutions · Pods & PortalsZero Trust for the OT and IoT that software cannot secureCyber assured made-safe-in-USA Faction Pods and Portals bring smart, dumb, and legacy OT/IoT devices into your owner-controlled network — no agent required on the deviceMost OT and IoT devices can't run security agents — they lack the resources for encryption or a programmable interface, or run legacy operating systems that can no longer be patched. Faction Pods and Portals protect them anyway.Do You Know Your True Risk?The hardware already inside your network may be the threat. The FCC has determined that the foreign-made routers common in homes and businesses pose an unacceptable national-security risk, and national cyber leaders have repeatedly warned that state-sponsored actors like Volt Typhoon have pre-positioned widely inside of compromised routers, smart hardware and infrastructure.FCC Covered List — foreign-made routersRob Joyce — China's Cyber Explosives Are in PlaceFaction Pods and Portals are secure networking appliances that extend Zero Trust to a physical location over Wi-Fi and Ethernet. Protect any connected device — regardless of its age or capability — simply by connecting it behind a Pod, with no software installed on the device itself; whatever connects behind it joins your private, owner-controlled network. And unlike the gear they replace or contain, Faction hardware is made and made-safe in the USA — forensically inspected at the chip level and cyber-assured by ORION, with a certified supply chain and continuous integrity monitoring after deployment. That mitigates the threat from compromised routers and smart hardware already sitting inside your network — and it does so without a rip-and-replace.How Pods & Portals protect a deviceDevices that can't run agentsIP CameraSensorPLC / ControllerLegacy MachineFaction Pod / Portalembedded zero trust hardware gateway — nothing installed on the deviceE2EEprivate tunnel to your Faction Network · content encrypted end to endYour Faction Networkowner-controlled overlay · off the public internetSmart, dumb, and legacy devices come in behind a Pod or Portal — no agent, no OS changes — and are reachable only from inside your Faction Network.Click, Scan, Adopt — Done01ClickTap Add a Pod or Portal in the Faction app — on the phone you already carry.02ScanPoint your camera at the QR code printed on the device. No codes to copy, no console to configure.03AdoptIt joins your network with your owner-held key — out-of-band, with no IT ticket and nothing exposed to the internet.04DoneConnect any device behind it. It's protected end to end, with nothing installed on the device itself.Scan to adoptPods & PortalsCore principlesOwner-created keysAdoption uses the owner's network key, created and held on the owner's own devices. No one else — including Faction — holds it.Out-of-band authenticationA direct invitation, authentication, and key-exchange method that isn't exposed to external observation or attack.Off the public internetOnce adopted, devices behind the Pod are reachable only from inside the network — removing the public-internet attack surface.No anonymous accessEvery device is cryptographically verified before any access — no shared passwords, and no anonymous connections are possible.Built forIP cameras and the video streams they produceIndustrial controllers, PLCs, and SCADA equipmentFactory-floor machines — legacy and modern, post-T1 and internet-connectedSensors, robots, and automation systemsBuilding systems — HVAC, access control, and elevatorsMedical, lab, and diagnostic devicesPoint-of-sale, kiosk, and payment terminalsPrinters, scanners, and network-attached storageSmart-office and consumer IoT devicesLegacy equipment that can no longer be patchedAny other machine or device that cannot secure itselfCyber-Assured by designMade & made-safe in the USAFaction Pods and Portals are cyber-assured through our ORION and AIS partnerships. Pods are manufactured domestically through our Z-Axi… - [Data Security](https://www.factionnetworks.com/solutions/data-security/): Protect data in transit and at rest with encryption keys created and controlled by the data owner — never a third-party vendor or cloud platform. DATA SECURITY OWNER KEYS · AES-256 01 DATA PLAINTEXT 02 NETWORK ENCRYPTED OWNER KEYS KEYS NEVER LEAVE THE OWNER Solutions · Data SecurityEncryption with keys that never leave the ownerProtect data in transit and at rest with keys created and controlled by the data owner — not a third-party vendorMost solutions protect data only while it moves. Faction protects it in transit and at rest, with keys created and held by the owner — so data isn't left decrypted on cloud servers and endpoints waiting for the next breach.Keys are generated on your own device and never transmitted to Faction. There is no master key. Faction's infrastructure routes your encrypted traffic but cannot read your content — it is technically incapable of doing so, even if compelled. That's Zero Knowledge as a property of the architecture, not a promise in a policy.How owner-held keys protect your dataKeys created on your device — they never leave itYour Keysgenerated & held by the owner · no master keyEnd-to-End Encryptionin transit and at restEmail (S/MIME)Direct file transferCloud & local storageOwner-keyed backupEncrypted in transit · Encrypted at rest · Keys never leave your device · Zero KnowledgeYour data, encrypted under your keys01Encrypted emailSign and encrypt mail in the client you already use — S/MIME, with your own certificate. No new tools.02Secure file transferSend files of any size directly between devices; they never touch Faction's infrastructure.03Encrypted at restFiles stay encrypted on your endpoints and in storage, under keys only your devices hold.04Owner-held keysKeys are generated on your device and never leave it — Zero Knowledge, so Faction can't read what you protect.End-to-end encryptedPeer-to-peerWhat you can doUse your own emailKeep the email app you already use, but encrypt message contents with a personal X.509 certificate signed by your own key.Bring your own cloud driveStore and share on the cloud drive you prefer — encrypted with your own keys, with no cloud exposure of the contents.Share files anywhereMove files of any size across platforms through your own distributed network of drives and devices.Owner-keyed at restData stays encrypted on endpoints and in storage; the keys never leave the owner's devices.Four independent layers of encryptionAPI communication — RSA-4096 with AES-256-GCM and Ed25519 secures traffic between your device and Faction's infrastructure.Network transport — WireGuard (ChaCha20-Poly1305) encrypts everything moving across your private circuit.Peer-to-peer — mutual TLS 1.3 with X.509 certificates protects direct device-to-device sessions, including file transfers.Data at rest — AES-256 keeps stored data encrypted on your endpoints and in backup, under keys only your device holds.Related resourcesWhite PapersThe Next Generation of Zero TrustRead & downloadGuidesFaction Data Security — Solution GuideRead & downloadSolution BriefsFaction Data Security — Technical Solution BriefRead & downloadRelated PagesVirtual Private CircuitsHealthcareAI Security and ControlOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessMSP & MSSPs - [AI Security and Control](https://www.factionnetworks.com/solutions/ai-security/): Keep AI under owner control: secure the private infrastructure AI runs on and enforce cyber discipline on agents — with a human in the loop when it matters. HUMAN-IN-THE-LOOP APPROVAL GATE · SIGNED 01 REQUEST AI ACTION 02 EXECUTE VERIFIED HUMAN APPROVAL A VERIFIED HUMAN BEHIND EVERY ACTION Solutions · AI Security and ControlRoadmapZero Trust for the AI eraKeep AI under owner control — secure private infrastructure that AI runs on, and enforce cyber discipline on agents themselves — whether from cloud platforms or otherwise — with a human in the loop when it mattersTraditional network security is no match for AI chaosAI is another cloud layer — with the same centralized vulnerabilities, a high-value target in its own right, and the ability to act in ways its owners never intended. Despite this, AI is becoming woven into how organizations operate — drawing on data from across the enterprise, connecting to cloud and third-party AI services, with full access to critical systems and networks — all while being adopted by far more users and systems than anyone planned for at the outset. Its boundary expands faster than it can be governed, with potentially catastrophic risks for organizations that have no visibility or control.Containment and control of AI have not yet been solved. Decades-old network security, such as firewalls and VLANs, is built for statically deployed workloads. When AI is introduced into such an environment, it is simply beyond the capacity of these tools to enable IT staff to keep up — or even understand the impacts. SDNs and cloud-based Zero Trust solutions bring a more robust approach, but are far beyond the reach of most organizations in their cost