ML-powered
next-generation firewall
Embeds
machine learning (ML) in the core of the firewall to provide inline
signatureless attack prevention for file-based attacks while identifying
and immediately stopping never-before-seen phishing attempts. Leverages
cloud-based ML processes to push zero-delay signatures and instructions
back to the NGFW. Uses behavioral analysis to detect IoT devices and
make policy recommendations as part of a cloud-delivered and natively
integrated service on the NGFW. Automates policy recommendations that
save time and reduce the chance of human error.
Identifies and
categorizes all applications, on all ports, all the time, with full
Layer 7 inspection
Identifies
the applications traversing your network irrespective of port, protocol,
evasive techniques, or encryption (TLS/SSL). Identifies all payload data
within an application (e.g., files and data patterns) to block malicious
files and thwart exfiltration attempts. Creates standard and customized
application usage reports, including software-as-a-service (SaaS)
reports that provide insight into all sanctioned and unsanctioned SaaS
traffic on your network.
Enforces security
for users at any location, on any device, while adapting policy based on
user activity
Enables
visibility, security policies, reporting, and forensics based on users
and groups - not just IP addresses. Applies consistent policies
irrespective of users' locations (office, home, travel, etc.) and
devices (iOS and Android mobile devices, macOS, Windows, Linux desktops,
laptops; Citrix and Microsoft VDI and Terminal Servers). Prevents
corporate credentials from leaking to third-party websites and prevents
reuse of stolen credentials by enabling multifactor authentication (MFA)
at the network layer for any application without any application
changes. Provides dynamic security actions based on user behavior to
restrict suspicious or malicious users.
Prevents malicious
activity concealed in encrypted traffic
Offers
rich visibility into TLS traffic, such as amount of encrypted traffic,
TLS/SSL versions, cipher suites, and more, without decrypting. Enables
control over use of legacy TLS protocols, insecure ciphers, and
misconfigured certificates to mitigate risks.
Detect and prevent
advanced threats with cloud-delivered security services
Threat
prevention goes beyond a traditional intrusion prevention system (IPS)
to prevent all known threats across all traffic in a single pass without
sacrificing performance. Advanced URL filtering provides perfect web
protection while maximizing operational efficiency with the real-time
web protection engine and phishing protection. WildFire ensures files
are safe with automatic detection and prevention of unknown malware
powered by cloud-based analysis and crowdsourced intelligence from more
than 42,000 customers. Harnesses the power of ML to detect as well as
prevent threats over DNS in real time and empowers security personnel
with the intelligence and context to craft policies and respond to
threats quickly and effectively. Provides comprehensive IoT security
solution, delivering ML-powered visibility, prevention, and enforcement
in a single platform. Offers cloud-delivered enterprise DLP that
consistently protects sensitive data across networks, clouds, and users.
Delivers integrated SaaS security that lets you see and secure SaaS
applications, protect data, and prevent zero-day threats at the lowest
total cost of ownership (TCO).