GNS Technology Limited logo

AI-Managed Service

AI-managed service: raw device data, fixed before it breaks

We read raw device activity through official UniFi APIs, send it over encrypted channels to our own cloud platform, and analyse it 24/7 with SIEM and our own AI platform to find failing hardware and arrange replacement before it fails — from SMEs to multi-site enterprises.

  • Official API telemetry — no agent installed, no inbound port opened
  • Basic from HK$800/month, Full from HK$2,000/month
  • Network, CCTV, access control and intercom under one monthly service
  • Full tier: 1-hour SLA response, 24-hour device replacement
AI-managed service: raw device data, fixed before it breaks

Service at a glance

Fees, access and analysis

HK$800
Basic tier from, per month
HK$2,000
Full tier from, per month
~10 min
To authorise access
24/7
SIEM + AI analysis

Traditional maintenance replaces after failure; we repair before it

Traditional IT maintenance starts with a fault report; before that call, the provider knows nothing about device health and the time has already been spent on recovery rather than prevention.

AI-managed service starts with data: device activity is read continuously and compared against a long-term baseline for each device. When a disk, power supply, switch port or wireless coverage starts to drift, we receive the signal before the customer notices and arrange repair or replacement before the hardware actually fails — cutting unplanned downtime.

How it works

Six steps: from raw data to predicted replacement

Every layer deliberately avoids placing third-party software inside a customer network.

  1. Official API telemetry

    UniFi's official APIs provide device activity records, alerts and status — no agent installed and no inbound port opened.

  2. Encrypted transport

    Records travel to our cloud platform over encrypted channels, encrypted in transit and at rest, visible only to authorised engineers.

  3. SIEM correlation, 24/7

    SIEM correlates events across devices instead of looking at a single alert; anomalies become visible immediately.

  4. Analysis on our own AI platform

    Correlation results are computed together with each device's long-term baseline, so anomalies surface without manual inspection.

  5. Root cause and improvement advice

    The platform recommends practical improvements — repositioning devices, separating high-traffic equipment or replacing a wearing disk.

  6. Predicted replacement, before failure

    When disk, power or link trends decline, we arrange repair or replacement before the hardware fails, reducing downtime.

Service scope

One monthly service covering your whole network

You own the equipment; we monitor how it runs — with the same engineering team from installation to daily operation.

Network (Wi-Fi, switch, gateway)

Coverage planning, VLAN segmentation, PoE power and uplinks, all monitored and alerted.

CCTV (UniFi Protect)

Cameras, NVR and disk health, and recording retention; offline or interrupted recording is flagged immediately.

Access control & intercom (Access/Talk)

Card, PIN and mobile entry plus video intercom — permissions, schedules and records managed together.

Network security (firewall/VPN)

Firewall rules, site-to-site VPN and outbound monitoring; the Security Hardening add-on feeds device data into SIEM with a monthly security review report.

Remote access & identity

VPN and individual accounts replace shared passwords, so access can be revoked the day someone leaves.

Monitoring, logs & alerts

Traffic, logins and device state are logged centrally and analysed continuously, with proactive email or mobile alerts.

What we do read — and what we do not

Fields we read

  • Access points: CPU and memory utilisation, uptime, load averages, channel and width, firmware version, heartbeat timing.
  • Gateways and firewalls: device state, firmware version, firewall rules, ISP latency, packet loss and throughput.
  • Switches: per-port link state and negotiated speed, PoE state (including power-cycling a single port).
  • Cameras and NVRs: recording state, arm mode, smart-detection events, disk health and offline events.

Access control and intercom currently have no public API, so they appear in telemetry only as connected clients and switch PoE ports — we state this plainly rather than guessing.

What we do not read

The API reads UniFi management data only: device state, activity records, alerts and configuration. Managed service never touches files, email or business systems, and never reads CCTV image content.

Service tiers

Basic, Full, and an optional Security Hardening add-on

Monthly fees are per device endpoint with a minimum; minimum 12-month term, fixed monthly fee, and you own the hardware.

GNS CARE Basic

24/7 remote monitoring and alerts, firmware and security updates, configuration backup, unlimited remote support and monthly reports, plus hardware health and recording retention checks. From HK$800/month.

