Kerys Software provides YS::Desktop, a local workstation‑virtualization platform that runs multiple isolated domains on a single hardware unit. It enforces per‑environment device control, network segmentation, and clipboard isolation while delivering near‑native CPU/GPU performance and offline operation, and integrates with existing VPN, SSO, and MFA solutions. Centralized fleet‑management tools enable remote provisioning, patching, and compliance reporting for enterprise security teams.
Funding
$7.3M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.


Founders
Product
Problem
Enterprises that require strict separation of operational, development, and privileged workloads often rely on bulky VDI/DaaS stacks or multiple physical PCs. These approaches introduce latency, high licensing costs, network dependency, and increased attack surface, while still exposing peripheral data during context switches.
Solution
Kerys Software delivers YS::Desktop, a local workstation‑virtualization platform that runs multiple isolated domains on a single hardware unit. Each domain enforces dedicated device‑control policies, network segmentation, and clipboard isolation, ensuring that data never leaks between environments. Users switch between workspaces with a single swipe, and peripheral data is automatically purged to maintain a clean state. Because the solution operates entirely on‑premises, it remains fully functional offline and provides native‑level performance for compute‑intensive tasks. Integrated fleet‑management tools enable centralized updates, compliance reporting, and seamless alignment with existing VPN, SSO, and MFA infrastructures, delivering security, productivity, and cost efficiency without compromising user experience.
Target Audience
Primary customers are CISOs, CIOs, and IT security teams in mid‑size to large enterprises that need secure, high‑performance multi‑environment workstations for developers, maintenance engineers, and privileged users.
Features
- Hypervisor‑based local VM architecture delivering near‑native CPU/GPU performance for graphics‑intensive and AI workloads.
- Per‑environment device control, network policy enforcement, and clipboard isolation to prevent data exfiltration.
- One‑click workspace switching with automatic peripheral data purge for a clean, secure workflow.
- Air‑gapped deployment option and full compliance with cybersecurity regulations (e.g., SecNumCloud).
- Integrated fleet‑management console for remote provisioning, patching, and usage analytics across the enterprise.
- Seamless integration with existing security stacks (VPN, SSO, MFA) and support for multi‑monitor, multi‑peripheral setups.
- Cost‑saving calculator demonstrating up to €1 M reduction for 500 users over three years by eliminating redundant hardware.