Reduction in audit prep time
Firewalls under continuous monitoring
Policy visibility across hybrid environment
The Challenge
After a failed compliance audit and the sudden decommission of their legacy NSPM platform, this sovereign financial institution was left with 60 unmonitored firewalls, a compliance program in disarray, and an active Palo Alto to Fortinet migration generating unchecked policy clutter. They needed automated compliance reporting, centralized visibility, and policy cleanup — fast. FireMon won a competitive proof of concept against the competition, delivering change monitoring and audit-ready reporting from day one.
The company sought to:
- Restore automated compliance reporting mapped to PCI and national regulatory frameworks.
- Gain continuous change monitoring and visibility across all 60 firewalls.
- Clean up legacy rulesets to support the ongoing firewall migration.
- Establish a replicable compliance standard to roll out across affiliated government agencies.
The Solution
The organization selected FireMon following a competitive proof of concept in which the competition struggled to deliver the reporting depth and usability the team required. FireMon matched every technical requirement, and delivered it through an interface the team could actually use without relying on professional services for customization.
- Automated compliance reporting mapped to PCI and applicable national frameworks, eliminating manual audit preparation.
- Continuous change monitoring across all 60 firewalls, spanning Fortinet and Cisco Firepower.
- Policy cleanup workflows to identify and resolve bloated rulesets ahead of full Fortinet migration.
- Centralized visibility replacing the decommissioned NSPM platform with a single source of truth
- Scalable architecture designed to serve as the compliance baseline for broader government agency adoption.
The reporting was exactly what we needed — intuitive, fast, and ready for audit. Our other options simply took too many steps to get there. FireMon just worked.
Results
- Compliance restored ahead of audit cycle with automated, framework-mapped reporting.
- Policy cleanup in progress, accelerating the active Palo Alto to Fortinet migration.
- 60 firewalls under continuous monitoring with real-time change detection.
- Eliminated dependence on professional services for reporting customization.
- Foundation established to replicate and standardize compliance programs across affiliated government agencies.