Bastazo, a Bentonville-based cybersecurity company specializing in operational technology (OT), announced Tuesday the launch of its updated Bastazo Platform, an AI-powered solution aiming to streamline vulnerability remediation for critical infrastructure.
The Bastazo Platform ingests vulnerability data from several threat feeds, including the National Vulnerability Database and CISA’s Known Exploited Vulnerabilities catalog, automatically mapping risks to an organization’s specific OT assets.
Using machine learning models, the platform evaluates real-world threat activity, then considers operational constraints and an organization’s profile to deliver remediation plans. It will automate the path from detection to resolution, aiming to reduce risk without increasing operational burden.
“Vulnerability backlogs in critical infrastructure are growing faster than teams can remediate them,” Kylie McClanahan, CTO of Bastazo, said in a press release. “Most solutions stop at identification. We take it further, prioritizing threats, recommending fixes and integrating them into work plans. Our platform helps organizations move from reactive patching to proactive security.”
Bastazo provides multiple remediation options, whether patching, configuration changes or compensating controls. Each action is logged to support compliance reporting for regulatory frameworks.
Specifically designed for energy, water and industrial sectors, the platform addresses the constraints of OT security. Unlike IT environments where patches can be applied rapidly, OT systems often require manual testing, scheduling and workaround identification. Bastazo automates this process, integrating directly with existing work management systems.
“We know that in OT, security can’t come at the cost of reliability,” Mauricio Iglesias, CEO of Bastazo, said in the release. “That’s why we built a platform that doesn’t just highlight risks — it helps teams resolve them efficiently while keeping operations online.”