// Platform Architecture · INNFINI Reference

One platform.
Eight zones.

The INNFINI reference architecture composes identity, data, AI/ML, application and connectivity into a single hardened landing-zone fabric — Innfini-native services where it counts, open external integration where it shouldn't matter. Every deployment maps to the same picture.

8
Architecture zones
38+
Native services
22
TASMU standards
Identity Data Application Connectivity
// The Innfini design philosophy

Native where it counts. Open where it shouldn't matter.

INNFINI is composed of Innfini-native services — built end-to-end by Innovent for performance, observability and sovereign-grade compliance — and a deliberately small set of clearly marked external integrations for cases where the customer already runs a system of record. Every native service ships with the same identity model, the same audit trail, the same policy engine, and the same observability surface.

The architecture is composed into eight zones: a top supporting-services strip, four parallel landing zones (Identity, Management, Data, Data Platform), the SSP zone with the ICCC application and platform subnets, a connectivity strip, and the edge surfaces that connect users, data sources and actors to everything else. Below, the live diagram walks through every zone — then each section explains what's inside.

innfini-architecture · reference v2.1 · animated Streaming
SCENARIO 01 · Live IoT data ingest Sensors → Stream Ingest → Lakehouse → AI inference → Dashboard
Innfini Native (IF) External (EX) Data flow Control flow
38 native services · 4 external · 22 TASMU standards
// Why this architecture wins

Six strengths. Zero compromises.

38+
Innfini-Native

Every layer engineered in-house — identity, data, AI/ML, observability, compliance. No vendor sprawl.

4
Open Connectors

Clearly marked external integrations only where the customer already runs a system of record — IoT, SaaS, ArcGIS.

22
TASMU Standards

Sovereign-grade. ISO 27001, ISO 22301, WCAG 2.2 AA, NIA v2.1 — continuous control mapping baked in.

8
Composable Zones

Identity, Mgmt, Data Landing, Data Platform, SSP, Connectivity, Boundaries, Supporting — each its own clear surface.

L1→L5
Layered Defence

WAF, bastion, mTLS service mesh, HSM-backed keys and continuous SIEM — applied at every zone boundary.

Live
Real Scenarios

Every flow path you see above is a real production workload — ingest, sign-in, AI decision, audit query.

// The eight zones

Eight surfaces. Every responsibility, contained.

01

Supporting Services

FinOpsObservabilityPolicyDiagnosticsNIA
02

Identity Zone

IAMEndpoint DefenseSIEMBuild Agents
03

Management Landing

DatabasesDirectorySecrets VaultJump Servers
04

Data Landing

Data LakePipelinesFile IngestStream Ingest
05

Data Platform

LakehouseComputeEvent StreamingCatalog
06

SSP Zone · ICCC

ICCC ApplicationPlatform SubnetsAI Foundry+18 services
07

Connectivity

Edge WAFBastionTraffic DirectorAPI Gateway
08

Boundaries

ProvidersActorsInterfacesArcGIS
Conforms to ISO 27001 ISO 22301 WCAG 2.2 AA NIA v2.1 22 TASMU Standards

One reference architecture. Eight zones. Forty-plus native services and a deliberately small set of clearly marked external integrations. Every Innfini deployment maps cleanly onto this picture — making security review, compliance audit and operational scaling repeatable conversations rather than bespoke ones.

See the architecture mapped to your environment.

A 60-minute architecture review with our solutions team. We walk through each zone against your existing systems, identity providers, data sources and compliance regime.