Sankofa
Cyber incident reporting, case management and threat intelligence sharing for national authorities and the infrastructure they protect.
What it does
Sankofa is the operational platform that makes national cyber incident reporting legislation work in practice. It handles incidents from the first report through to resolution, shares threat intelligence between organisations, sectors and peer national authorities using global standards.
Who uses it
National cybersecurity authorities, sector regulators operating under them, and the critical infrastructure organisations required to report incidents, including banks, utilities, telecommunications operators, hospitals, ports and government services.
Capabilities
Built from the ground up to operate reliably under extreme field conditions, combining on-device intelligence with institutional oversight.
Structured Case Management
Case management with structured workflows, evidence custody, audit trails and regulatory reporting.
1/6
Technical approach and regulatory alignment.
01
The technical approach
Cybersecurity capability across critical infrastructure is uneven by nature. Sankofa is built to accept both mature security operations centres and small utilities into the same national system smoothly.
The AI components run on locally hosted language models inside the customer's own infrastructure, which means incident data never leaves systems the customer controls.