and complexity.Faction applies owner-controlled Zero Trust to the networking and hardware layers beneath AI — the foundation everything else depends on — and adds a non-bypassable control layer whose root of trust is anchored in hardware and bound to humans. And it does so without the cost and complexity that put SDN and cloud Zero Trust out of reach: Faction is turnkey, low-cost, and runs with minimal IT support — enterprise-grade protection an organization of any size can own and manage itself.Faction’s Gen 3 Zero Trust access control layer is integrating with iVALT’s Human-Bound Identity™ platform. Every privileged access event carries provable human authority — biometric authentication combined with device PKI provides cryptographic proof of identity, with no PIN fallback, no shared credential, and no way to authenticate remotely.iVALT + Faction Partnership →Secure Private AI InfrastructureFor organizations running AI on-premise or in private cloud — and for the platforms that support that model — Faction secures the foundation everything depends on. It takes the entire AI infrastructure off the public internet and ensures that authorized humans control access and remain accountable.What it protectsData servers — the data used to train and feed AIAI models — the intelligence that directs agentsAI governance — the software that keeps AI behavingMCP servers — access to your resources and secure connections to third partiesMove private AI infrastructure off the public internet and into a Faction Virtual Private Circuit — where it can't be seen, scanned, or reached from the outside, and access is controlled by the humans you authorize and can hold accountable.Faction secures AI infrastructureAI ModelThe intelligence that controls and directs agentsAI GovernanceThe software that keeps AI behavingData ServersThe data used to train and feed AIMCP ServersAccess to your resources · secure third-party connectionsTakes the entire AI infrastructure off the public internetFaction NetworkEnsures authorized humans control access & stay accountableHuman-Authorized AccessDevice biometrics — Face ID, Touch ID, Windows HelloiVALT Human-Bound Identity™ — biometrics bound to device PKI as cryptographic proof of the responsible humanAuthority-in-the-loop — cryptographic step-up at moments of real risk; no shared secret to phish, replay, or hand to an agentHuman-to-human authorization (roadmap) — for the highest-stakes actions, verified … - [Human-in-the-Loop](https://www.factionnetworks.com/solutions/hitl/): Keep a verified human accountable for high-risk actions. Strong identity verification and authorization confirm a responsible person approved the access. HUMAN-IN-THE-LOOP APPROVAL GATE · SIGNED 01 REQUEST AI ACTION 02 EXECUTE VERIFIED HUMAN APPROVAL A VERIFIED HUMAN BEHIND EVERY ACTION Solutions · Human-in-the-LoopKeep a verified human accountable for high-risk actionsKeep every agent's access attributable and revocable, and put a verified human in the decision where the stakes are high so that control is continuous and accountability is provable.With Faction, cryptographic device identity governs access by default — there are no credentials to spoof, and no phishing possible. Keeping AI and high-risk actions under human control then takes two things: making every agent's access attributable and revocable — so a human stays in oversight and can step in the instant it's needed — and putting a verified human in the decision at the moments that carry real risk. Faction provides both.The modelOn the loop for everything. In the loop where it counts.A recurring mistake is to assume "human-in-the-loop" means a human approves every action. At machine speed and scale, that neither works nor is safe: a mandatory per-action approval step becomes its own failure mode — a person asked to approve thousands of actions soon rubber-stamps them, and the efficiency and value of the agent is greatly diminished. Faction's model is different: authority is continuous, but human presence is event-driven — held in place by two distinct postures.Human-on-the-loop — the default at runtime. Once authority is granted, the agent operates autonomously within fixed cryptographic bounds. Humans supervise attributed, tamper-evident activity and can intervene at any moment — rather than gating every action — holding a machine-speed, network-layer revocation.Human-in-the-loop — for the moments that matter. Live human presence is required at only two points: establishing an agent's authority, and approving or denying a specific high-stakes action. Here a human is genuinely in the decision — and Faction's human-to-human identity verification and authorization is its strongest and most distinctive form.Continuous authority, event-driven presence: you are on the loop for everything, and in the loop exactly where the stakes demand it.Through our partnership with iVALT, Faction is integrating a Digital Trust platform that turns identity into provable human authority. Through Human-Bound Identity™ — biometrics bound to device PKI as the cryptographic proof of the responsible human, with contextual attributes such as GPS and time layered on to further reduce the attack surface — iVALT delivers a step-up with provable human authority at the moments that carry real risk — confirming a responsible person approved a privileged or irreversible action and remains accountable for it. Read the announcement →Critically, iVALT runs inside the Faction network — its authentication traffic never touches the public internet, so there's no internet-facing identity service to intercept, spoof, or attack. An AI agent has no accountability of its own — it inherits it from a human. iVALT's PKI makes that binding cryptographic: each agent carries a cryptographically verifiable identity derived from its human sponsor, so its actions stay bounded and auditable against the person who authorized them.Most access runs on Tier 1. Step up to a verified human only where a use case demands it — including holding one accountable for the actions of AI agents. Tiers 1–3 verify the person; Tier 4 verifies the decision.Escalating identity verification, on demandEscalate on demandTier 4Human-to-HumanroadmapVerified people who know each other approve a high-stakes action live — video or in person — entirely inside your network, with no third party in the path. The highest tier of assurance.Highest-stakes approvalsMulti-party sign-offAuthority recoveryTier 3iVALT 5-FactorroadmapA cryptographically verified, responsible human identity bound to the Faction key — AI-resistant, no PIN fallback.Irreversible actionsGovern AI agentsCrown-jewel systemsTier 2Device… - [Factionize Your Infrastructure](https://www.factionnetworks.com/solutions/factionize/): Add owner-controlled Zero Trust without rip-and-replace. Secure the networks and routers you already run, at the pace and budget that fits your organization. FACTIONIZE IN-PLACE MODERNIZATION 01 LEGACY AS-IS 02 MODERN OWNER-RUN FACTIONIZE MODERNIZE WITHOUT RIP-AND-REPLACE Solutions · Factionize Your InfrastructureAdd owner-controlled Zero Trust without rip-and-replaceSecure the networks, routers and other infrastructure you already have — adopting Generation 3 Zero Trust at the pace and budget that fits your organization and is prioritized to your most critical needsDo You Know Your True Risk?The hardware already inside your network may be the threat. The FCC has determined that the foreign-made routers common in homes and businesses pose an unacceptable national-security risk, and national cyber leaders have repeatedly warned that state-sponsored actors like Volt Typhoon have pre-positioned widely inside of compromised routers, smart hardware and infrastructure.FCC Covered List — foreign-made routersRob Joyce — China's Cyber Explosives Are in PlaceTwo routes to Zero-Trust, Cyber-Assured infrastructureYour existing infrastructurenetworks · firewalls · cloud · OT / IoT you already run+ Faction overlayowner-controlled trust · you hold the keysSecure existing hardware in placecyber inspection & evaluation · Factionize (upgrade in place)Replace only what can't be securedCyber-Assured Pods & PortalsZero-Trust · Cyber-Assuredon your timeline and budgetDeploy alongside what you run today and adopt Zero Trust incrementally — no rip-and-replace.Generation 3 is a different architecture — but adopting it doesn't mean tearing out what you have. ‘Factionizing’ your infrastructure means layering owner-controlled trust over existing networks, devices, and workloads, at the pace you choose — so you can rapidly mitigate risk to your most critical assets without the cost and disruption of ripping and replacing.Faction is an overlay — it sits on top of what you run today. Secure existing hardware in place, and replace only what genuinely can't be brought up to standard, adopting Zero Trust incrementally with no rip-and-replace.What makes Faction differentNo Implicit TrustEvery user and device is cryptographically verified before any access. No shared passwords, and no anonymous connections possible.Inaccessible