Compliance lives in folders and emails
Nuclear safety authorities manage requirements, prescriptions and evidence scattered across documents, spreadsheets and inboxes. Reconstructing who approved what, and on what basis, takes weeks and does not withstand a rigorous audit. Governance has to rest on a system, not on people's memory.
Traceable requirements
Every regulatory requirement is linked to the evidence that satisfies it, with a verifiable end-to-end chain.
Sovereign on-prem
Data and compute stay inside the authority's infrastructure, with no dependence on external clouds.
Accreditations
Bundle compliant with ISO 27001, ENS and FedRAMP, with documented, inspection-ready controls.
Immutable ledger
Decisions, approvals and changes are recorded immutably and time-stamped.
Accredit
The bundle is installed on-prem and taken through accreditation under the authority's scheme.
Map
Requirements and prescriptions are modeled and linked to existing evidence sources.
Verify
CORTEX assesses evidence completeness and flags gaps and inconsistencies.
Report
Reports and inspection dossiers are generated from the ledger, always aligned to the real state.
CANON OS is a sovereign bundle of software, hardware and services that brings nuclear authorities' evidence-first governance onto accredited on-prem infrastructure. It packages the CORTEX compliance engine, the VAULT archive and an immutable ledger on a MONOLITH compute platform, all under the authority's exclusive control and accredited to ISO 27001, ENS and FedRAMP.
Sovereign on-prem
Installed inside the authority's infrastructure and taken through accreditation under its scheme; data and compute stay entirely under its control.
Classified air-gapped
Configuration isolated from any external network for classified information, with updates delivered only through signed, verified media.
Accredited private cloud
Operation on an already ENS/FedRAMP-accredited government private or community cloud, keeping data sovereignty within the jurisdiction.
Verified boot and TPM
The whole platform boots with secure boot and TPM 2.0 on every node, with firmware attestation before entering service.
Encrypted, sovereign data
Evidence archive and ledger encrypted at rest with keys managed on-prem; no data leaves the authority's perimeter.
RBAC and immutable ledger
Role-based access via AEGIS and a time-stamped immutable ledger: who approved what, and on what basis, stays verifiable.
Accreditations
Bundle compliant with ISO 27001, ENS and FedRAMP, with documented, inspection-ready controls under the authority's scheme.
What exactly does the bundle include?
Software (CORTEX, VAULT, AEGIS, ledger), compute hardware (MONOLITH) and accreditation plus support services, delivered as one sovereign system.
Why sovereign and on-prem?
Because a nuclear authority cannot cede control of its data to external clouds: data and compute stay inside its own infrastructure.
What does evidence-first mean?
That every regulatory requirement is linked to the evidence that satisfies it, with a verifiable end-to-end chain: governance rests on the system, not on people's memory.
How is accreditation reached?
The bundle is installed on-prem and taken through accreditation under the authority's scheme, with ISO 27001, ENS and FedRAMP controls already documented.
Is the ledger truly immutable?
Yes: decisions, approvals and changes are recorded immutably and time-stamped, so a rigorous audit can reconstruct the whole history.
The mark encodes the mechanism, not the sector: la cupola di contenimento, il nucleo, le barre di controllo.