The Future of Zero Trust and SASE is Now! Register now

close
close
The platform of the future is Netskope

Intelligent Security Service Edge (SSE), Cloud Access Security Broker (CASB), Cloud Firewall, Next Generation Secure Web Gateway (SWG), and Private Access for ZTNA built natively into a single solution to help every business on its journey to Secure Access Service Edge (SASE) architecture.

Go to Products Overview
Netskope video
Next Gen SASE Branch is hybrid — connected, secured, and automated

Netskope Next Gen SASE Branch converges Context-Aware SASE Fabric, Zero-Trust Hybrid Security, and SkopeAI-powered Cloud Orchestrator into a unified cloud offering, ushering in a fully modernized branch experience for the borderless enterprise.

Learn about Next Gen SASE Branch
People at the open space office
Designing a SASE Architecture For Dummies

Get your complimentary copy of the only guide to SASE design you’ll ever need.

Get the eBook
Embrace a Secure Access Service Edge (SASE) architecture

Netskope NewEdge is the world’s largest, highest-performing security private cloud and provides customers with unparalleled service coverage, performance and resilience.

Learn about NewEdge
NewEdge
Your Network of Tomorrow

Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.

Get the white paper
Your Network of Tomorrow
Netskope Cloud Exchange

The Netskope Cloud Exchange (CE) provides customers with powerful integration tools to leverage investments across their security posture.

Learn about Cloud Exchange
Netskope video
Make the move to market-leading cloud security services with minimal latency and high reliability.

Learn about NewEdge
Lighted highway through mountainside switchbacks
Safely enable the use of generative AI applications with application access control, real-time user coaching, and best-in-class data protection.

Learn how we secure generative AI use
Safely Enable ChatGPT and Generative AI
Zero trust solutions for SSE and SASE deployments

Learn about Zero Trust
Boat driving through open sea
Netskope achieves FedRAMP High Authorization

Choose Netskope GovCloud to accelerate your agency’s transformation.

Learn about Netskope GovCloud
Netskope GovCloud
  • Resources chevron

    Learn more about how Netskope can help you secure your journey to the cloud.

  • Blog chevron

    Learn how Netskope enables security and networking transformation through security service edge (SSE).

  • Events & Workshops chevron

    Stay ahead of the latest security trends and connect with your peers.

  • Security Defined chevron

    Everything you need to know in our cybersecurity encyclopedia.

Security Visionaries Podcast

Cookies, Not Biscuits
Host Emily Wearmouthas sits down with experts David Fairman and Zohar Hod to discuss the past, present, and future of internet cookies.

Play the podcast
Podcast: Cookies, Not Biscuits
Latest Blogs

How Netskope can enable the Zero Trust and SASE journey through security service edge (SSE) capabilities.

Read the blog
Sunrise and cloudy sky
SASE Week 2023: Your SASE journey starts now!

Replay sessions from the fourth annual SASE Week.

Explore sessions
SASE Week 2023
What is Security Service Edge?

Explore the security side of SASE, the future of network and protection in the cloud.

Learn about Security Service Edge
Four-way roundabout
We help our customers to be Ready for Anything

See our Customers
Woman smiling with glasses looking out window
Netskope’s talented and experienced Professional Services team provides a prescriptive approach to your successful implementation.

Learn about Professional Services
Netskope Professional Services
The Netskope Community can help you and your team get more value out of products and practices.

Go to the Netskope Community
The Netskope Community
Secure your digital transformation journey and make the most of your cloud, web, and private applications with Netskope training.

Learn about Training and Certifications
Group of young professionals working
  • Company chevron

    We help you stay ahead of cloud, data, and network security challenges.

  • Why Netskope chevron

    Cloud transformation and work from anywhere have changed how security needs to work.

  • Leadership chevron

    Our leadership team is fiercely committed to doing everything it takes to make our customers successful.

  • Partners chevron

    We partner with security leaders to help you secure your journey to the cloud.

Supporting sustainability through data security

Netskope is proud to participate in Vision 2045: an initiative aimed to raise awareness on private industry’s role in sustainability.

Find out more
Supporting Sustainability Through Data Security
Highest in Execution. Furthest in Vision.

Netskope recognized as a Leader in the 2023 Gartner® Magic Quadrant™ for Security Service Edge.

Get the report
Netskope recognized as a Leader in the 2023 Gartner® Magic Quadrant™ for Security Service Edge.
Thinkers, builders, dreamers, innovators. Together, we deliver cutting-edge cloud security solutions to help our customers protect their data and people.

Meet our team
Group of hikers scaling a snowy mountain
Netskope’s partner-centric go-to-market strategy enables our partners to maximize their growth and profitability while transforming enterprise security.