to InternetYour network can't be discovered, scanned, or probed from the internet. There is no visible gateway or attack surface to target.Zero-Knowledge infrastructureFaction routes your encrypted traffic but holds no keys and cannot read your data — even if compelled to.Owner-controlled keysEvery key is generated on your own device and never leaves it. There is no master key for an attacker to steal.Out-of-band authenticationNo usernames or passwords to phish. Members join through a direct, personal, out-of-band process bound to their device.Zero Trust for HardwareWith independent inspection and cyber assurance by ORION and supply-chain certification, Pods and Portals mitigate the threats from foreign routers and smart hardware — with no need to rip & replace.Secures OT & IoT Mixed FleetsHardware-native Pods bring smart, dumb, and legacy devices into the same circuit as laptops, servers, and cloud — no agent required.Easy, Unlimited SegmentationCombine users, devices, and resources in any way in private groups, each with private keys — micro-segmentation ready.Deployment approach01Assessment & planningMap your current environment and run a cyber evaluation of existing router and smart-hardware vulnerabilities.02Controlled pilotValidate functionality in a test system before touching production.03Critical-asset protectionMitigate where needed with Pods and Portals; upgrade existing routers where possible with the agentless security of embedded Faction Network Nodes.04Organization-wide expansionRoll out across all critical systems on your timeline.05Continuous monitoringFaction and its partners monitor and verify the cyber integrity of your network and hardware on an ongoing basis.Related resourcesWhite PapersThe Next Generation of Zero TrustRead & downloadGuidesFaction Data Security — Solution… ## Industries - [Manufacturing](https://www.factionnetworks.com/solutions/industries/manufacturing/): Secure your connected factory and address CMMC compliance. Enterprise-grade Zero Trust for plant OT, PLCs, and SCADA — without rip-and-replace budgets. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · ManufacturingSecure your connected factory — and address CMMC ComplianceFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replaceYou run a complex mix of legacy and modern equipment — most of it now connected — usually without a large security team. Smart manufacturing and IIoT brought real productivity, and a wider attack surface, to an operation that can't afford downtime or a stolen design.Do You Know Your True Risk?It isn't only data at risk — it's your critical OT & IoT that, whether you like it or not, are connected and vulnerable to cloud attackers. Manufacturing is now the most-attacked industry, and Defense Industrial Base suppliers sit squarely in the sights of state-sponsored actors. At the same time, the FCC has determined that the foreign-made routers common on plant floors pose an unacceptable national-security risk. The gear you already run may be part of the problem.FCC Covered List — foreign-made routersRob Joyce — China's Cyber Explosives Are in PlaceThe real toll#1Manufacturing has been the most-attacked industry, for the third year runningIBM X-Force Threat Intelligence Index, 2024~70%Of ransomware impacting industrial organizations hits manufacturingDragos OT report, 20255×Smaller manufacturers are targeted far more often than large enterprises — and least resourced to respondIndustry reportingA single breach hits your business hardLine downtimeA stopped line is lost output and missed delivery dates you can't easily recover.Stolen IPDrawings, recipes, and process know-how walking out the door to a competitor or adversary.Recovery costsIncident response, replacement, and ransom a lean shop can't absorb.Lost contractsFailing CMMC or suffering a breach can cost you defense and OEM business.The mix you're protectingSmart devices — printers, NAS drives, robotics, drones.Dumb devices — sensors, cameras, controllers.Legacy systems — PCs, servers, and computers embedded in machines too costly or critical to replace, and that can't be patched.How Faction secures manufacturing01Virtual Private Circuit (VPC)Take the production line, the offices, and the remote people and devices that run them off the public internet into a circuit only you can see and reach — then segment and micro-segment it with Groups, so the floor, the office, and partners stay separated.Production, office, and remote sites on one circuitNo public exposure to scan or reachIdentity-based access between cells and systemsNo thousands of firewall rules to manage02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by you and never leave your devices. Faction routes traffic but has no access to the designs, data, or IP you protect.Protect drawings, recipes, and process IPKeys stay with the manufacturerEncrypted in transit and at restNo vendor in your trust path03Zero Trust, Identity-Based AccessEvery user and device is authenticated and authorized; nothing anonymous can reach the circuit. Scope and revoke access for integrators and suppliers.Out-of-band Zero Trust authenticationTime-limited, scoped vendor and integrator accessStep-up to verified human identity (iValt, roadmap)Full access logs for audit04Cyber-Assured Hardware — Pods & PortalsFaction's own purpose-built, Cyber-Assured networking hardware brings smart, dumb, and legacy machines into the circuit with no agent — and is trusted hardware by design, a direct answer to the foreign hardware now flagged by the FCC.Move machinery and sensors off the internetNo agent, no patching of the machineUS-made, independently source-inspectedReaches equipment that can't protect itselfProtects · PLCs and controllers, robotics, sensors and cameras, and legacy computers embedded in production equipment05En… - [Healthcare](https://www.factionnetworks.com/solutions/industries/healthcare/): Protect the connected devices and systems that keep care running — bedside, lab, and building OT/IoT — with owner-controlled, enterprise-grade Zero Trust. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · HealthcareZero Trust for the connected devices and systems that keep care runningFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replaceTelemedicine, connected medical devices, and at-home eHealth equipment transformed care — and turned every practice and hospital into a target. Dentists, doctors, small practices and networks, rural and community hospitals — and the companies building eHealth and at-home devices — now carry enterprise-grade risk without an enterprise security team.Much of the industry's attention goes to the EHR and the SaaS applications around it. But attackers don't need the EHR to disrupt care. When connected devices, building systems, or the data on everyday endpoints are compromised, the result isn't only a privacy breach — it's downtime. For a care provider, downtime is a patient-safety event.Do You Know Your True Risk?The biggest threats aren't only to privacy. Ransomware that reaches connected medical devices, building systems, and OT can stop care cold — diverting ambulances and delaying procedures. Healthcare is also critical infrastructure: state-sponsored actors (the campaign known as Volt Typhoon) have pre-positioned inside U.S. critical networks to disrupt essential services. The foreign-made routers common in clinics and small offices only widen the opening — the FCC has determined they pose an unacceptable national-security risk.Rob Joyce — China's Cyber Explosives Are in PlaceFCC Covered List — foreign-made routersThe real tollCareRansomware that hits connected devices and OT can divert ambulances and delay procedures — not just leak dataHHS / industry reportingPre-positionedState-sponsored actors have embedded in U.S. critical infrastructure, including health systems, to enable disruptionCISA / NSA advisory, 2024$9.8MHealthcare still carries the highest data-breach cost of any industryIBM Cost of a Data Breach, 2024A single breach hits your practice hardDisrupted careCanceled procedures, diverted ambulances, and delayed treatment when systems go down.Patient safetyTampered or disabled medical devices and OT put patients directly at risk.Recovery costsIncident response and downtime a small practice can't easily absorb.Compliance & trustBreaches carry HIPAA exposure and erode the trust at the center of care.Where the risk livesNetworkingConnected devices that monitor vital signs and dispense medicationSecure communication between providers and patients — including ad-hoc, cross-network careStanding up secure-networking hardware across home and distributed sitesForeign-made routers now flagged as a national-security risk, already in your officeDevicesMedical devices and sensors that can't run security agentsEquipment on unsupported or unpatchable operating systemsBYOD apps connecting to personal and at-home eHealth devicesEveryday office gear — printers, cameras, UPS — used as a way inDataPatient–caregiver email and messaging kept privateSharing and storing imaging, video, and records without HIPAA exposureData downloaded onto BYOD laptops, tablets, and phonesGiving patients real control over their own recordsHow Faction secures healthcare01Virtual Private Circuit (VPC)Take the network, applications, and devices off the public internet into a circuit only your practice can see and reach — then segment and micro-segment it with Groups, so clinical, office, and guest systems can't reach each other unless you allow it.Clinical and office systems on one owner-controlled networkNo public exposure to scan or reachSpans clinics, home, and remote staffGranular access between systems — no firewall-rule sprawl02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by you and never leave your devices. F… - [Energy & Utilities](https://www.factionnetworks.com/solutions/industries/energy/): Owner-controlled Zero Trust for substations, field assets, and grid operations — securing critical OT sites at a fraction of enterprise SDN or ZTNA cost. