Onam Security

Onam Operations overview

Onam Operations is a workspace where your team works with specialist AI agents that investigate your cloud with evidence and change nothing without a person’s approval.

Status: Early access. Onam Operations runs on the Onam platform and is enabled per organisation by invitation, starting with AWS and the Onam Security inventory and findings. Organisations start at the “propose” ceiling: agents answer, investigate and propose; nothing changes your cloud. See Availability for every capability’s status.

What it is

A real question about a cloud estate usually spans several consoles — security findings, inventory, cost, recovery — and today someone joins the answers by hand. Onam Operations adds a workspace above the products that already know your cloud:

  • An orchestrator turns your request into a visible plan and routes each step to a specialist agent.
  • Specialist agents — Asset, Security, Compliance, Data, Automation, and later FinOps, DR and Architecture — each with a declared job, permissions and limits.
  • Evidence on every claim: the skill, query, rows and scan behind each number.
  • An approval centre where every proposed change is decided by a named person, diff first.
  • An audit trail of every turn, tool call, decision and approval, append-only and hash-chained.

What it is not

  • Not a chatbot. A chatbot answers. This plans, investigates, proposes and records.
  • Not autonomous. Every change to a customer cloud passes a human approval gate. No setting removes it.
  • Not a second scanner. Agents reason over the data the products already resolved. An agent that re-scans your cloud is a bug.

How it relates to the AI Assistant

The AI Assistant inside Onam Security is available to every customer today: ask questions about your findings and get cited answers. Onam Operations is the workspace above it — plans, tasks, approvals and an audit trail across specialist agents.