GNS CARE Full

Everything in Basic plus a 1-hour SLA response, unlimited emergency site visits, 24-hour device replacement, quarterly reviews and CCTV health monitoring. From HK$2,000/month.

Security Hardening (add-on)

VLAN segmentation review, firewall rule audit and outbound connection monitoring, with SIEM analysis and a monthly security review report. +HK$500/month.

Onboarding

Five steps, typically 2–4 weeks

Hover over each bar to see what happens in that phase.

From signing to first report
Typically 2–4 weeks

Choose your tier · 1 wk Authorise access · 1 wk Baseline & first report · 1 wk Follow-up & monthly reporting · 1 wk

1 wk 2 wk 3 wk 4 wk Choose your tier 1 wk Authorise access 1 wk Baseline & first report 1 wk Follow-up & monthly reporting 1 wk

The first month establishes the baseline; alert thresholds are still being tuned until it stabilises.

You keep control of access and privacy

We install no third-party agent on your network and open no inbound ports, so the managed service itself adds no attack surface. After authorising access you remain the owner of the devices and can remove GNS from the same screen in UniFi Site Manager at any time — once removed, our read access ends immediately.

Practical benefits

The benefit is not monitoring — it is when problems are discovered

Fewer unplanned outages

Problems are queued for repair before they become failures; even when hardware does fail, replacement is already arranged.

Longer hardware life

Disk, fan and power wear is visible in trends, so replacement is decided by condition rather than by failure.

Security events surface earlier

Unexpected logins, configuration changes and new devices all leave records that are correlated.

Predictable budget

A fixed per-endpoint monthly fee means hardware failures do not land as a surprise cost in one quarter.

Auditable records

Devices, events and how they were handled are recorded; the Security Hardening add-on adds a monthly security review report.

AI explains causes and recommends fixes

Each intervention also reduces the chance of the next failure rather than only resolving today's issue.

FAQ

AI-managed service questions

How is AI-managed service different from ordinary IT maintenance?

Traditional maintenance starts after a failure; we intervene before one. We read device activity continuously through official UniFi APIs, send it to our cloud platform, and use SIEM for 24/7 correlation against each device's long-term baseline. When a disk, power supply or link starts to drift, we arrange repair or replacement proactively instead of waiting for a fault report.

What is SIEM and why is it needed?

SIEM (security information and event management) centralises events from different devices and finds correlations. A single alert may be noise; when repeated failed logins, configuration changes and a new device appear together, correlation shows this is one incident to handle.

Using APIs, will you read our business data?

No. The API reads UniFi management data only: device state, activity records, alerts and configuration. Managed service never touches files, email or business systems and never reads CCTV image content. Records are encrypted in transit and visible only to authorised engineers.

Do you install software on our network or open ports?

No. We read data directly through official APIs, so there is no agent on your network and no inbound port to open — which also reduces the attack surface the managed service itself introduces.

If nothing ever goes wrong, is the monthly fee wasted?

The fee buys continuous comparison and ready capability: device baselines, alert thresholds, update scheduling, event records and SLA commitments all accumulate on quiet days. A month without incidents is the mechanism working as intended.

Won't anomaly detection produce frequent false alarms?

The first month exists to tune thresholds. We compare against each device's long-term baseline rather than a single fixed value, and an engineer reviews before anything is dispatched — both conditions must apply for a signal to become actionable.

Why is a 12-month minimum term required?

Trend comparison needs history: disk, power and wireless coverage drift usually takes months to show direction. With a baseline month followed by accumulated trends, 12 months is the shortest period in which managed and unmanaged outcomes can genuinely be compared. Fees are fixed and continue monthly after the term.

How does this work alongside our own IT team?

We handle continuous monitoring, baseline comparison, update scheduling and hardware replacement planning; your IT team keeps day-to-day use, accounts and business systems. Every change and action appears in the monthly report, so both sides work from one list.

Not sure which tier fits your network?

Bring your device list and floor plan and we can run a free site assessment, then recommend the tier and a fixed monthly fee.