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · Energy & UtilitiesOwner-controlled Zero Trust to secure your critical sites and assetsFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replaceYou keep the power on, the water flowing, the service running — often with a lean team and a tight budget. The systems you depend on are spread across substations, field sites, and remote assets, and almost all of them are now connected. That connectivity is exactly what attackers are counting on, and the shift to renewables — distributed solar, storage, and EV infrastructure that has to be reachable to work — only widens the opening.Do You Know Your True Risk?This isn't theoretical, and it isn't only about stolen data. U.S. agencies have warned that state-sponsored actors — the campaign known as Volt Typhoon — have quietly pre-positioned inside grid, water, and pipeline networks so they can disrupt service in a crisis. At the same time, the FCC has determined that the foreign-made routers in countless sites pose an unacceptable national-security risk. The hardware you already run may be part of the problem.FCC Covered List — foreign-made routersRob Joyce — China's Cyber Explosives Are in PlaceWhy it matters nowPre-positionedState-sponsored actors have embedded in U.S. grid, water, and pipeline networks to enable disruptionCISA / NSA joint advisory, 2024UninsurableSince 2022, major insurers have moved to exclude nation-state cyberattacks from standard policies — leaving operators holding the riskLloyd's of London / market reportingCIP-015New NERC CIP internal-network-monitoring requirements raise the bar for utilitiesNERCA single breach hits your business hardLost service & revenueEvery hour of downtime is lost revenue — and, for many utilities, penalties on top of it.Recovery costsIncident response, equipment replacement, and overtime a lean operation can't easily absorb.Customer trustOutages and breaches make the local news — and erode the confidence your customers place in you.Regulatory exposureNERC CIP obligations carry real penalties for non-compliance.Where the risk livesNetworkingField assets that must stay connected — and are reachable from the public internet todayThe same 'living off the land' paths nation-state actors like Volt Typhoon use to hide in normal trafficForeign-made networking hardware now flagged as a national-security risk, already in your sitesCoordinating securely across the operators and vendors who jointly run the infrastructureDevicesDecades-old PLCs, RTUs, and control systems that can't be patchedDistributed field assets — chargers, batteries, solar inverters, sensorsEveryday smart hardware already inside your network — printers, cameras, UPS — routinely used as a way inCloud application servers that control field devicesDataOperational data and field telemetry that can be manipulated in transitCommunications between the independent parties that must collaborateRecords compliance requires you to store and shareData downloaded onto vendor and staff BYOD devicesHow Faction secures energy & utilities01Virtual Private Circuit (VPC)Take chargers, batteries, sensors, control systems — and the application servers that manage them — off the public internet into a circuit only your organization can see and reach. Segment and micro-segment it with Groups, so generation, distribution, and operations stay isolated.Sites, substations, and operations on one circuitControl systems reachable only from insideIdentity-based access between segmentsNo shared cloud control plane to compromise02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by you and never leave your devices. Faction routes traffic but has no access to what you protect.Field telemetry encrypted end to … - [Government & Public Sector](https://www.factionnetworks.com/solutions/industries/government/): Owner-controlled Zero Trust for federal, state, and local agencies — sovereign infrastructure and verified access without rip-and-replace. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · Government & Public SectorOwner-controlled Zero Trust for federal, state & localFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replacePublic-sector organizations carry strict obligations and high-value targets — federal, state, and local — often with constrained budgets and aging systems. Faction provides an architecture where trust is owned and controlled by the organization, and protection extends to the OT, IoT, and legacy systems traditional tools can't reach.Do You Know Your True Risk?Public-sector networks are a top target. State-sponsored actors — the campaign known as Volt Typhoon — have pre-positioned inside U.S. critical infrastructure, and Salt Typhoon penetrated major telecom networks in one of the most damaging breaches in memory. The FCC has determined that foreign-made routers pose an unacceptable national-security risk, and many are already in public networks.Rob Joyce — China's Cyber Explosives Are in PlaceFCC Covered List — foreign-made routersWhy it matters nowPre-positionedState-sponsored actors have embedded in U.S. critical infrastructure to enable disruptionCISA / NSA joint advisory, 2024Salt TyphoonChinese actors breached major U.S. telecom networks — among the most damaging breaches in memoryCongressional / press reporting, 2024–25“Fair game”The FBI warns the PRC treats every sector that makes society run as a targetFBI, April 2024A single breach reaches farDisrupted servicesCitizen services and operations knocked offline when systems go down.Compromised dataCitizen and mission data exposed or exfiltrated.Cross-agency spreadA breach in one system reaching others through shared dependencies.Public trustEroded confidence in the institutions people depend on.Where the risk livesNetworkingLegacy and OT systems spread across facilities and field sitesShared services whose compromise can cross agency boundariesForeign-made routers now flagged as a national-security risk, already in public networksSecure remote and field access for staff and contractorsDevicesBuilding controls — HVAC, power, access control, elevatorsLegacy systems on unsupported or unpatchable operating systemsEveryday smart gear — printers, cameras, UPS — used as a way inField and remote endpoints beyond the officeDataCitizen records and mission data kept confidentialCommunications between agencies and partnersData downloaded onto contractor and staff BYOD devicesControlled, auditable sharing across organizationsHow Faction secures the public sector01Virtual Private Circuit (VPC)Take agency networks, applications, and devices off the public internet into a circuit only you can see and reach — then segment and micro-segment it with Groups, so a compromise in one area can't cross into another.IT, OT, and legacy systems on one circuitNo public exposure to scan or reachIdentity-based access between segmentsNo shared control plane to cross agencies02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by the organization and never leave your devices. Faction routes traffic but has no access to what you protect.Citizen and mission data encrypted end to endKeys stay with the agency, not a vendorEncrypted in transit and at restNo third party in your trust path03Zero Trust, Identity-Based AccessEvery user and device is authenticated and authorized; nothing anonymous can reach the circuit — aligning directly with federal Zero Trust direction.Out-of-band Zero Trust authenticationScoped, time-limited contractor access with audit trailsStep-up to verified human identity (iValt, roadmap)No anonymous movement on the network04Cyber-Assured Hardware — Pods & PortalsFaction's own purpose-built, Cyber-Assured networking hardware brings legacy and OT syste… - [Critical Infrastructure](https://www.factionnetworks.com/solutions/industries/critical/): Nation-state-resilient security for water, transport, and building systems — keeping critical services sovereign with owner-controlled Zero Trust. