Provider evidence
Open Systems
Open Systems founded in 1990 in Basel, Switzerland, more than three decades before the SASE category itself existed, originally as a managed security service provider before evolving its platform into what it now markets as native, managed SASE Experience. The company’s ownership history took a distinctive turn in 2023: after a period under the European private-equity firm EQT, Open Systems was acquired by Swiss Post - Switzerland’s state-backed national postal and logistics institution - a materially different kind of owner from the venture-capital or private-equity structures behind most other vendors in this category.
technology vendor / managed service provider · UK entity not yet reviewed
Best for: Retail and e-commerce; Manufacturing; both
UK contracting entity is not confirmed by the published Neon provider record.
Open Systems labels ALTANA chemicals and documents SASE at 60-plus sites. Correct sector to manufacturing/chemicals, not logistics. Recovered Open Systems customer index identifies Mikron precision manufacturing using SASE. Does not prove every secondary-directory detail. Mammut primary case describes SASE, branch breakouts, VPN and managed network operations for an outdoor retail brand. This is sector experience only; scope, UK delivery and suitability for the buyer require separate confirmation.
- https://www.open-systems.com/company/customers/
- https://www.open-systems.com/company/customers/mammut/
Research only
https://netify.co.uk/marketplace/opensystems/These capabilities use the same evidence as the provider shortlist and matching. A missing finding is not evidence that a provider lacks the capability.
Capability evidence
| Capability | Finding | Evidence and qualification |
|---|---|---|
| Fully managed service | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| DIY / self-managed model | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Co-managed service | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Multi-tenant MSP / white-label support | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Professional services and migration support | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Last-mile circuit management | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Lifecycle management | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Flexible commercial model | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Encrypted overlay fabric | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Dynamic path selection | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Active-active link utilisation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Application-aware routing | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| QoS and traffic shaping | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Packet loss remediation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Local internet breakout | Yes | Native, confirmed directly via real, named customer-deployment detail - 'low-cost and secure internet breakouts' specifically described in the Mammut case study [16] Source · Evidence dated 2026-07-22 |
| MPLS coexistence and migration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Cellular and 5G support | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Cloud on-ramp | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Public cloud gateways | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Private PoPs / dedicated PoPs | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Private global backbone | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Regional breakout and data residency | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Multi-cloud transit fabric | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Flexible edge form factors | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| High availability design | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| SLA-backed service fabric | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Integrated next-generation firewall | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Full SASE platform | Partial | See the published provider record for source context; confirm the scope for your deployment. |
| SSE ecosystem integration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Zero Trust Network Access | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Secure web gateway | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| CASB capability | Yes | Native, confirmed as part of the broader converged security stack [7] Specific inline-versus-API-mode technical detail not itemised Source · Evidence dated 2026-07-22 |
| Data loss prevention | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Remote user access | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| SOC/SIEM/SOAR integration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Centralised orchestration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Customer portal and RBAC | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Observability and digital experience monitoring | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| APIs and automation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Managed service assurance | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |