36
5 Strategies to Improve Firewall Management: How to Automate Operations, Simplify Compliance Audits and Reduce Risk

5 Strategies to Improve Firewall Management

  • Upload
    algosec

  • View
    1.083

  • Download
    2

Embed Size (px)

Citation preview

Page 1: 5 Strategies to Improve Firewall Management

5 Strategies to Improve Firewall Management: How to Automate Operations, Simplify Compliance Audits and Reduce Risk

Page 2: 5 Strategies to Improve Firewall Management

• Introduction to AlgoSec

• A Look at Today’s Complex Network

• Strategies to Improve Firewall Management

• Next Steps

• Q&A

Agenda

2

Page 3: 5 Strategies to Improve Firewall Management

Meet our Panelists

3

Kevin Beaver, CISSP Information Security Consultant

& Author

Principle Logic, LLC

Nimmy Reichenberg VP of Marketing & Business

Development

AlgoSec

Page 4: 5 Strategies to Improve Firewall Management

• The Leader in Network Security Policy Management

• Award Winning Security Management Suite

• 800+ customers in 45 countries.

13 of the Fortune 50

• Fast growing - 95% growth in 2011

• Technology Partners include Check Point, Cisco, Juniper, Fortinet, Palo

Alto Networks, Blue Coat, HP, CA

• “Obsession” for Customer Satisfaction

AlgoSec Introduction

4

Page 6: 5 Strategies to Improve Firewall Management

6

Page 7: 5 Strategies to Improve Firewall Management

• Lack of audits

• Mostly manual

• No processes

• Minimal oversight

Issues I See in My Work

7

Page 8: 5 Strategies to Improve Firewall Management

Implement

policies/plans

Enforce

with

technology

Know what

you’ve got Know how

it’s at risk

Refine and

repeat

Next-Gen Firewalls

Virtualized Data Centers

All network firewalls

eventually

Network Complexity is Increasing

8

Page 9: 5 Strategies to Improve Firewall Management
Page 10: 5 Strategies to Improve Firewall Management

10

Page 11: 5 Strategies to Improve Firewall Management

Strategy #1:

Assess the risk of

the firewall policy

Page 12: 5 Strategies to Improve Firewall Management

12

Page 13: 5 Strategies to Improve Firewall Management

What exactly can

the bad guys see?

Page 14: 5 Strategies to Improve Firewall Management

Logic and Reasoning

Page 15: 5 Strategies to Improve Firewall Management

General

lack of

accountability

Page 16: 5 Strategies to Improve Firewall Management

Strategy #2:

Maintain optimized

firewall rulesets

Page 17: 5 Strategies to Improve Firewall Management

Logic and Reasoning

Page 18: 5 Strategies to Improve Firewall Management

Strategy #3:

Manage firewall

changes

Page 19: 5 Strategies to Improve Firewall Management

One mishap is

worth

hundreds of

thousands of

dollars…

19

Page 20: 5 Strategies to Improve Firewall Management

Sustainable &

Repeatable Process

Control

Visibility

Automation

20

Page 21: 5 Strategies to Improve Firewall Management

ROI for Automating Firewall Change Management

21

Annual Savings - $700K

3-Year Savings - $2.1M

Page 22: 5 Strategies to Improve Firewall Management

Strategy #4:

Keep up with the

rules and regulations

Page 23: 5 Strategies to Improve Firewall Management

Implement

policies/plans

Enforce

with

technology

Know how

it’s at risk

Refine and

repeat

HIPAA/HITECH

GLBA

SOX

PCI DSS

State breach notification laws

International laws

How is your business impacted?

23

Page 24: 5 Strategies to Improve Firewall Management

24 24

Page 25: 5 Strategies to Improve Firewall Management

We’re compliant,

therefore we’re

secure

25

Page 26: 5 Strategies to Improve Firewall Management

Strategy #5:

Prove where

things stand

Page 27: 5 Strategies to Improve Firewall Management

Technical issues

Operational Issues

The BIG Oversight

27

Page 28: 5 Strategies to Improve Firewall Management

Your auditor

will be there

waiting…

28

Page 29: 5 Strategies to Improve Firewall Management

29

Know your compliance status…

immediately and at all times!

29

Page 30: 5 Strategies to Improve Firewall Management

Summary

Page 31: 5 Strategies to Improve Firewall Management

Implement

policies/plans

Enforce

with

technology

Know what

you’ve got

Know how

it’s at risk

Refine and

repeat

The Magic Formula

31

Page 32: 5 Strategies to Improve Firewall Management

Automation is Key

32

Page 34: 5 Strategies to Improve Firewall Management

34

Page 35: 5 Strategies to Improve Firewall Management

• Firewall Management: 5 Challenges Every Company

Must Address http://pages.algosec.com/five_common_challenges.htm

• Trends in Firewall Configuration – Measuring the

holes in Swiss cheese (Research by Prof. Wool) http://arxiv.org/abs/0911.1240

• Firewall Management ROI Calculator http://www.algosec.com/resources/roi_calculator/

• Evaluate the AlgoSec Security Management Suite AlgoSec.com/eval

Next Steps and Q&A

35