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · Critical InfrastructureResilience for water, transport & building systemsFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replaceWater, transportation, and building systems depend on operational technology that was never designed for an internet-connected world — and often run by lean teams with tight budgets. Faction brings these systems into an owner-controlled network without disrupting the services people rely on.Do You Know Your True Risk?These systems are a deliberate target. State-sponsored actors — the campaign known as Volt Typhoon — have pre-positioned inside U.S. water, pipeline, and transportation networks so they can disrupt essential services in a crisis. The FCC has determined that foreign-made routers pose an unacceptable national-security risk, and many are already in these networks.Rob Joyce — China's Cyber Explosives Are in PlaceFCC Covered List — foreign-made routersWhy it matters nowPre-positionedState-sponsored actors have embedded in U.S. water, pipeline, and transportation networksCISA / NSA joint advisory, 2024UninsurableSince 2022, major insurers have moved to exclude nation-state cyberattacks from standard policiesLloyd's of London / market reporting“Fair game”The FBI warns the PRC treats every sector that makes society run as a targetFBI, April 2024A single breach reaches farService disruptionWater, transport, and building systems knocked offline — with real public consequences.Public safetyWhen essential services fail, the impact reaches people directly.Recovery costsIncident response and replacement a lean operation can't easily absorb.Regulatory exposureSector security requirements carry real accountability for operators.Where the risk livesNetworkingControl systems that must stay connected — and are reachable from the public internet todayThe 'living off the land' paths nation-state actors use to hide in normal trafficForeign-made networking hardware now flagged as a national-security risk, already on-siteSecure coordination across the operators and vendors who run the systemsDevicesDecades-old PLCs, RTUs, and controllers that can't be patchedSensors and field devices across distributed sitesEveryday smart hardware — printers, cameras, UPS — used as a way inCloud application servers that control field devicesDataOperational data and telemetry that can be manipulated in transitCommunications between the parties that operate the systemsRecords compliance requires you to store and shareData downloaded onto vendor and staff BYOD devicesHow Faction secures critical infrastructure01Virtual Private Circuit (VPC)Take controllers, sensors, and the application servers that manage them off the public internet into a circuit only you can see and reach — then segment and micro-segment it with Groups, so essential systems stay isolated.Sites, controls, and operations on one circuitEssential systems reachable only from insideIdentity-based access between segmentsNo shared cloud control plane to compromise02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by the operator and never leave your devices. Faction routes traffic but has no access to what you protect.Operational data encrypted end to endKeys stay with the operatorEncrypted in transit and at restNo vendor in your trust path03Zero Trust, Identity-Based AccessEvery user and device is authenticated and authorized; nothing anonymous can reach the circuit. Scope and revoke access for the vendors who touch field systems.Out-of-band Zero Trust authenticationTime-limited, scoped vendor access with audit trailsStep-up to verified human identity (iValt, roadmap)No anonymous movement on the network04Cyber-Assured Hardware — Pods & PortalsFaction's own purp… - [Financial Services](https://www.factionnetworks.com/solutions/industries/financial/): Protect transactions, records, and customer trust. Keys and custody stay with the institution — owner-controlled Zero Trust for financial infrastructure. VIRTUAL PRIVATE CIRCUIT GEN 3 · ZERO TRUST 01 REMOTE WORKFORCE 02 SITE A BRANCH 03 CLOUD WORKLOADS 04 OT & IoT 05 DATA CTR CORE YOUR VPC OWNER-CONTROLLED Industry · Financial ServicesProtect transactions, records, and trustFaction delivers enterprise-grade Zero Trust at a fraction of the cost of Enterprise SDN or ZTNA — protecting your vulnerable OT & IoT, data, and communications without rip-and-replaceFinancial services run on trust and on data that must stay confidential and verifiable. Community banks, credit unions, and fintechs face enterprise-grade risk — often without enterprise security teams. Faction keeps the keys with the institution and removes the centralized dependencies attackers target.Do You Know Your True Risk?Financial institutions are a top target for fraud, ransomware, and data theft — and a growing share of breaches arrive through third parties and the supply chain. Insurers have responded by excluding nation-state cyberattacks from standard policies, leaving more risk on your books. And the FCC has determined that foreign-made routers pose an unacceptable national-security risk.Rob Joyce — China's Cyber Explosives Are in PlaceFCC Covered List — foreign-made routersWhy it matters now$6.1MAverage cost of a financial-sector data breach — among the highest of any industryIBM Cost of a Data Breach, 2024Third partyA large share of breaches originate through third parties and the supply chainIndustry reportingUninsurableSince 2022, major insurers have moved to exclude nation-state cyberattacks from standard policiesLloyd's of London / market reportingA single breach hits your institution hardFinancial loss & fraudDirect theft and fraud, plus the cost of making customers whole.Regulatory penaltiesGLBA, PCI, and examiner findings carry real financial and operational consequences.Customer trustConfidence is the product — and a breach erodes it fast.Third-party exposurePartners, processors, and auditors are a leading path in.Where the risk livesNetworkingBranch, back-office, and remote connectivity that must stay availableConnections to processors, partners, and auditorsForeign-made routers now flagged as a national-security risk, already in branchesSecure access for a distributed and hybrid workforceDevicesATMs, branch hardware, and back-office serversLegacy core systems that can't be patched on IT timelinesEveryday smart gear — printers, cameras, UPS — used as a way inBYOD laptops, tablets, and phonesDataCustomer records and transaction data kept confidential and verifiableCommunications between institutions, partners, and clientsData downloaded onto BYOD and contractor devicesControlled, auditable sharing with processors and examinersHow Faction secures financial services01Virtual Private Circuit (VPC)Take core systems, branch networks, and the devices that run them off the public internet into a circuit only your institution can see and reach — then segment and micro-segment it with Groups, so a compromise in one area can't reach another.Core, branch, and remote systems on one circuitNo public exposure to scan or reachIdentity-based access between segmentsNo shared cloud control plane to compromise02Owner-Held Keys & Zero KnowledgeEncryption keys are created and held by the institution and never leave your devices. Faction routes traffic but has no access to the content you protect.Customer and transaction data encrypted end to endKeys stay with the institution, not a vendorEncrypted in transit and at restReduce dependence on third-party trust03Zero Trust, Identity-Based AccessEvery user and device is authenticated and authorized; nothing anonymous can reach the circuit. Scope and revoke access for processors, partners, and auditors.Out-of-band Zero Trust authenticationTime-limited, scoped third-party access with audit trailsStep-up to verified human identity (iValt, roadmap)No anonymous movement on the network04Cyber-Assured Hardware — Pods & PortalsFaction's own purpose-built, Cyber-Assured networking hardwa… ## Partners - [Our Partners](https://www.factionnetworks.com/partners/our-partners/): The manufacturers, cyber-assurance labs, universities, and managed-service providers building, validating, and deploying Generation 3 Zero Trust with Faction. Partners · Our PartnersThe partners building Generation 3 with usFaction is building a partner ecosystem of managed service providers, technology integrators, and technology alliance partners. If you’re interested in delivering Generation 3 Zero Trust to your clients or integrating with the Faction platform, we’d welcome the conversation.Become a Channel PartnerBecome a Technology Alliance PartnerHardware & ManufacturingDavolink is a South Korean company listed on KOSDAQ – often referred to as the NASDAQ of Korea – which designs and develops its own state-of-the-art Wi-Fi 6 and Wi-Fi 7 access point routers, shipping more than one million units annually. With over 25 years of accumulated technological expertise, Davolink continues to earn high recognition from customers in Korea and Japan. Both the hardware and software of Davolink's products ensure robust security and outstanding reliability.Visit website →Cyber & Information SecurityAIS provides government and commercial customers with industry leading cyber and information security