Reduction in Audit Preparation Time
Reduction in Rule Analysis and Cleanup Effort
Audit Prep Cycle Time, Before vs. After FireMon
The Challenge
Operating a hybrid, multi-vendor firewall environment across platforms like FortiGate and Palo Alto, DigitalTrack Solutions needed a way to continuously monitor policy and catch risky or non-compliant configurations before they became liabilities. Manual audit preparation previously took days to weeks, and rule cleanup was a slow, hands-on process across each firewall individually.
The company sought to:
- Continuously monitor firewall policy across multiple vendors from a single view.
- Automatically identify unused rules, overly permissive access, and compliance violations.
- Reduce the time and manual effort required to prepare for audits.
- Streamline rule cleanup and keep the rule base optimized on an ongoing basis.
- Deploy and scale the solution efficiently through their existing cloud environment.
The Solution
FireMon Security Manager gave DigitalTrack Solution automated, deep inspection of firewall rules across every vendor in their environment, evaluating rule logic, usage, relationships, and risk exposure without manual review. Purchased through AWS Marketplace, the platform now runs as a continuous layer of policy monitoring rather than a periodic, manual exercise.
- Deep, automated analysis of firewall rules across multiple vendor platforms.
- Continuous identification of unused rules, overly permissive access, and shadow or redundant rules.
- Risk-level visibility into open ports and rule exposure.
- Faster, largely hands-off policy reviews in place of manual audits.
- Reliable scalability across multiple firewalls simultaneously.
"Any mid-sized organization with a hybrid environment, especially those with multi-vendor firewalls, should consider this solution a game changer."
Results
- Cut audit preparation time by 70%, reducing a process that previously took days to weeks down to a few hours.
- Reduced rule analysis and cleanup effort by 50%.
- Achieved stable, excellent scalability across multiple firewalls managed simultaneously.