Asimily Adds Segmentation Orchestration to Address the Policy Enforcement Gap in IoT Security
Source: Asimily
Date: 2026/06/02
Asimily has launched Segmentation Orchestration, bringing connected-device risk intelligence directly into enforceable network policy without manual translation for the first time. No other solution on the market pairs full asset visibility and vulnerability prioritization with segmentation orchestration in a single platform built for the scale of AI-era attacks.
"AI has exploded the volume and sophistication of network attacks against connected devices, and security teams are discovering that visibility tools and manual policies cannot keep pace," said Shankar Somasundaram, CEO, Asimily. "Attackers are exploiting the space between what organizations can see and what their network policies actually enforce. While network segmentation is one of the most effective controls against lateral movement, implementing it at scale across heterogeneous IoT, OT, IoMT, and IT asset environments has required significant manual effort and a high risk of device disruption. Asimily's Segmentation Orchestration removes those obstacles by automating the full journey from device discovery through dynamic policy deployment."
Integrated within the Asimily platform, Segmentation Orchestration runs continuously rather than as a periodic configuration exercise that grows stale between reviews. The most common reason segmentation projects stall is that organizations can write policies but lack an intelligence layer to validate, deploy, and maintain them without disrupting operations. Before any segmentation policy is written or executed, Asimily discovers every device, maps how each communicates across the network, including which ports and protocols it uses, which services it depends on, and whether those connections are expected or anomalous. Segmentation recommendations are grounded in actual device behavior, not assumptions.
Eight components make up Asimily's Segmentation Orchestration:
1. Visibility & Inventory uses AI, deep packet inspection, and ecosystem integrations to build a comprehensive device inventory.
2. Vulnerability Prioritization identifies which vulnerabilities pose the greatest risk to a given network through attack path analysis and detailed prioritization.
3. Policy Auto-Recommendation generates specific, automated network segmentation policies ranked by risk impact.
4. Policy Simulation lets security and networking teams model the effects of policy changes before deployment. The capability is particularly important in healthcare and manufacturing environments where misconfigured policy can disrupt patient monitoring or halt production lines.
5. Policy Creation produces policies from risk-aware insights in the format and syntax native to the NAC or firewall in use.
6. Policy Application uses APIs and capabilities built with NAC and firewall vendors to push policies directly to those systems.
7. Continuous Segmentation adapts policies dynamically as device parameters, configurations, and network topology evolve, avoiding static IP range lock-in or VLANs that become outdated as soon as something changes.
8. Intelligent Policy Engine continuously evaluates existing policies for errors and inconsistencies, replacing policies when required.
"Most connected device security programs start with visibility. While that foundation matters, visibility that doesn't connect to action is merely just a dashboard," said Constancio Fernandes, SVP of Engineering, Asimily. "Modern AI driven attack vectors don't wait for security teams to manually translate what they see. We built Segmentation Orchestration because our customers needed a platform that automatically and continuously transforms device context into enforced policy. Complete cyber asset risk mitigation is always the goal, and it's what we continue building toward across every part of the Asimily platform."
Segmentation Orchestration extends Asimily's existing capabilities in deep device inventory and classification, behavioral analysis of network traffic, automated device patching, and AI-driven vulnerability prioritization based on actual exploitability in a given environment. Unlike generic CVSS-based scoring, Asimily's proprietary ATT&CK analysis maps vulnerabilities to real-world exploit paths so prioritization reflects what attackers can do in each customer's specific environment, not theoretical severity scores. The capability integrates with customers' existing NACs and firewalls, allowing organizations across industries to get more from infrastructure they have already deployed. Asimily was recently named the #1 solution in Gartner Peer Insights and earned the 2026 Global InfoSec Award in OT Security from Cyber Defense Magazine.
"Buyers in this space should be paying close attention to who is building product and who is navigating acquisition integration," said Somasundaram. "Asimily remains focused on one thing, which is delivering complete cyber asset risk mitigation capabilities that evolve with what our customers actually need."
More News