Every layer of your IT estate, under one accountable contract
Twenty-eight services grouped into five service lines. Take one, take a package, or hand us the whole department. The engineering standard and the SLA are the same either way.
The physical layer everything else depends on, designed to a standard, built by our own crews, and documented so the next engineer is not guessing.
Data center design & build
From a single comms room to a Tier III-ready hall. We handle civil coordination, raised access flooring, hot/cold aisle containment, rack and PDU layout, fire detection and NOVEC-1230 suppression, access control and environmental monitoring, then commission it against a written acceptance test.
Concept, low-level design and rack elevations
MERO access floor, containment and containment blanking
Clean-agent suppression and VESDA detection
Live migration from an existing room with rollback plan
Servers, storage & virtualisation
Rack and blade compute, all-flash and hybrid SAN/NAS, hyper-converged clusters and the hypervisor layer on top. Sized against real workload data rather than a vendor configurator, with a three-year growth headroom built in.
Dell EMC, HPE, Lenovo, Supermicro, Huawei
VMware vSphere/vSAN, Nutanix, Hyper-V, Proxmox
NetApp, Synology and unified storage tiers
P2V/V2V migration and consolidation programmes
Structured cabling & fibre
Cat6, Cat6A and OS2 single-mode plant with proper containment, labelling to a documented convention, and Fluke certification results handed over per link, not a verbal assurance that it tested fine.
Horizontal, backbone and inter-building fibre
Fusion splicing, OTDR testing and patch panel dressing
Leviton, Panduit and equivalent certified systems
As-built floor plans and port schedules
Power, UPS & cooling
Modular and monolithic UPS with redundancy sized to the measured load, maintenance bypass, generator interface, intelligent PDUs and precision or in-row cooling. Sized on measured load with a heat-rejection calculation you can audit.
APC, Schneider Electric, Eaton, Vertiv
Battery health monitoring and replacement programmes
Earthing, surge protection and power quality survey
Environment monitoring: temperature, humidity, leak, door
Backup, recovery & data protection
Backup is not a product you buy, it is a restore you have proven. We design the copy layout, build the immutable and offline tiers that ransomware cannot reach, and then rehearse the restore against a written recovery time objective. The figure in your DR plan should be one you have measured, not one the vendor quoted.
Veeam, Acronis, Commvault and hypervisor-native snapshots
RPO and RTO agreed per system, not one figure for everything
Scheduled restore drills, each with a signed test result
End-user computing & device fleet
The endpoint is where most estates drift and where most incidents start. We size, procure, image and deploy desktops, laptops, thin clients and tablets to a single standard build, then keep them patched, encrypted and accounted for. Every device leaves our lab with the same image, the same agent set and an asset tag that matches the register.
Standard gold images and zero-touch enrolment
Dell, HP, Lenovo and Apple fleets on one asset register
Disk encryption, EDR agent and patch baseline from day one
Warranty cover, spares pool and a documented refresh cycle
Service line 02
Networking & connectivity
Networks that stay boring. Deterministic design, sensible segmentation, redundancy where it earns its cost, and configuration you can read six months later.
Enterprise LAN & data center fabric
Core-distribution-access or spine-leaf, stacked or chassis, with VLAN and VRF design, first-hop redundancy, QoS for voice and video, and 802.1X where you want it. Routing on OSPF, IS-IS or BGP as the topology deserves.
Out-of-band management and config backup automation
Wireless & high-density Wi-Fi
Predictive and on-site surveys before a single AP is ordered, Wi-Fi 6/6E design for density rather than coverage-only, guest portals, PMS integration for hotels, and post-install validation heat maps.
Cisco Meraki, Aruba, Ruckus, Ubiquiti, Cambium
Outdoor, warehouse, campus and point-to-point links
Captive portal, voucher and RADIUS authentication
SD-WAN, connectivity & satellite
Multi-site WAN with application-aware path selection and automatic failover, carrier procurement and management on your behalf, plus VSAT and LTE/5G backup for sites where terrestrial links are not dependable.
Zero-touch branch provisioning
Dual-carrier, dual-media resilience per site
Single bill and single escalation point for all circuits
Monitoring & observability
One pane of glass for switches, servers, circuits, UPS and applications, with thresholds tuned to reduce noise, escalation that reaches a human, and capacity trending that feeds your next budget cycle.
