Platform / Tz0 Security
Module · policy enforcement
Tz0 Security
Security policy and DLP on the endpoint
Writing the security standard is the easy part. The real question is another one: how do you guarantee it is being followed on twelve thousand machines, right now, without someone checking them one by one?
Enforces the rule even with the workstation off the network · the evidence stays on your server

USB port
The rule travels with the machine.
It makes no difference whether the machine is on the company network, at an employee’s home or on the road: the removable-media policy travels with it. A USB stick that is not on the list will not mount, and the attempt is recorded with machine, user and time.

Console capture from an estate in production. Machine and person identification replaced; figures untouched.
What the module does
Seven fronts of control, a single agent.
Everything below is configured in the console and enforced by the agent on the workstation — with or without a connection to the server at the moment of the attempt.
Blocks and rules
Defines what may run, what may be installed and what may leave the machine — by group, by department or by workstation.
Hardware snapshot
Photographs the machine’s physical configuration and warns when a part is swapped, removed or appears out of nowhere.
Real-time visibility
What is happening on the estate right now — not what happened during last night’s inventory run.
Tracing for lost equipment
A laptop that went missing keeps reporting: where it surfaced, on which network, under which user.
Working-hours control
Sets the window in which each group may operate and records what was attempted outside it.
Application-layer firewall
The rule is not just port and IP: it is which program may talk, to whom and through where.
Integration with Windows policy
Lives alongside the GPO you already have instead of fighting it — and covers what the GPO cannot reach.
DLP support
Stops personal data leaving where it should not and records the attempt — the backbone of a defence in a data-protection audit.
How it works
From the written rule to the stored evidence.
The whole cycle runs inside your network. No step depends on an external service.
Evidence
Blocking is half of it. Proving is the other half.
In an audit, nobody asks whether the policy exists — they ask what happened on the 14th, who tried, what was blocked and where the record is. Every attempt becomes an event stamped with time, machine, user and the content that triggered the rule.
Console
The policy is written and enforced in the browser.








Screens from a real estate in production, not a demo environment. Folder paths that identified people, the internal domain and one public-sector folder were replaced with generic equivalents before publishing; figures, percentages and the interface itself are untouched.
What changes in practice
Eight things that stop depending on individual discipline.
In the customer’s words
The controls that were missing, inside their own environment.
We are very happy with the product, and our experience so far has been adding to the controls and security we were looking for inside our computing environment.
Translated from Portuguese
Gustavo PriuliIT Coordination · Unimed Federação Nordeste PaulistaIncluded with the module
Three tools in the same package.
A new report does not become a project. We do not build bespoke work for a single customer, but we look at every request: when the need serves everyone, the report goes into the product and reaches all customers in the next update.
Report builder
Ships with the package, not sold separately. It is for people who want to build their own reports outside the browser.
Development platform
Carries agent communication across segmented topologies and lets the product be extended.
Operations dashboard
The state of the estate on one screen, with whatever went off-target at the top. More than 600 ready-made reports, covering every module.
Who works this way
A policy built on Tz0.
“We built a security policy entirely on Tz0.”
Translated from Portuguese
“Tz0 helps us a great deal in audits, which generally have a lot to do with security.”
Translated from Portuguese
Other modules
Bring us your security standard. We will show you what can actually be enforced.
A 30-minute technical conversation: you describe the environment and the policy you have to meet, we point out what Tz0 Security enforces on its own and what still needs a process.