Zero Trust: Best Practices for Preventing Misunderstandings and Mistakes
Zero Trust can be perplexing when it devolves into just another marketing buzzword. Let’s clarify what it really means.
SASE offers companies and users simpler network and security functions, better performance and lower costs at the same time. What else is behind it?
We’ve already described the basic network and security functions of SASE (Secure Access Service Edge) in detail in our previous articles. We’d like to recap and discuss the key advantages of SASE and how they might benefit your organization.
The term SASE was first used by management consultancy Gartner in September 2019 in a paper entitled "The Future of Network Security is in the Cloud". In this paper, authors Lawrence Orans, Joe Skorupa, and Neil MacDonald presented a ground-breaking architectural model that goes far beyond previous disruptive changes, such as the introduction of SD-WAN.
Other basic components of SASE include SD-WAN, i.e. purely software-defined wide area networks, Secure Web Gateways (SWGs), Cloud Access Security Broker (CASB) for controlling and enforcing security policies, Firewall-as-a-Service (FWaaS) outsourced from the perimeter to the cloud, Zero Trust Network Access (ZTNA) for continuous control of all access and centralized and uniform administration. Depending on the provider, additional components can be added to take care of special aspects, such as protecting end devices against malware and/or spam and phishing.
The key features of SASE are a cloud-based architecture and security infrastructure with context- and identity-based access options:
SASE does not route the data through local data centers at first but directly to where it is needed. Users benefit from better connections, a seamless user experience, and greater protection.
SASE offers a decisive advantage over traditional concepts: the model enables secure access to all company resources, regardless of where the data, applications, users, workloads and devices are located. In detail:
In short, SASE provides efficient and cost-effective enterprise-grade security and network services for any environment.
Of course, SASE also has some disadvantages. For example, the fact that Secure Access Service Edge is a model and not a specific product that can be selected according to fixed criteria can cause problems. This in turn, leads to some providers watering down the basic SASE concept and equipping it with superfluous additional functions.
One potential challenge is the initial resistance from different specialized departments. Gartner suggests that implementing a SASE platform should go hand in hand with cultural change within the company. According to experts, a C-level executive should lead the transformation to encourage collaboration between separate specialist areas such as infrastructure and IT security.
There are now numerous platforms on the market that use the term SASE. How do you find the best solution for your company and your needs? When making your choice, pay attention to the following points, among others:
If you have any questions about SASE or the professional protection of your communication, feel free to contact us. We will be happy to help and answer all your questions about integrating our solutions in SASE, SD-WAN, and SSE. You can also find more information in our brochure, “VPN and the Cloud.”