Zabbix, PRTG, ManageEngine, Grafana dashboards
NetFlow analysis and bandwidth reporting
Monthly availability and capacity service review
Service line 03
Cybersecurity & physical security
Security that is measured, not assumed. We assess first, fix in priority order, then monitor what we built. And we will tell you plainly where the real risk sits.
Network & endpoint security
Next-generation firewalls in HA with IPS, web and application control and SSL inspection; EDR/XDR on every endpoint and server; email security with anti-phishing and DMARC; and identity hardening with MFA and conditional access.
Fortinet, Palo Alto Networks, Check Point, Sophos
CrowdStrike, SentinelOne, Kaspersky, Bitdefender, ESET
Network segmentation, NAC and ZTNA remote access
Firewall rule-base cleanup and policy review
Managed SOC, SIEM & incident response
Our security operations centre watches your telemetry around the clock. Correlated alerting, documented playbooks, containment authority agreed in advance, and a retained IR capability for the day it matters.
24/7/365 monitoring with named analysts
Threat hunting and dark-web credential monitoring
Ransomware containment, forensics and clean rebuild
Monthly threat report written for the board
Assessment, VAPT & compliance
Vulnerability assessment and penetration testing covering external, internal, web application and wireless, plus phishing simulation, configuration review and gap analysis against the framework you are held to.
ISO 27001, PCI DSS, NIST CSF and CBI guidance
Risk register with owners, effort and cost estimates
Security awareness training in EN / AR / KU
Re-test after remediation, included
CCTV, access control & physical security
IP surveillance with analytics and licence-plate recognition, card and biometric access control, time and attendance, intrusion detection, barriers and turnstiles, integrated into one platform across all your sites.
Hikvision, Dahua, Axis, ZKTeco
Central VMS, retention sizing and storage design
Integration with HR systems and door hardware
IPTV, digital signage and public address
Service line 04
Software development
A full in-house development team, not a reseller passing you to a subcontractor. Web platforms, mobile apps, ERP rollouts and bespoke internal tools, delivered against a signed specification with the source code handed to you at go-live.
Web applications, portals & e-commerce
Customer portals, staff intranets, booking and payment platforms, online stores and management dashboards. Built responsive, accessible and bilingual, with right-to-left Arabic and Kurdish handled properly rather than as an afterthought.
React, Next.js, Vue, Laravel, .NET and Node.js
Payment gateway, SMS and OTP integration
Corporate websites, CMS, SEO and analytics
Accessibility and performance budgets agreed up front
Mobile applications for iOS & Android
Consumer apps, field-force and delivery apps, inspection and survey tools. Designed offline-first where connectivity cannot be relied on, syncing cleanly when the device comes back into coverage.
Flutter and React Native, or native Swift and Kotlin
Push notifications, maps, GPS tracking, barcode and NFC
App Store and Play Store submission handled for you
Mobile device management and in-house distribution
ERP systems
Odoo and Microsoft Dynamics implementations covering finance, inventory, procurement, manufacturing, sales, HR and payroll. Configured around your process, with custom modules written where the standard product genuinely does not fit.
Requirements workshops and process mapping first
Multi-company, multi-currency and multi-warehouse
Data migration, user training and go-live hypercare
Ongoing functional support and enhancement retainers
Bespoke business tools
The system nobody sells for your exact problem. If it can be specified, we can build it, and we would rather build the narrow tool that fits than sell you a platform you will only use a tenth of.
HRMS, attendance, leave, appraisal and payroll tools
CRM, sales force tracking, POS, fleet and logistics
Warehouse management, LMS, ticketing and helpdesk
Document approval and workflow automation
Integrations, APIs & data
The plumbing that stops your staff entering the same figure into three systems. We connect what you already run, document every endpoint, and build the reporting layer on top so management sees one version of the numbers.
ERP, POS, banking, telephony and attendance devices
REST and SOAP APIs, webhooks and scheduled sync jobs
Legacy database, Excel and flat-file migration
Business intelligence dashboards and scheduled reports
Hosting, DevOps & application support
Because we run infrastructure as well, nothing gets thrown over a wall at go-live. We deploy it, host it, monitor it, patch it and answer the phone when a user says the app is slow.