capabilities and services in C5ISR, Cyber, Advanced Computing, AI/ML, and Reverse Engineering. Founded in 2001 and headquartered in Rome, New York, AIS has multiple operating locations and employs more than 220 of the brightest minds that have a passion for developing and advancing the state of cyber and information security ensuring client success.Visit website →Cyber AssuranceORION is a force in cyber assurance, integration, demonstration and technology transition. Our team of experts possess the skills and capabilities needed to address a spectrum of IoT technologies, including AI/ML, edge processing, penetration testing and beyond.Visit website →Identity & VerificationProvable human identity for owner-controlled trust — passwordless biometric and 5-Factor verification, cryptographic device binding, and continuous authentication that ties every action to a real, present human, and extends that trust to devices and AI agents.Learn more →Offensive Security & VerificationFounded in 2010, OSec provides leading-edge offensive cybersecurity solutions for organizations of all sizes and across all sectors, with clients that have included Walmart, Disney, the United Nations, Citibank, Morgan Stanley, and Smithfield. Launched in 2023, OSec's Incenter platform delivers continuous penetration testing and exposure management as a service, currently testing more than two million systems, applications, and API endpoints. Built by offensive-security consultants and continuously fed by OSec's consulting work and threat-intelligence team, Incenter reports only validated, exploitable vulnerabilities and places findings in business context so teams can focus resources where they matter most.Visit website →Managed Services (MSP)For 18 years the Groff NetWorks LLC team has been providing affordable and reliable managed IT, managed security, and virtual CIO (vCIO) services to the Capital Region area.Visit website →Leahy Center for Digital Forensics & CybersecurityAcademic & ResearchFaction Networks' partnership with the Leahy Center for Digital Forensics & Cybersecurity encompasses multiple areas, including security testing & validation of Faction Pods hardware, platform and architecture, plus demos, pilots, and collaborative research into vulnerabilities to cameras, routers and networked appliances that constitute significant cyberthreats. Since opening in 2010, The Leahy Center for Digital Forensics & Cybersecurity has become a central hub of digital forensics and cybersecurity, with a world-class laboratory with state-of-the-art technology, providing digital forensics and cybersecurity services to a wide variety of organizations, from government bodies to local businesses.Visit website →Academic & ResearchThe mission of the University at Albany's College of Emergency Preparedness, Homeland Security and Cybersecurity (CEHC) is to bring together people, technology and knowledge to address the challenges of the 21st … - [Channel & MSP / MSSP](https://www.factionnetworks.com/partners/channel/): Deliver Generation 3 Zero Trust as a service — for MSPs, MSSPs, resellers, and integrators serving businesses without enterprise security budgets or staff. Partners · Channel & MSP / MSSPDeliver Generation 3 Zero Trust as a serviceFor managed service providers, resellers, and integrators serving the businesses that need strong security without enterprise budgets or staffThe customers you serve face enterprise-grade threats without enterprise resources. Faction is built for exactly that gap — stronger than a VPN, lighter than enterprise ZTNA — which makes it a natural fit for a managed-service model.Who it's forManaged Service Providers (MSPs) and Managed Security Service Providers (MSSPs)Value-added resellers and solution integratorsConsultants and advisors serving SMB, SME, and the Defense Industrial BaseWhat you getRecurring revenueA subscription-based offering that fits the managed-service model and grows with each customer.Fast, low-touch deploymentOwner-controlled networks stand up without firewalls, gateways, or heavy configuration to maintain.Enablement & supportOnboarding, training, and a partner center to help your team sell and deliver with confidence.A product that fits SMBProtect networks, devices, and data — including OT/IoT — without enterprise cost or complexity.What to expectA quick startGet registered and set up to deploy your own Faction VPC so you can experience the security and ease of use yourself.Pre-sales & deployment supportOur team works the first deals alongside you — scoping, demos, and standing up the deployment.Owner-controlled KeysYour clients hold their own keys, and you keep the relationship — but are no longer a potential vector of attack, while keeping a single pane of glass for support.Built for recurring revenueSubscription pricing, deal registration, and margins designed for a managed-service model.Related PagesOur PartnersBecome a PartnerVirtual Private CircuitsOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessMSP & MSSPs - [Become a Partner](https://www.factionnetworks.com/partners/become-a-partner/): Join the Faction partner network — bring Generation 3 Zero Trust to SMBs, the Defense Industrial Base, and sectors priced out of enterprise security. Partners · Become a PartnerBuild owner-controlled trust into what you deliverJoin the Faction partner network and bring Generation 3 Zero Trust to the organizations that need it most — from SMBs and the Defense Industrial Base to the OT/IoT-heavy sectors enterprise security has priced outWe partner with organizations that share a simple conviction: Zero Trust security should be owner controlled and architected to meet the challenges of the new threat environment of hostile nation state actors, cyber terrorists and AI. Whether you resell, manage, or integrate security, Faction gives you a differentiated, next generation Zero Trust security solution and the support to deliver value for your customers and business.Two ways to partnerChannel & MSP / MSSPResellers, managed service providers, integrators, and VARs delivering Faction to SMB, SME, and public-sector customers.Technology AlliancesHardware, identity, and platform providers integrating with Faction to extend owner-controlled trust across the stack.Why partner with FactionA differentiated offering — Generation 3 owner-controlled trust, not another reseller of the same cloud ZTNA.An underserved market — SMB, SME, and OT/IoT customers that enterprise security leaves exposed.Low IT overhead — a product designed to deploy without the cost and complexity of enterprise SDN/ZTNA.Built and inspected in the USA — Pods and Portals backed by independent security testing, with a goal of 100% US manufacturing.How it works01ApplyShare a few details about your organization and the markets you serve.02OnboardWe map you to the right partner track and set you up with the essentials.03EnableYour team gets the training, materials, and support to sell and deliver Faction.04GrowBring Generation 3 Zero Trust to your customers — starting with a Pilot.Our Pilot Program is the fastest way to put Faction in front of a real customer environment — together.Related PagesChannel & MSP / MSSPOur PartnersApply to partnerTell us about your organization and the customers you serve, and we'll find the track — channel or technology — that fits.Company*Your name*Work email*Company websitePartner type*Select…MSP / MSSPReseller / VARSystems IntegratorTechnology / OEMOtherPrimary region / marketsTell us about your businessSubmit ApplicationPrefer email? Reach the partner team at partners@factionnetworks.com. ## Company - [Our Story](https://www.factionnetworks.com/company/): Faction Networks builds Generation 3 Zero Trust — security in which the trust governing your networks, devices, data, and AI is owned and controlled by you. Company · Our StoryWe return control of trust to its rightful ownerFaction Networks builds Generation 3 Zero Trust — security in which the trust that governs your networks, devices, data, and AI is owned and controlled by youEvery generation of security solved the problem of its era. Faction was founded to answer the question the cloud era left open: not how to keep attackers out, or how to verify identity, but who controls trust.Faction was founded by veteran technologists in networking, privacy, and cybersecurity — including Dave Rand (Co-Founder & CTO) and Geoff Halstead (Co-Founder & CPO) — and is led today by President & CEO Leroy “Lee” Williams. The team shares one conviction: trust should belong to the organization that depends on it, not to a vendor's cloud.That principle shapes the architecture. The data plane is owner-keyed, so Faction routes your traffic but cannot read what you protect. There is no perimeter to breach and no central control plane to compromise — security becomes a property of the architecture, not a promise in a policy.What we stand forGeneration 3 Zero TrustOwner-controlled trust across networks, devices, data, and AI — the next step beyond perimeter and cloud models.Zero Trust for HardwareCyber Assured and