Managing access to confidential information and application resources via
firewalls is the foundation of network security, and firewall audits are
central to any mature network security process. However, relying on security
and network experts to review rules across multiple firewall zones and
different firewall products is proving to be costly and ineffective. Few will
dispute that when it comes to network security, automating best practices to
reduce operating costs, complexity, human error, and streamline processes is
a good thing. However, in what we call the age of Continuous Compliance -
brought on by the reality that point-in-time audits done hastily to meet
reporting deadlines rarely - if ever - deliver any security or compliance
benefits once that point in time has passed, automation becomes more than
just good. It becomes essential.
Case in point: a Nove... (more)