Architecture

Cloud-only by design

Parumox connects to any monitoring, ITSM, or code platform that exposes a cloud API. Hybrid environments are supported when monitoring data is accessible via cloud APIs (e.g., Azure Arc-managed servers reporting to Azure Monitor, on-prem apps forwarding logs to CloudWatch or Datadog).

Cloud-Hosted SaaS

Fully cloud-hosted. No on-premises agents, no self-hosted components, no customer-VPC deployments. All integrations connect via cloud APIs.

Read-Only by Default

Agents never write to production systems unless you explicitly enable the Remediation Engineer role. Every action requires human approval.

Always Up to Date

Automatic updates and new features delivered continuously. No maintenance windows or manual upgrades.

No Customer Data for Training

Your data is never used for model training. AI processing happens in real-time and data is not retained after investigation.

Data Residency Options

Choice of Parumox hosting region (US, EU, APAC) for data processing and storage. Available on annual plans.

Full Audit Logging

Every agent action, decision, and data access is logged and exportable to SIEM (Splunk, Sentinel) in structured format.

Supported Platforms

Every cloud, every monitoring tool

All integrations connect via cloud-hosted APIs. ServiceNow and Microsoft Teams are first-class citizens.

Cloud Providers

AWS — EC2, ECS, EKS, Lambda, RDS Azure — VMs, AKS, App Service, Functions, SQL GCP — Compute Engine, GKE, Cloud Run, Cloud SQL

Cost & Billing

AWS — Cost Explorer, Trusted Advisor, Compute Optimizer Azure — Cost Management, Azure Advisor, Resource Graph GCP — Cloud Billing, Recommender, Active Assist

ITSM & Alerting

ServiceNow (full ITSM: incidents, changes, CMDB, knowledge, SLAs, problems) Jira / Jira Service Management Azure DevOps Boards PagerDuty Opsgenie More coming

Communication

Microsoft Teams Slack Email (Exchange Online via Microsoft Graph, IMAP/SMTP)

Code & CI/CD

Azure DevOps Repos & Pipelines GitHub / GitHub Actions Bitbucket / Bitbucket Pipelines More coming
Trust & Security

Built for enterprise compliance

Read-only by default. Human-in-the-loop always. Your engineers stay in control.

Read-Only by Default

Agents observe and investigate. Write access requires explicit opt-in via Remediation Engineer with mandatory human approval.

SSO / SAML / SCIM

Enterprise identity integration — Entra ID, Okta, OneLogin, Ping Identity. User provisioning via SCIM. Annual plan required.

Role-Based Access Control

Granular permissions: who can configure agents, view investigations, or approve remediation actions.

Audit Logging & Compliance

Full audit trail exportable to SIEM. Structured format for compliance reporting.

Data Residency

Choose US, EU, or APAC hosting region for data processing and storage.

No Training on Your Data

Customer data is never used for AI model training. Processing is ephemeral.

SOC 2 Type II

SOC 2 Type II certification is on our roadmap. We are transparent about our compliance status and will update this page as certifications are achieved.

Want to see the platform in depth?

Schedule a technical walkthrough with our engineering team.