Learn about Netskope Partners
Group of diverse young professionals smiling

The Economics of Network & Security Transformation – Part 2

Apr 28 2020

In December 2019, I wrote a blog recommending CIOs and CISOs review their annual budgets in 2020 and continue to reduce their spend on legacy appliance-based network and security controls with a move to a scalable and future-proof cloud-based architecture.

In the past few months since then, the world has changed. Budgets are now further under the spotlight with non-essential projects being postponed, emergency budgets for pandemic response to maintain BAU and support a remote workforce applied (and is some cases budget “borrowed” from 2021), and budgets for 2021 being mandated to accelerate digital transformation (and to cover a potential budget deficit) and support growth in new digital services. This change has prompted me to write an update to the blog, a “Part 2,” to cover how organisations will have to adapt to support their current and future workforce changes and potential budgets in 2020 onwards.

Scaling a remote workforce

Most conversations I have with CIOs and CISOs predict that the remote workforce will continue to rise in numbers, with an additional 20%+ of the workforce working remotely beyond the pandemic.  For organisations, this is a tipping point whereby it’s envisaged that 50%+ of the organisation’s workforce could be considered remote workers. As CIOs and CISOs ensure they can fully support this rising number of remote workers, they are also tasked to manage unpredictable costs including the big spend CAPEX items that hit their budget plans every year.  These CAPEX costs are usually offset over a three to five year budgeting period, however for the organisation, the spend is paid up front. Difficulty in predicting and planning for how the organisation will scale in the next three to five years usually results in larger appliances being purchased to meet a potential growth of the organisation which further pushes up the spend.

As the same organisations continue to embrace the cloud, to harness both reduced costs and the continuously updated and enhanced features cloud services offer, it’s critical to start assigning a value to this transformation from both a business benefit perspective and a cost savings perspective.

Transformation Savings

The big-ticket items for most security budgets are the appliance spend and the ongoing maintenance of these appliances over their short lifetime. Monthly updates with new features, patching newly found vulnerabilities, and the racking and stacking of appliances as the traffic throughput increases are costly especially when change maintenance windows may only be possible overnight or on weekends. To use an analogy, it’s similar to buying a new car outright every three years and depreciating the full cost over that time with no residual value remaining. The car is serviced every month paying the service centre a double-time hourly rate for a service that doesn’t always work the first time When buying a car at least, we get a trade-in price for 30-50% of the value after the three years. However for appliances, the majority are sent to a secure scrapyard and recycled after that period no matter how well maintained they are. Not only does this not make financial sense, but it’s also not the best approach to support a happy and fulfilled workforce with evenings and weekends lost to this maintenance requirement. Plus, the constant production, shipping, and recycling of appliances is not supportive of the environment.

The key issue however is the cost. The following is an example of an organisation with 20 offices across the globe and their spend on fundamental network and security appliances and technology. With the total spend above $10m+ over three years for MPLS, SWG, TLS, NGFW,  and VPN/SD-WAN appliances, not including all the local storage needed for reporting and the maintenance fees, it’s a costly business to run this organisation’s network and security infrastructure.

With a 50%+ remote workforce, why would an organisation continue to steer network traffic through to a data centre where these appliances reside, increasing latency, reducing quality of service, and adding cost? If we consider cutting the cost of the three to five year appliance expenditure, a significant cost saving can be made. In this same example, the appliance costs are the primary expense across all categories of spend.

These cost savings can also extend to reduced expenditure for MPLS lines. With a move to cloud, this organisation may no longer need expensive MPLS lines for every site. With a direct-to-net/cloud approach, the organisation could make a significant saving on WAN costs reducing these costs further.

The FTEs assigned to keeping the appliance lights on can be repurposed to focus on the Security Operations side of maximising the investment in the security control and technologies (writing new policies, tuning, and reporting) which would offset part of the maintenance expenditure.

Finally, storage costs can be reduced. As we know, cloud storage costs are significantly less expensive than on-premise storage costs and include multiple benefits including active backup and DR recovery.

Business Outcomes

To conclude, this approach may not work for all organisations. A percentage of organisations may continue to be reliant on legacy appliances and a traditional corporate network, however, the majority of organisations will have started or already be moving to this new approach. An organisation’s workforce is a driving force to dictate the strategy of the organisation.  With a workforce that needs the flexibility of working remotely, with the consumption of cloud-based infrastructure and SaaS becoming the normal, and with the cost calculations and cost reductions organisations need to consider, now is the right time to architect a future-proof cloud-based architecture that works for everyone.

In part 3 of this series, I will look at the cost savings over the full three to five year lifecycle and explain how further cost savings can be made.

author image
Neil Thacker
Neil Thacker is a veteran information security professional and a data protection and privacy expert well-versed in the European Union General Data Protection Regulation (EU GDPR).

Stay informed!

Subscribe for the latest from the Netskope Blog