For IT leaders and architects
Assess your infrastructure for free, then AI-enable your environment step-by-step with OneIQ ICG.
Works across your existing stack
Buyer / IT-pro workflow
Four steps, at your pace, with nothing leaving your environment along the way. Nobody knows your infrastructure better than the team that runs it - which makes it the lowest-risk place to run your first AI project, before extending it anywhere else.
Get the OneIQ collector and install it inside your own environment - nothing calls home.
Ask your first question and watch OneIQ ICG resolve it against real, live telemetry.
Define exactly what one AI agent can see - a cluster, a fleet, or a single metric.
Query an anonymized zone with any frontier model to see AI reasoning over your own estate.
| Business Unit | Total Cost (USD) |
|---|---|
| Finance | $4.32M |
| Retail Operations | $7.81M |
| Engineering | $6.24M |
| IT Services | $5.17M |
| Human Resources | $1.23M |
Agent zones
Agent zones are access boundaries you define. Each zone controls which AI agents can query which parts of your estate, what data those queries can return, and how long the zone stays active. Your team configures zones. Your team revokes them.
| Zone | Purpose | What the AI can access | What is excluded |
|---|---|---|---|
| win-nutanix | All Windows VMs on the Nutanix cluster | OS build, patch level, uptime, VM-to-host placement | Linux fleet, ESX cluster, storage arrays, credentials |
| linux-esx | All Linux VMs on the ESX cluster | CPU and memory utilisation, VM count, cluster headroom | Windows fleet, Nutanix cluster, application data, credentials |
| dr-site | Everything at the DR site, and nothing at production | Replication lag, RPO/RTO metrics, last failover test result | Production site, financial data, user identities |
| dmz-web | Web tier VMs in the DMZ only | OS patch level, open ports, CVE exposure | Internal app tier, database tier, credentials |
| finance-vlan | Hosts on the Finance VLAN, for a segmented audit | Configuration baseline, patch compliance, change history | Other VLANs, user activity logs, application data |
Zone definitions are fully configurable. The examples above are illustrative defaults — your team defines the exact scope of each zone during deployment.
Agent Zones
An Agent Zone scopes an agentic service to exactly the infrastructure it needs — so any LLM or copilot gets a governed, answer-shaped conversation instead of unrestricted estate access.
Platform compatibility
OneIQ ICG connects to your existing management plane APIs. It does not replace your monitoring tools, your hypervisor management, or your cloud consoles. It sits alongside them, reading the signals they already expose.
OneIQ ICG is OEM-neutral. It surfaces consistent, normalised context regardless of which combination of platforms makes up your estate — hybrid, multi-cloud, or entirely on-premises.
Advanced infrastructure planning
A free OneIQ Assessment gives you a real, current view of your estate, including lifecycle status, capacity headroom, and licensing exposure, before you sit down with any vendor. Ask better questions, get more out of the conversation, and make the most of your partner's expertise.
Proof of concept
The PoC is designed to run inside your environment on your schedule. No vendor access. No staged demo environment. Your infrastructure, your data, your result.
Pull the container image or download the binary. Run it on any VM or bare metal host inside your environment. No inbound firewall rules needed — OneIQ ICG only makes outbound calls to your management plane APIs.
Add read-only credentials for one platform — your primary hypervisor or cloud environment. OneIQ ICG will begin normalising context immediately. You do not need to connect your full estate to see value.
Connect any MCP-compatible AI agent or use the built-in test interface to run a query against your estate. Capacity risk, lifecycle flags, or idle resource identification — your choice.
No procurement, no vendor access, no staged demo — just your environment and about 15 minutes across the three steps above. A solutions engineer can walk through it with you live, or hand you the binary and get out of your way.
Security brief
If you need to bring someone else into the approval conversation, this one-page brief covers the deployment model, data handling, and access controls in the language your security team expects.
Ready to evaluate
Talk to a solutions engineer who can walk through the deployment with your specific stack and security requirements.
Download