CI/CD pipelines, containers, staging and production
On-premises, Azure, AWS or our own hosting
Secure code review and dependency scanning
An SLA on the application, not just the server
How we contract a build
Fixed scope and fixed price against a signed functional specification, or a monthly team rate if the roadmap is genuinely open-ended. Either way you see working software every two weeks, and the repository is yours from the first commit. Change requests after sign-off are quoted openly rather than absorbed quietly and argued about at the end.
2 wksDemo cadence
100%Source code handed over
12 moDefect warranty
EN/AR/KUInterface languages
Service line 05
Cloud & managed services
The platforms your users touch every day, and the team that keeps them running. This practice produces most of our revenue and almost all of our reputation: predictable cost, measured response, and engineers who already know your environment.
Cloud Computing
Tenant design and hardening, Exchange and file-server migration, SharePoint and Teams governance, Intune device management, Entra ID and hybrid identity, plus Azure and AWS landing zones with cost governance from day one.
Zero-downtime mailbox and data migration
Licensing review, because most tenants are over-licensed
Third-party M365 backup, because retention is not backup
Unified communications, VoIP & AV
IP-PBX and SIP telephony, contact centre with queues and wallboards, call recording, and the meeting-room stack: Teams and Zoom Rooms, interactive panels, microphone arrays and one-touch join.
3CX, Yeastar, Grandstream, Asterisk, Avaya
SIP trunk procurement and number porting
CRM and ERP click-to-dial integration
Managed IT services
We run it, monitor it, patch it, back it up and report on it. Priced per user, per device or per site, with a service catalogue that says exactly what is included.
Proactive monitoring & patch management
Asset register and lifecycle planning
Support & AMC contracts
Annual maintenance covering hardware, software and configuration, with defined severity levels, response and restoration targets, spares held locally and scheduled preventive visits.
8×5, 12×6 or 24×7 coverage tiers
Ticket portal with full audit history
IT outsourcing & staffing
Dedicated on-site engineers, a fully outsourced IT department, or specialist resources seconded to your team for a project, all vetted, certified and backed by our wider bench.
Resident engineers and virtual CIO
Cover for leave, turnover and peak load
Consulting & digital transformation
IT strategy, architecture review, vendor-neutral technology selection, budget planning and transformation roadmaps, delivered as a written report you can act on without us.
Current-state assessment & gap analysis
Three-year costed roadmap
Procurement, licensing & distribution
Genuine hardware and licensing sourced through authorised channels, with warranty registered in your name, import and customs handled, and a documented chain of custody.
Volume licensing & subscription management
Trade-in, disposal and secure data wiping
OKTAGATE Academy & training
Vendor-track and role-based training for your team, delivered on your equipment or ours, covering networking, security, virtualisation, Microsoft 365 administration and end-user awareness.
Instructor-led, on site or remote
Handover training on every project we deliver
Common questions
Before you send the RFP
Yes. We are headquartered in Erbil with offices in Baghdad and Basra, and we deliver and support projects nationwide, including Sulaymaniyah, Duhok, Kirkuk, Mosul and remote sites in the southern oil fields. Travel and per-diem for out-of-region work is stated transparently in every quotation.
Frequently. We start with a discovery and documentation exercise so that we, and you, know exactly what exists before we accept support responsibility. Anything we find that materially affects supportability goes into a written remediation list with costs, and you decide what gets fixed and when.
No. We hold partner status with most major vendors precisely so we can recommend on merit. Where two options genuinely fit, we present both with the commercial and operational trade-offs, including what each costs to run over three years, not just to buy.
Projects are quoted fixed-price against a signed scope; managed services are a monthly fee per user, per device or per site. We do not quote until we have surveyed, because a number produced without a site visit is a number that changes later. The initial assessment itself is free.
Yes. Our engineers and service desk operate in English, Arabic and Kurdish (Sorani), and project documentation can be delivered bilingually where a contract or regulator requires it.
Tell us what is breaking, or what is coming next.
Either way the first conversation is free and the findings report is yours to keep.