Inspected in USA by ORION.Independently verifiedSource code and hardware reviewed by independent cyber labs, including red-team OT/IoT testing.Built for the underservedStrong security for the SMB, SME, and OT/IoT organizations enterprise tools price out.Control. Peace of Mind. — security delivered and verified by architecture, not promised by policy.Related PagesLeadership & TeamOur ValuesNewsOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessContact Us - [Leadership & Team](https://www.factionnetworks.com/company/team/): Meet the people behind Faction — veteran technologists, operators, and advisors building owner-controlled trust and Generation 3 Zero Trust. Company · Leadership & TeamThe people behind FactionA team of veteran technologists, operators, and advisors building owner-controlled trustLeadershipLeroy “Lee” WilliamsPresident & Chief Executive OfficerA forward-thinking C-level executive, Lee has built high-performance teams and scaled customer-centric businesses from start-up through maturity across omni-channel, retail, and digital ecosystems. His career spans senior leadership roles at Samsung, Verizon, and Rogers Wireless, where he shaped go-to-market and brand strategy, channel productivity, and operating models that drove customer acquisition, retention, and growth. He brings deep experience across private equity, venture, and early- to mid-stage assets.Dave RandCo-Founder & Chief Technology OfficerA Silicon Valley technologist, serial entrepreneur, CEO, and CTO, Dave has a 30-year track record of successful products and patents spanning networking, privacy, and cybersecurity. He co-founded AboveNet Communications and the Mail Abuse Prevention System (MAPS), and served as Chief Technologist and CTO of Internet Content Security at Trend Micro. Over his career he has helped raise more than $4 billion and remains one of the foremost cybersecurity leaders in the United States.Geoff HalsteadCo-Founder & Chief Product OfficerA visionary entrepreneur and product strategist, Geoff has conceived, built, and grown multiple disruptive products across digital media, traffic information, indoor navigation, and cybersecurity. As Co-Founder and Chief Product Officer, he leads Faction's product vision — translating deep technical capability into tools that organizations can actually own and control — blending start-up founding with hands-on product leadership across consumer and enterprise markets.Ben QuinonesChairmanBen is a successful attorney, serial entrepreneur, investor, and advisor to high-velocity start-ups, currently serving as CEO of Pakal Technologies, Inc. He provides strategic advisory and board services to numerous startups at various stages, as well as to arts groups in San Francisco. A graduate of Yale University and Stanford Law, Ben has been advising, forming, investing in, and running technology companies in Silicon Valley since 1995.Dan O’SullivanCo-Founder & VP, Business DevelopmentAs an executive, manager, management consultant, investor, board member, and mentor, Dan has been actively involved in founding, funding, and building start-ups and early-stage technology companies for more than 25 years. As Co-Founder and VP of Business Development, he focuses on the partnerships and go-to-market relationships that bring Faction to the organizations that need it most.Les WilsonVP, Enterprise Channels & OEM PartnershipsLes has extensive experience maximizing growth for both large and early-stage companies across silicon IP, EDA tools, 3D wafer-scale semiconductors, and SoC marketing and business development. He brings deep application knowledge spanning consumer, computing, communications, industrial, cybersecurity, IoT, and medical markets, and leads Faction's enterprise channel and OEM partnerships.Michael De La VegaManaging Director, PMO & Strategic InitiativesMichael leads Faction's centralized PMO and strategic initiatives, with end-to-end oversight of portfolio prioritization, cross-functional execution, and risk management. He aligns product delivery with go-to-market operating models, activates strategic partnerships, and ensures solutions are production-ready, secure, and scalable. Partnering closely with the CEO, CTO, and CPO, he drives executive-level planning and initiatives that improve delivery velocity, fiscal efficiency, and operational effectiveness.Jeong VogelManaging Director, Strategic ProgramsJeong is an accomplished program leader and former RF engineer, recognized for her technical expertise and leadership in driving innovation across wireless technology, robotics, and startup acceleration. She has led global teams delivering advanced products r… - [Our Values](https://www.factionnetworks.com/company/values/): The principles behind the architecture — and behind how we work. What Faction Networks holds to while building owner-controlled, Generation 3 Zero Trust. Company · Our ValuesWhat we hold toThe principles behind the architecture — and behind how we workFaction's values aren't a poster on the wall. They are the same principles that shape the product: ownership, verifiability, and respect for the people who depend on us.Our valuesTrust belongs to the ownerWe design so that customers own and control their trust — never asking them to outsource it to us.Proven, not promisedSecurity should be verifiable by architecture and independent testing, not taken on faith.Made in AmericaWe build and inspect our hardware in the USA, and stand behind where it comes from.Clarity over alarmWe lead with candor and calm. We explain plainly and never sell through fear.For the underservedWe bring strong security to the organizations enterprise tools leave behind.Accountable by designPeople — and the AI acting on their behalf — should be identifiable and accountable.Related PagesOur StoryLeadership & TeamCareersOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessContact Us - [News](https://www.factionnetworks.com/company/news/): Announcements and milestones from Faction Networks — leadership, partnerships, USA manufacturing commitments, and independent security testing. Company · NewsFaction newsAnnouncements and milestones from Faction NetworksFeatured · PartnershipJuly 30, 2026Faction Networks and OSec Announce Partnership to Deliver Continuous Cyber Assurance for Owner-Controlled Zero Trust NetworksThe companies will combine owner-controlled Zero Trust networking with continuous, independent verification — helping organizations strengthen cyber resilience and earn better cyber-insurance coverage and premiums, while giving insurers greater visibility into cyber risk.Read the full release →PartnershipJune 22, 2026Faction Networks and iVALT partner to put a verified human behind every actionFaction and iVALT integrated iVALT’s Digital Trust platform into Faction’s Generation 3 Zero Trust — pairing an invisible, owner-controlled network with continuous, passwordless human identity verification, so a real, authorized human (or an AI agent acting under one) is provably behind every action.Read the full releaseLeadershipMarch 11, 2026Leroy “Lee” Williams appointed President & CEO of Faction NetworksFaction Networks has named Leroy “Lee” Williams as President and Chief Executive Officer. A forward-thinking executive known for building high-performance teams and scaling companies from start-up to maturity, Williams joins Faction to lead its next phase of growth as the company brings Generation 3 Zero Trust to the organizations that need it most. He works alongside co-founders Dave Rand, Chief Technology Officer, and Geoff Halstead, Chief Product Officer.Read the full story →RelatedOur StoryLeadership & TeamOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessContact Us - [Careers](https://www.factionnetworks.com/company/careers/): Help build the next generation of Zero Trust. Open roles in architecture, backend, and full-stack engineering on a small, senior, consequential team. Company · CareersHelp build the next generation of Zero TrustWe're a team of technologists and operators working on hard, consequential problems in security — and we're growingFaction is building a next generation cybersecurity platform the way it should work: with trust owned and controlled by the customer. If that mission resonates, we'd like to meet you.The vision.The first two generations of network security defended a perimeter, then centralized trust in cloud control planes that became the highest-value targets in the industry. Faction removes that dependency entirely: the owner holds the keys, and our infrastructure routes encrypted traffic it has no ability to read. Applied across networking, OT/IoT hardware, data, and AI, that single principle is the foundation of a platform built for the sectors that hold the nation’s digital infrastructure together — manufacturing, healthcare, energy, critical infrastructure, government, and financial services. The threat environment and the regulation are both moving in our direction, from the FCC’s action against foreign-made routers to the national reckoning over hardware and supply-chain