CyberAudit Web: the software that runs your CyberLock system

CyberAudit Web is the software system that manages a CyberLock system. It runs on a server and gives you a browser interface to every lock, key and person in your operation. One place to grant access, set the hours it applies, expire a key, and pull the audit trail when someone asks who opened what.

One application for locks, doors and padlocks

This is the part most people do not realise until they see it. CyberAudit Web manages CyberLock cylinders, doors connected to the Flex System, and FlashLocks all from one application. The electronic cylinder on a remote cabinet, the card reader on the lobby door and the keyless padlock on the yard gate are administered in the same place, by the same people, and report into the same audit trail. You are not logging into three systems and reconciling them by hand.

1

Grant

Add a person, tag them by role, and their key is built from that. Tag locks by area or route and access assigns itself. New hires are provisioned correctly on day one without anyone rebuilding a permission list.

2

Update

Key holders reauthorize their keys at a communicator. Permissions change centrally and reach the key the next time it is updated, so revoking access does not mean visiting the building.

3

Audit

Every key to lock contact is recorded with a date and time stamp. Pull reports on demand, or have them emailed on a schedule so nobody has to remember to log in.

Hosted on secure AWS, or on your own server

CyberAudit Web runs in a browser either way, and the locks, keys and audit trail are identical between the two. Most customers run the hosted version, which sits on secure AWS infrastructure. There is no server to buy, nothing to patch, and you reach it from any laptop or phone. Organisations whose security policy will not allow a hosted platform install the same software on a server they own, where it can sit on a private network with no exposure to the internet. Public sector agencies, utilities, research institutions and defense contractors usually take that route. Tell us which side of that line you are on and we will scope it accordingly.

How key holders update their keys

A CyberKey carries its permissions with it, so it has to be refreshed. The device that does that is called a communicator, and there are several so you can balance security against convenience for each group of people:

  • CyberKey Authorizers, durable and built for remote locations, letting people renew expired keys daily for tight key control. An Authorizer works over the internet or a LAN and connects to CyberAudit Web using SSL/TLS.
  • IR Encoders for programming and downloading locks in the field.
  • USB and ValidiKey stations at a desk or a dispatch window.
  • Flex System keyports where a card reader system is already in place.
  • Key vaults, so keys are returned to a locked cabinet at the end of a shift rather than going home in a pocket.
  • Android and iOS phones and tablets over Bluetooth.

CyberAudit Link, the mobile app

CyberAudit Link runs on Android and iOS. It programs and downloads CyberLock Blue over Bluetooth, so a technician standing at a padlock can pull its audit trail or push a change without carrying a laptop or driving back to the office. Paired with an IR Encoder 10 it also handles the rest of the lock range.

Access that assigns itself

Tags are what keep a growing system from becoming a spreadsheet. Tag people by role and locks by area, and permissions follow the tags instead of being maintained one by one. A single lock can carry more than one tag, so the same cabinet belongs to Route 4 for the driver and to the Northeast service area for the technicians. Schedules layer on top, so access applies only on the days and hours it should.

Keys that expire on their own

Expiration rules can be fixed to a date, or rolling, where a key stays alive only as long as its holder keeps docking it. Set a one day rolling rule and a key that is not updated stops working at midnight. Somebody who leaves on Friday has a dead key by Saturday whether or not anyone remembered to collect it. Lost keys can be disabled outright, and locks can be programmed to refuse a specific key.

Delegating administration across sites and departments

Larger systems rarely have one administrator. CyberAudit Web uses subsystems and visibility rules so a site manager sees and manages only their own locks, people, schedules and reports, while headquarters retains the full picture. Departments can run different holidays and different operating preferences without being split into separate systems.

Reports, notifications and the journal of changes

Beyond the audit trail there is a journal of changes recording what administrators did, which matters the first time somebody asks who granted a permission. Notifications can push events to the people who need them, and reports can be scheduled and emailed rather than pulled by hand.

Enterprise and Enterprise Basic

CyberAudit Web Enterprise is the full system, built for enterprise level deployments. Enterprise Basic is the same software with a reduced feature set for smaller installations: a single login point, no separate administrator nodes or subsystems, and one default key template. Most single site operations start on Basic. If you are not sure which fits, describe the operation and we will tell you honestly.

Common questions

Is CyberAudit Web cloud based or installed on our own server?

Both are offered. The hosted version sits on secure AWS infrastructure with no server for you to buy or patch. The on premises version installs on a server you own and can run on a private network with no exposure to the internet. The locks, keys and audit trail behave identically either way.

Do I need CyberAudit Web to use CyberLock?

Yes. The software is what programs the keys, holds the permissions and collects the audit trail. The cylinders and keys are the hardware half of the system, and CyberAudit Web is the half that makes them manageable.

Can it manage our card readers too?

Yes. CyberAudit Web manages CyberLock cylinders, doors connected to the Flex System, and FlashLocks from one application, so electronic cylinders, card reader doors and keyless padlocks all live in the same place with one audit trail.

How do people update their keys in the field?

At a communicator. That can be a wall mounted Authorizer at a remote site, a USB or ValidiKey station at a desk, a Flex System keyport, a key vault, or an Android or iOS phone over Bluetooth. You choose the mix that fits each group.

Can I get audit reports without logging in?

Yes. Reports can be scheduled and emailed to you, so the record arrives whether or not anyone remembers to pull it.

Can different sites manage their own locks without seeing everyone else’s?

Yes. Subsystems and visibility rules let each site or department manage its own locks, people and schedules while headquarters keeps the full picture. Sites can even run different holiday calendars.

What is the difference between Enterprise and Enterprise Basic?

Enterprise Basic is CyberAudit Web Enterprise with a reduced feature set for smaller installations. It has a single login point, no separate administrator nodes or subsystems, and one default key template. Enterprise adds delegated administration and the full module set.

We already run CyberLock. Can TEC take over the software side?

Yes, and it is a common request. Tell us what version you are on and how it is hosted today, and we will tell you what moving looks like before you commit to anything.

See it running on your own locks

We run free pilots. We fit a small number of your openings with electronic cylinders, set you up in CyberAudit Web, issue keys to the people who actually use those doors, and you read the audit trail before committing to anything. Tell us what you are securing and roughly how many openings are involved.