Support for Palo Alto Networks Strata Cloud Manager is available now. Learn more →
Automated security assessments & cleanup
After a ransomware attack, this media company turned to FireMon to reduce risk and streamline future breach response. FireMon offered the visibility, customisation and automation needed to manage their multi-vendor environment from a single console while cutting costs.
The results
$2m
Annual cost savings with FireMon compared to manual processes
400+
Firewalls currently managed
6
Additional FTE no longer needed for rule changes and compliance audits
The challenge
Tasked with quickly conducting a full rule cleanup while housing over 400 decentralised firewalls, the company, which was relying on time-consuming and error-prone manual audit preparation and rule review processes, needed a solution to empower its network security team to meet a rapidly approaching deadline.
The company sought to:
- Conduct a full rule cleanup to remove redundant, overly permissive and unused rules
- Automate lifecycle policy management for rule cleanup and review
- Audit in one centralised platform that becomes the record of data for enforcing policy management
- Gain a comprehensive view of policy across all devices in their multi-vendor environment, which includes Fortinet, Palo Alto Networks and Zscaler devices
The solution
With continuous compliance, change automation and risk management solutions from FireMon, the company gained real-time visibility, control and management capabilities for all network security devices across its vast multi-vendor environment.
- Continuous compliance checks and automated custom firewall policy reporting simplified the audit process, increased accuracy and eliminated the need to hire additional headcount
- Automated workflows for firewall rule review, recertification and removal saved tremendous time while reducing errors caused by manual processes
- A single pane-of-glass console provided unified visibility and management
Results
- $2M annual cost savings with FireMon compared to manual processes
- No longer need to hire or outsource 6 additional security engineers to manage rule changes and conduct compliance audits
- Reduced risk through identification and removal of overly permissive rules and unauthorised traffic
- Automation of policy changes streamlined remediation processes and shortened time to mitigate violations
After being in the news for the wrong reason because of a ransomware attack, we knew we needed to reduce the chance of another attack by taking a close look at our policies and removing any unused or overly permissive rules. FireMon’s automated security assessments and cleanup allowed our small team to conduct a full rule cleanup in a fraction of the time.”
Senior Security Manager, Managing the selection and deployment of FireMon