integrity.The engineering.Zero-knowledge is a demanding and elegant constraint: you have to ship a seamless product while denying yourself any ability to see inside it. That discipline runs through a Rust cryptographic core, a four-layer encryption stack, owner-controlled PKI, and a distributed routing fabric — across every major platform, from phones and servers to embedded hardware in the field.The AI frontier.As AI agents begin acting at machine speed across networks, keeping a human in genuine, enforceable control of them becomes one of the defining problems of this decade — and a national-security problem, not just a commercial one. We believe the answer lives below the application layer, in cryptography, identity, and network architecture, where a kill switch actually works and an agent cannot manipulate and compromise cloud servers, software and vulnerable hardware to route around it.The hardware frontier — Zero Trust to silicon.You cannot outsource trust. Manufacturing in the United States is necessary but not sufficient; real assurance means continuous, independent verification of hardware, firmware, and components from the silicon up. We’re building toward exactly that — secure boot, cryptographic device identity, signed firmware, and controlled provisioning today, and Zero Trust principles embedded at the silicon level with post-quantum readiness as the destination. For engineers who work close to the metal — firmware, embedded, hardware security — this is a rare chance to solve a problem of real national consequence at a layer almost no one is defending.What we look forPeople who care about doing the right thing for customers, not just the easy thing.Curiosity and candor — we explain plainly and challenge each other directly.A bias for building things that are verifiable, not just impressive.Open rolesTechnical Architect & Lead EngineerCryptography · Secure networking · Distributed systemsTeam: Engineering. Reports to the Co-Founder & CTO. Path to VP or Director of Engineering. A senior, hands-on role building the core platform alongside the CTO while setting engineering direction as the team grows. You own the integrity of the trust model — device-rooted identity and end-to-end key custody under the customer — and the architecture's evolution from a single services tier into a globally distributed fleet of encrypted meeting points backed by a smaller, tightly controlled services layer.What you will buildCore platform architecture and production systems, hands-on.Deep work in cryptography, secure networking (VPN / ZTNA / WireGuard-class systems), and distributed-system design.Engineering direction, standards, and culture as the team expands.You bringDeep applied-cryptography and secure-networking experience.A track record of shipping production systems hands-on, not only designing th… - [Contact](https://www.factionnetworks.com/company/contact/): Get in touch with Faction Networks — explore the platform for your organization, start a partnership conversation, or join the team. Company · ContactGet in touchWhether you're exploring Faction for your organization, partnering with us, or joining the team — we'd like to hear from youTell us a little about what you're looking to do, and the right person will get back to you.Generalinfo@factionnetworks.comPartnershipspartners@factionnetworks.comOnlinefactionnetworks.comRelatedOur StoryLeadership & Team ## Resources - [Resources](https://www.factionnetworks.com/resources/): White papers, guides, solution briefs, threat briefings, and videos on Generation 3 Zero Trust — securing networks, data, OT/IoT, and AI in the new threat era. Resource CenterThe Next Generation of Zero TrustWhite papers, guides, briefs, and videos to help you understand Generation 3 Zero Trust and how it will help you meet the challenges of the new threat environment in the age of AI and OT + IoT.White PapersPDFFeaturedThe Next Generation of Zero TrustHow network security evolved from perimeter defense to cloud-centralized identity — and why the next generation of owner-controlled trust is required to meet today's challenges.White PapersDownload PDFAllWhite PapersGuidesSolution BriefsDatasheetsWhite PapersPDFWhite PapersThe Next Generation of Zero TrustHow network security evolved from perimeter defense to cloud-centralized identity — and why the next generation of owner-controlled trust is required to meet today's challenges.Download PDFDatasheetsPDFDatasheetsHuman Identity with iVALT + Faction — Data SheetTwo-page overview of the Faction + iVALT partnership — provable human authority for Zero Trust networks through Human-Bound Identity™, with human-in-the-loop enforcement for high-risk actions and agentic AI governance.Download PDFDatasheetsPDFDatasheetsFaction Virtual Private Circuits — Data SheetTwo-page overview of Faction Virtual Private Circuits — owner-controlled Zero Trust networking that keeps your network invisible and inaccessible, deployed rapidly with no rip-and-replace.Download PDFGuidesPDFGuidesFaction Virtual Private Circuits — Solution GuideSeven-page guide to Faction Virtual Private Circuits — owner-controlled Zero Trust networking that is invisible and inaccessible by design, rapidly deployed without rip-and-replace, with your keys never leaving your control.Download PDFDatasheetsPDFDatasheetsFaction Pods & Portals — Data SheetOne-page overview of Faction Pods and Portals — the embedded Zero Trust gateway that keeps OT and IoT machines invisible to the internet, with no rip-and-replace required.Download PDFGuidesPDFGuidesFaction Pods & Portals — Solution GuideSix-page guide covering how Pods and Portals eliminate internet exposure for OT and IoT devices — including deployment, compliance drivers (CMMC, FCC Router Mandate), and Cyber-Assured supply chain verification.Download PDFGuidesPDFGuidesFaction Data Security — Solution GuideSix-page business guide to owner-controlled data encryption — how Faction extends Zero Trust to files, email, and platform access, with keys only you control and zero knowledge by the platform.Download PDFSolution BriefsPDFSolution BriefsFaction Data Security — Technical Solution BriefTwo-page technical brief covering Faction's four-layer encryption stack, RSA-4096 CA hierarchy, zero-knowledge architecture, and key distribution model — for security-conscious evaluators and architects.Download PDFWhite PapersPDFWhite PapersSecuring Private AI InfrastructureOwner-controlled, zero-knowledge protection for private AI models, data, and compute — keeping models and training data unreachable by default and modifiable only by authorized, attributable action.Read →White PapersPDFWhite PapersContainment & Control of Agentic AIContainment, control, and continuous human authority for autonomous AI — enforced beneath the agent's runtime, rooted in hardware and owner-held keys.Read →GuidesPDFGuidesHuman Identity with iVALT + Faction — Solution GuideHow Faction Networks and iVALT combine to deliver provable human authority for every action on your network — passwordless biometric verification, presence verified at authorization, and cryptographically bound identity for AI agents.Download PDFGuidesPDFGuidesSecuring OT & IoT with FactionProtect the connected devices VPNs and SDNs can't reach — cameras, controllers, sensors, and legacy equipment — with a Zero Trust network you create and control.Download PDFSolution BriefsPDFSolution BriefsOT & IoT SecurityA concise overview: extend owner-controlled trust to the cameras, controllers, and sensors that now outnumber the computers on your network.Download PDFWhite PapersPDFWhite PapersOwner-Controlled Trust … - [Blog](https://www.factionnetworks.com/resources/blog/): News, guides, and field notes from Faction Networks on owner-controlled trust, OT and IoT security, USA-built hardware, and Generation 3 Zero Trust. Resources · BlogThe Faction blogCommentary and field notes from Faction NetworksFeatured · PartnershipJuly 30, 2026Faction + OSec: Delivering Continuous Cyber Assurance for Owner-Controlled Zero Trust NetworksWhy continuous, independent verification is built into Faction v1 from the start — and what that means for cyber insurance.Read →PolicyJuly 2026It's not just routers anymore — and that's exactly the pointThe FCC added networked robots and connected power inverters to its Covered List. It's the right call — and it's also proof that a ban alone can't finish the job.Read →PartnershipJune 2026Closing the human authority and accountability gap: why Faction partnered with iVALTAI is handing attackers exponential capability. First-gen VPNs and cloud ZTNA both fall short — and neither can prove a real, accountable human is behind a given action. Here's the gap we set out to close, and why iVALT is the right partner to close it.Read →RelatedResource HubFaction NewsOwn your trust. Keep your peace of mind.The new threat environment calls for a new Zero Trust model. We'd welcome the chance to show you how Faction puts you in control and secures your critical systems and assets rapidly with low cost and IT overhead.Get Early AccessContact Us