Legacy Tools Force You to Choose: Fast OR Secure. Not Both.

— Operations Director, Upstream Operator
“We were spending $500K + year on truck rolls. Cut that by 60% in 12 months.”

The Access Problem Every Oil & Gas Team Knows

Operators & Engineers

  • Hours waiting for IT to unlock access while systems sit idle
  • Emergency workarounds that create compliance gaps
  • Tribal knowledge locked in heads of retiring SCADA Engineers

Security & Compliance

  • False trade-off: operational speed or
  • Security Controls Connection logs only - no proof of user actions for NERC CIP
  • Patching Windows XP is impossible; replacing it costs millions

Leadership

  • Can’t scale remote troubleshooting without scaling overhead
  • $50k-$500k/hour when systems go down
  • Cyber insurance premiums up $150% post-Colonial Pipeline

Remote Access Built for Oil & Gas Reality

Actually Works with Legacy Systems

Real legacy support: Windows XP plus OT protocols like Modbus and DNP3.

Deployed with 25+ year old PLCs globally

Actually Deploys Fast

Fast means field-fast: ~20 minutes per site, zero network changes, zero downtime.

35 facilities deployed, zero incidents

Actually Handles Low Bandwidth

Built for constrained links: smooth performance over 512 Kbps satellite with 500ms+ latency.

Offshore-proven where cloud solutions fail

Actually Proves Compliance

Audit evidence, not checkboxes: session video shows what users did, not just that they connected.

Zero audit findings in 4 weeks

— Operations Director, Upstream Operator
“We were spending $500K + year on truck rolls. Cut that by 60% in 12 months.”

Three Things happen when You Deploy Xona

From setup to compliance, here’s how it actually works in the field.

20-Minute Setup Per Site

No firewall changes. No VLANs. IT doesn’t have to touch your OT network. 

Real Result
Midstream operator rolled out 35 facilities while pipelines were running. Zero incidents.

Browser-Based Access to Everything

Operators open a browser, authenticate, and they’re in. Works with Windows XP and SCADA systems.

Real Result
Zero help desk tickets in first 90 days across 200+ users. 

Compliance Happens Automatically

Session video records every action. Audit reports generate themselves.  

Real Result
Customer passed NERC CIP audit with zero findings. 

How Zero Trust for OT Differs from IT ZTNA Solutions

Xona was purpose-built for the constraints electric utilities actually face: legacy SCADA that can't be patched, air-gapped substations, strict change control, and forensic audit requirements.

Eliminate Truck Rolls

Upstream

Shale operator, 200+ remote well sites

  • 60% Fewer Emergency Truck Rolls
  • $300k + Annual Savings
  • 40% Faster Incident Response

Meet TSA SD-O2F Security Directive

Pipeline

Meet TSA SD-O2F Security Directive 

  • Zero findings on TSA SD-02F Security Detective
  • 75% less audit prep work

Work Over Satellite

Offshore

Gulf of Mexico offshore platform 

  • Smooth performance over 512 Kbps
  • Eliminated $15k helicopter trips
  • Zero cloud dependency

How Does Secure Remote Access Work in Low-Bandwidth OT Networks?

OT environments operate under conditions that traditional IT access tools were never designed for.

Secure Remote Access Platform Capabilities

Secure Access Without Endpoint or Network Exposure

  • No need for VPN Tunnels
  • No inbound firewall exposure
  • No endpoint trust
  • No lateral movement paths

Identity-Driven, Least-Privilege Access

  • MFA Enforcement
  • Time-Bound Access Windows
  • Automatic Session Expiration
  • Granular Permissions Controls

Session Recording and Audit Evidence

  • Complete Session Video Capture
  • Keystroke and Action Logging
  • Automated Audit Reports
  • SIEM Integration

Purpose-Built for OT, Not Adapted from IT

  • Protocol Isolation Technology
  • Works With Legacy Systems
  • Low-Bandwidth Optimizations
  • Air-Gap Capable

Designed for OT Realities

  • Session continuity during transient network interruptions
  • Automatic reconnect with reauthorization
  • Predictable performance over low-bandwidth, high-latency links
  • Governance and auditability maintained during disruptions

How Xona Compares to What You're Using Now

Most remote access tools were built for IT environments. Xona was built for oil & gas OT reality.
What Matters
 Deploy without shutting down production 
Work with Windows XP and aging PLCs 
Handle 512 Kbps satellite with high latency 
Prove compliance (not just connection logs) 
Deploy on air-gapped platforms 
Oil & gas customer validation
20 min, zero disruption
Native Support 
Optimized
Session video + auto docs 
Fully on-premises 
Thousands of miles of pipelines supporting with Xona 
VPN/Jump Servers 
Weeks of change control 
Often Fails 
Slow/unusable 
Connection logs only 
Possible but complex 
Generic IT tool 
Cloud Remote Access
Weeks of IT coordination 
Not Supported 
Requires high bandwidth 
Moderate 
Cloud-dependent 
Limited references 

Questions We Hear From Oil & Gas Teams

Will this actually work with our Windows XP Systems?

Yes. We’ve deployed in facilities running Windows XP, 25+year old PLCs, and proprietary protocols that the vendor stopped supporting a decade ago. 

Can we deploy without shutting down production?

Yes. 20 minutes, zero network changes, zero downtime. Customer deployed 35 facilities during live pipeline operations without a single incident.

What about our offshore platforms with terrible satellite bandwidth?

Built for it. Xona works smoothly over 512 Kbps satellite links with 500ms+ latency. On-premises deployment—zero cloud dependency.

Does this meet TSA SD-O2F Directive?

It closes the gap. Session video recording proves what users did during access. Customer passed NERC CIP audit with zero findings 4 weeks after deploying.

How long until operators can use this without IT help?

5 minutes. Browser-based access works like visiting a website. Zero help desk tickets across 200+ users in first 90 days.

What’s the actual ROI?

Typical payback: 6-12 months. Upstream operators save $300K-$500K/year with 60% fewer truck rolls. Refineries avoid $50K-$500K/hour downtime.