Recent activity
Why this organization matters now
Dated Mar 16, 2026
On March 16, 2026, StreamScan launched StreamEnclave, an on-site controlled-information environment with separated systems, controlled access, continuous monitoring, centralized logging and compliance-evidence generation for organizations preparing for CMMC or CPCSC requirements.
Source: StreamScan launches StreamEnclave (opens in a new tab)Technologies and services
A closer look at the products, services, operating features, and documented applications that shape the organization’s role.
Open extended detection and response platform
CDS Open XDR
What it enables
CDS centralizes security data from endpoints, networks, cloud, operational technology and firewalls, then combines behaviour analysis, alert correlation, investigation and automated response in an open XDR platform.
Evidence strength: HighLast reviewed Aug 11, 2026
Operating context
Maturity
CENGN independently reported successful CDS integration with pfSense on its testbed and blocking of command-and-control traffic from infected Windows systems in 2018.
Availability
StreamScan currently markets CDS Open XDR and integrates it into its StreamShield managed detection and response service.
Decision-useful features
- Centralized ingestion of endpoint, network, cloud, operational-technology and firewall security data
- Signature and machine-learning analysis of network behaviour for known and zero-day threats
- Cross-layer alert correlation and investigation from one control point
Technical detail and applications
Documented applications. Enterprise network threat detection and response · Operational-technology security monitoring · Managed alert triage and incident investigation
- Automated isolation of compromised devices or accounts and integration with existing security tools
Secure controlled-information enclave and managed compliance environment
StreamEnclave
What it enables
StreamEnclave is an on-site secure environment intended to isolate controlled information, enforce access controls, monitor activity and generate audit evidence without placing a customer's entire IT estate inside the assessment boundary.
Evidence strength: HighLast reviewed Aug 11, 2026
Operating context
Maturity
StreamScan announced StreamEnclave on March 16, 2026; this run found no independent deployment or assessment outcome for the product.
Availability
StreamScan currently offers StreamEnclave as an on-site subscription environment with managed monitoring and standardized evidence handling.
Public record
Public programs and contracts
Dated participation, delivery roles, partnerships, and disclosed funding provide the operating context behind the profile.
Funding and ownership
NRC IRAP contribution
Nov 15, 2021$350,000
NRC IRAP provided a C$350,000 contribution to automate cybersecurity analyses and investigations, with the agreement running from November 15, 2021 to March 31, 2023.
Prepare the conversation
Questions for a first conversation
Which StreamEnclave controls, interfaces and evidence responsibilities are inherited by a customer, and which remain customer-owned?
Public material describes separation, monitoring and evidence generation, but not the control-by-control shared-responsibility boundary or how assessors treat it.
Which current CDS configurations have independently measured detection, false-positive and response outcomes beyond the 2018 CENGN testbed?
CENGN validated a bounded pfSense configuration, while current Open XDR material does not publish configuration-specific independent performance results.
Which public project identifiers, configurations and accepted results substantiate StreamScan's stated work with DND, RCAF and CSE?
The official profile names those organizations, but this run found no durable independent project record or accepted operational result that could be mapped as proof.
Geography
Montréal, Quebec
The map is centred on Montréal. It does not imply a street address or exact facility location.
Open in the ecosystem mapSource library
Sources behind this profile
Open the original record, then expand the source details to see which parts of the dossier it informs.
Public sources cited · Facts and assessments kept separate · Human review
Public sources
13
Last reviewed
Aug 11, 2026
Identity and profile
- Open source: Cyber threat to operational technology (opens in a new tab)
Cyber threat to operational technology
Canadian Centre for Cyber Security
Source details
Move into a better-informed conversation
Take this dossier into the next conversation.
Save the organization and its public record in a private Shortlist, then request a human-routed introduction when the fit is specific enough to discuss.