Guardicore is a segmentation company, now part of Akamai since the late 2021 acquisition, aiming to displace legacy firewalls. The Guardiocre software-only approach is decoupled from the physical network to provide a faster alternative to firewalls. It is built for the agile enterprise that offers greater security and visibility in the cloud, data-center and endpoint.
N/A
Netskope CASB
Score 8.5 out of 10
N/A
Netskope cloud access security broker (CASB) enables the user to identify and manage the use of cloud applications, regardless of whether they are managed or unmanaged, and prevents sensitive data from being exfiltrated from your environment by risky insiders or malicious cybercriminals who have breached your perimeter.
1) No limit to labeling schema. 2) Ease of creating maps with respect to zone, environment, subnets, etc. 3) Ease of creating policies and publishing the same.
This is the best possible solution for enterprise-level organizations where server counts will be in the thousands. To manage these and understand the communication can be very cumbersome without this tool. Ease of creation map zone and application-wise can be relaxing to OS teams and support teams as well. There is no limit to labeling schema of servers and it gives the freedom to do so.
The Netskope CASB solution is well-suited for any company due to the proliferation of SaaS applications. With the agent being installed on endpoints, the product is well suited for remote work environments where a managed corporate network may not be available. The agent allows visibility and controls to be applied to any networks the devices connect to.
The solution is deployed throughout the organization. Teams are working and integrating it with the help desk tool wherever required. Helps in identifying the network traffic flows in lateral movement and east and west as well. Allows policies by default and later fine-tuning to be done to narrow it and enforce blocking action. Exporting reports from the tool is easy and can be observed for any issues.
Wide knowledge base and learning tutorials available for customer as well as partners.
Multiple use case be it only governing, data security or protection against threat can be catered and customized depending on objective organization wants to achieve. Talented pool of TAC team to reach out and resolve the concerns.
Support has been available 24*7. It also depends on criticality but support is available. Also, the right expertise from the team helps in identifying the issue quickly and this helps in less production downtime if required. The ticket is resolved with RCA.
There have been some struggles with their infrastructure keeping pace with demand and load. Support can only do so much and has to defer to known problems being escalated.
1) No limit to labeling schema. 2) Ease of creating maps with respect to zone, environment, subnets, etc. 3) Ease of creating policies and publishing the same. 4) Deception 5) Integration with monitoring tool (grafana) 6) Changes in the agent can be considered if there are legacy systems, time-consuming but can be achieved with the right information.
I find that Netskope CASB provides a larger catalog of SaaS applications and provides additional security controls for each app, allowing granularity to what actions end users can perform on the sites. This goes beyond simple block download/block upload, making it highly effective at enforcing the actions outlined in corporate policies.