We modernize and automate
IT platforms.
Hardened.
For enterprises that rely on Red Hat technologies.
Hardened, traceably documented, and reproducible.
Non-binding · No sales pitch · Confidential
lennlay stands for Secure Platform Automation: secure, standardized, auditable, and automated platforms, both in ongoing operations and in migration and modernization scenarios.
Assess your platformNon-binding · No sales pitch · Confidential
What we do
With the Secure Platform Automation Suite, grown, inconsistent, or manually operated platforms are transformed into secure, standardized, and automated target platforms. What we sell is not a tool, but a platform outcome.
Analysis & Assessment
We analyze existing platforms, operating models, and security requirements. The goal is a clear assessment of automation, hardening, and compliance potential — as the foundation for reproducible, secure platforms.
Automation & Implementation
We automate platforms along clearly defined standards. The result is hardened, low-maintenance deployments with reproducible states and controlled changes.
Handover & Operational Safety
We ensure a controlled go-live, clean documentation, and traceable handovers. The goal is a stable, auditable operation with clear accountability — beyond the project.
Secure platforms. Standardized.
Automated. Auditable.
The Secure Platform Automation Suite is the overarching product umbrella. It bundles all services, modules, and enablers for securing, standardizing, and automating IT platforms in one shared product logic. The platform modules are the customer-facing solution building blocks. They translate the suite into concrete, understandable offerings.
View Secure JBoss EAPMiddleware & application platforms
Secure JBoss EAP Platform Automation It helps companies make JBoss EAP-based platforms secure, standardized, auditable, and automated. Secure Tomcat Platform Automation Module for securing and automating Tomcat-based platforms with a focus on standardization, compliance, and repeatable operating models.Operating systems
Secure Linux Platform Automation Module for securing, standardizing, and automating Linux platforms, especially RHEL-based environments. Secure Windows Platform Automation Module for securing and automating Windows platforms. Focus on standardized configuration, compliance, golden images, and repeatable operating models.Containers & orchestration
Secure Container Platform Automation Secure Kubernetes Platform AutomationFurther modules are possible, e.g.: Secure OpenShift Platform Automation, Secure NGINX Platform Automation, Secure Apache HTTP Server Platform Automation, Secure Java Runtime Automation.
How we deliver
GIaaS and EaaS are not platform modules but supporting delivery and service building blocks within the suite.

Experts as a Service (EaaS)
Accompanying service building block for migration, operations, special cases, troubleshooting, optimization, and hands-on expert support for the customer.

Golden Images as a Service (GIaaS)
Provision of maintained, hardened, and versioned golden images as standardized base artifacts for platforms and target environments.
What each module delivers functionally
Every platform module is carried by recurring core capabilities. They describe the functional value the modules deliver, independent of which tools are used behind the scenes.
Security Standards, Baselines and Policies
Definition of platform-specific security requirements and target states based on CIS Benchmarks, NIST, customer-specific policies, or lennlay security standards.
Golden Images and Platform Baselines
Implementation of the defined policies in hardened, standardized base artifacts for platforms and target environments.
Automation, Deployment and Platform Integration
Technical implementation of the defined policies via automation, deployment, and integration mechanisms for different platform and target environments.
Compliance Assessment and Reporting
Automated assessment of platforms against defined policies and traceable preparation of the results.
Documentation, Traceability and Auditability
Provision of traceable technical and functional information about policies, platform states, versions, deployments, changes, and exceptions.
Lifecycle and Update Management
Consideration of versions, support periods, security updates, migrations, and the long-term maintenance of platforms.
Drift Detection and Enforcement
Detection of deviations from the defined target state and, depending on platform and risk profile, controlled technical correction.
We develop and operate automated IT platforms for environments where stability, security, and traceability are essential. Our experience is based on decades of work in enterprise and regulated IT landscapes.
Focus on Automation & Compliance
DevSecOps, hardened baselines, auditable deployments, and controlled changes.
20+ Years of Experience
In the operation and automation of enterprise IT platforms.
Deployment in Regulated Environments
Including financial services, insurance, critical infrastructure, and large enterprise IT.
Operations and compliance from day one
We develop platform solutions from the perspective of future operations. Automation, hardening, and documentation are integral — not afterthoughts.
Reproducible, not individually improvised
Our solutions are based on clear standards, versioned configurations, and repeatable deployments. This reduces risks, simplifies audits, and creates traceable states.
Experience from regulated IT landscapes
Our experience comes from enterprise and security-critical environments. Requirements for stability, traceability, and accountability are correspondingly high.
In security-critical IT environments, it's not about quick solutions but about sound decisions. At lennlay, operations, security, and traceability are at the center. Standards, automation, and documentation are not an addition for us — they are a prerequisite. My goal is to build platforms that can be operated stably over the long term and remain explainable, maintainable, and auditable years later.Let's talk
Initial consultation
A non-binding first conversation to assess your platform, requirements, and next steps.
Schedule a meetingConfidential · No sales pitch · We will reach out to schedule
Experiences from client projects.
Feedback from real projects in automation, platform operations, and security.
Schedule a conversation"The collaboration with Marcel and his lennlay team (Matthias & Ben) was professional, reliable, and technically strong at all times. Especially in security automation, CIS hardening, and Ansible/JBoss deployments, they consistently delivered high quality."→ Visit website
"Marcel built the Baloise Ansible Automation Framework from scratch and set it up so that it could establish itself as a robust, reusable platform. The clear structure and good maintainability enabled teams and clients to operate their remaining legacy automations significantly more efficiently."→ Visit website