Syneto Syneto
Data Sheet · 2026

HYPER Echo.

Air-gapped cyber-recovery vault. A second-line-of-defence appliance that production systems have no write path to.

Companies
5,000+
Partners
250+
CSAT
98%
Bytes lost
$0
SYNETO  |  DATASHEET-HYPER-ECHO  |  DATA SHEET v1.0 EN-IT-ES
Data Sheet02
Legal imprint

About this document

Publisher

Syneto SpA

Via Cefalonia 70, Brescia 25124, Italy

VAT RO15999720 · REG J35/2971/2003

Contact: [email protected]

Phone: +39 051 095 3000

Web: https://syneto.eu

Offices

Italy (HQ) · Brescia

Romania · Timișoara

Spain · Madrid

Certifications

ISO 9001 — Quality Management

ISO/IEC 27001 — Information Security

Copyright & trademarks

© 2026 Syneto SpA. All rights reserved. "Syneto", the Syneto logo, "SynetoOS", "Syneto CENTRAL", "Hyperion", "HYPER Core", "HYPER Edge", and "HYPER Echo" are trademarks of Syneto SpA. All other trademarks are the property of their respective owners.

Document scope

HYPER Echo datasheet: chassis, capacity, the Logical Air-Gap pull model, AES-256 vault encryption, ransomware-detection signals, recovery workflows, and the operations dashboard during incident response.

syneto.euPage 2 of 8
Overview03
Chapter 01 · Overview

What HYPER Echo is.

Replication model
Pull-only
Vault encryption
AES-256
Commit semantics
WORM
Capacity
200+ TB

HYPER Echo is a hardware vault. It stores immutable, encrypted Recovery Points pulled from your production environment. Production cannot reach into Echo to delete, encrypt or modify what is stored there — there is no write path.

syneto.euPage 3 of 8
Architecture04
Chapter 02 · Architecture

Logical Air-Gap explained.

pull Production cluster HYPER Core Firewall Inbound: DENY HYPER Echo Pull initiator Vault dataset WORM + AES-256 Echo identity plane Separate RBAC + MFA · 2-person RPH approvals
Echo initiates the pull. Production never sees an inbound port. Vault writes are kernel-enforced WORM — even root on Echo cannot rewrite user data.
Echo initiates outbound connections to production — production never connects inbound.
Echo has its own RBAC, audit log, MFA — a separate identity domain.
Vault writes happen only via the Echo replication daemon. Even root cannot write user data.
Recovery Points commit WORM with configurable hold period — NIS2, DORA, sector-specific.
syneto.euPage 4 of 8
Technical specifications05
Chapter 03 · Technical specifications

Hardware specs.

Form factor
2U rack
PSU
1+1 1600W Titanium
CPU
AMD EPYC 16-32 c
AES-NI offload
Hardware accelerated
Bays
12× 3.5" SAS
Max raw
200+ TB
Effective (dedup)
3-5× raw
NICs
2× 25 GbE SFP28
AES-256 always-on

Every block lands encrypted. Keys held in HSM / TPM. AES-NI hardware acceleration keeps sustained write at line rate.

Dedup + compression

Inline. Typical 3-5× effective vs raw. Reduces both vault capacity AND WAN bandwidth.

Tamper-evident

Chassis intrusion logged to CENTRAL. Drive removal events signed. TPM-backed boot chain.

RPH-ready

Recovery Point Hold enforced at the Echo layer — production credentials cannot release a held RP.

syneto.euPage 5 of 8
During an incident06
Chapter 04 · During an incident

What Echo does the moment ransomware fires.

01

Anomaly

Echo detects an abnormal pattern (mass delete / mass encryption) on the production side.

02

Auto-hold

Echo auto-engages a Recovery Point Hold on the last good window. No human action required.

03

Alert

CENTRAL fires alerts to PagerDuty / Slack / email. Incident card opens automatically.

04

Stay sealed

Production credentials are useless against the vault — no command from production can remove the hold.

05

Restore

CISO + IT lead approve a Rapid Data Revival™. Clean RP boots directly from Echo on the recovery cluster.

HYPER Echo · Vault · sealed mode
847
RPs sealed (24h)
4
Holds active
38 s
Pull lag p95
100%
Vault integrity
14:23ERRAnomaly detected on source dataset hyper-prod/vm-erp-01
14:23OKAuto-engage RPH: 90-day hold on 847 RPs
14:23WARNVault sealed — no further deletes accepted from any tier
14:25OKIncident card INC-2026-04-12-001 opened in CENTRAL
14:33OK2-person RPH approved: alice@syneto + bob@syneto
15:10OKRapid Data Revival™ initiated → vm-erp-01 boots on recovery cluster
syneto.euPage 6 of 8
Support & contact07
Chapter 05 · Support & contact

About Syneto & next steps.

Syneto designs and manufactures the complete Hybrid Cloud Ecosystem — hypervisor, data management, data protection and disaster recovery in a single plug & play platform. Founded in 2008, headquartered in Brescia and Timișoara, serving 5,000+ European businesses.

5,000+
Companies served
250+
Channel partners
18+
Years building HCI
$0
Ransom ever paid
European engineering

Designed, built and supported in Europe. ISO 9001 and ISO/IEC 27001 certified operations.

Plug & play deployment

Production-ready in under 30 minutes. No multi-vendor integration, no professional services required.

Single-vendor support

One contract, one phone number, one SLA — for the entire stack. Local language support.

Zero ransom paid

Across 18+ years of customer deployments, no Syneto customer has ever paid ransom following a cyber incident.

Single-vendor support — one contract, one phone number, one SLA for the entire stack. Three response tiers, all delivered by Syneto engineers in your language.

PlanResponseCoverageWho it's for
EssentialNBD — 8×5Software + hardwareBranch offices, test & dev
Business4 h — 24×7Software + hardwareProduction workloads
Mission-Critical1 h — 24×7Software + hardware + TAMBusiness-critical sites, DR

Talk to Syneto

Customer Support Portal

support.syneto.eu

Help Center

help.syneto.eu

Syneto Academy

academy.syneto.eu

Partner Portal

partners.syneto.eu

syneto.euPage 7 of 8

Ready to simplify?.

Join 5,000+ European companies that trust Syneto.

Italy HQ
Via Cefalonia 70
Brescia 25124
Romania
Bastion Office
Timișoara 300054
Spain
Calle Antonio Arias 6
Madrid 28009
Web
syneto.eu
syneto.eu [email protected] +39 051 095 3000
SYNETO SPA · VAT RO15999720 · REG J35/2971/2003 · ISO 9001 · ISO/IEC 27001