Connect
Firewalls, proxies, ITSM, SIEM, identity providers, cloud — one integration layer.

Producing a single audit report means logging into five systems, exporting to Excel, and reconciling the results manually. Answering a question as simple as "who owns this rule and when did it last change" takes hours. The data exists — it just doesn't exist in one place.
Producing a single audit report means logging into five systems, exporting to Excel, and reconciling the results manually. Answering a question as simple as "who owns this rule and when did it last change" takes hours. The data exists — it just doesn't exist in one place.
These are structural problems. They don't get solved with another script or another tool. Kona solves them at the platform level.
Kona connects your existing systems through one integration layer, runs your automations and custom UIs, and gives every team controlled access with SSO, RBAC, rate-limiting and full audit trails built in.
Firewalls, proxies, ITSM, SIEM, identity providers, cloud — one integration layer.
Build tools that pull, combine and act on data. Any language, existing or new code.
Web UIs and REST APIs give other teams exactly the access they need. No ticket.
Granular permissions, multi-tenancy, audit trails — the platform itself.
Firewalls, proxies, ITSM, SIEM, identity providers, cloud — one integration layer.
Build tools that pull, combine and act on data. Any language, existing or new code.
Web UIs and REST APIs give other teams exactly the access they need. No ticket.
Granular permissions, multi-tenancy, audit trails — the platform itself.
Security teams often end up stitching together scripts, dashboards and one-off UIs. Kona is the runtime for building real tools instead — safely, together, on top of the systems they already run.
Your systems stay where they are. Kona connects to them, runs your automations on top of them, and hosts the applications your teams actually use. Everyone accesses those applications through Kona via Web UI, REST API, or automations. No direct connections, no open ports, every request logged.
Every request through Kona is authenticated, authorised, and logged. Your infrastructure stays yours. Nothing leaves your environment.
Enterprise SSO, fine-grained RBAC, complete multi-tenant isolation. Every action is scoped to a user, a tenant and a permission — never to a shared credential. Users interact through Kona, not through direct access to your systems.
Self-hosted on your infrastructure. Air-gapped deployments supported. Built in Switzerland under Swiss data protection law.
Every request generates an immutable record with full context. Analyse audit data directly in Kona or export to your SIEM.
Automation runs in its own container perimeter, with no outbound internet. Credentials are centrally managed and never exposed to the code that uses them.
Your team builds on Kona using Kona AI Skills — development blueprints that guide engineers through the platform and its integrations, alongside an AI coding assistant.
"What components work for this UI?"
"How does the Tufin API work?"
Every built service inherits the platform's full security model.
You can build your tooling with or without AI — everything is fully implementable by hand. AI with Skills just helps you ship it faster, if you want.
The architecture. The deployment. Where it fits. The thinking behind.