Netskope is recognized as a Leader again in the Gartner® Magic Quadrant™ for SASE Platforms. Get the Report

close
close
Your Network of Tomorrow
Your Network of Tomorrow
Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.
Experience Netskope
Get Hands-on With the Netskope Platform
Here's your chance to experience the Netskope One single-cloud platform first-hand. Sign up for self-paced, hands-on labs, join us for monthly live product demos, take a free test drive of Netskope Private Access, or join us for a live, instructor-led workshops.
A Leader in SSE. Now a Leader in Single-Vendor SASE.
Netskope is recognized as a Leader Furthest in Vision for both SSE and SASE Platforms
2X a Leader in the Gartner® Magic Quadrant for SASE Platforms
One unified platform built for your journey
Securing Generative AI for Dummies
Securing Generative AI for Dummies
Learn how your organization can balance the innovative potential of generative AI with robust data security practices.
Modern data loss prevention (DLP) for Dummies eBook
Modern Data Loss Prevention (DLP) for Dummies
Get tips and tricks for transitioning to a cloud-delivered DLP.
Modern SD-WAN for SASE Dummies Book
Modern SD-WAN for SASE Dummies
Stop playing catch up with your networking architecture
Understanding where the risk lies
Advanced Analytics transforms the way security operations teams apply data-driven insights to implement better policies. With Advanced Analytics, you can identify trends, zero in on areas of concern and use the data to take action.
Netskope Technical Support
Netskope Technical Support
Our qualified support engineers are located worldwide and have diverse backgrounds in cloud security, networking, virtualization, content delivery, and software development, ensuring timely and quality technical assistance
Netskope video
Netskope Training
Netskope training will help you become a cloud security expert. We are here to help you secure your digital transformation journey and make the most of your cloud, web, and private applications.

The Right Steps to SASE: Refactor Internal Data Center Controls to Closed Loop Risk Management

Jun 25 2021

The following is an excerpt from Netskope’s recent book Designing a SASE Architecture for Dummies. This is the sixth in a series of seven posts detailing a set of incremental steps for implementing a well-functioning SASE architecture.

Throughout this series, we repeat that the data center is just one more place people and data have to go—it’s no longer the center of attention. When you’re far along in your SASE implementation using NG-SWG, it’s time to reconsider the data center.

Perhaps a few applications that are either too unwieldy to move or too precious to let out of your sight remain in the data center. To access these applications, you could use Netskope Private Access, which eliminates the VPN while providing secure access from anywhere in the world.

As for all those other boxes and bits that have been replaced by NG-SWG services in a SASE architecture? This is your opportunity to dramatically reduce the complexity and upkeep cost of your network, with those old systems depreciating out of existence and receding into the past while you and your enterprise look forward.

Providing Secure Access to the Data Center

Out with the OldIn with NG-SWGNetskope NG-SWG Integrates with . . .
Firewalls, intrusion prevention system (IPS), Domain Name System (DNS)Provides firewall protections as one of many servicesLegacy data center controls for ingress

True SASE yields ongoing operational cost savings. Table 5-6 shows a snapshot of what that can look like with a successful SASE implementation. Your finance people will be among the many stakeholders to thank you!

Ongoing OpEx Savings

DomainWhat HappensSavings
Multi-cloud accessEnable multi-cloud strategy

Improve user experience

Streamline procurement and adoption

Enable business unit–led apps
30% on connection and infrastructure

20% on future cloud costs
VPN replacementRemove VPN appliances

Direct-to-Net traffic for bandwidth-heavy apps

Reduce virtual local area network (VLAN) and firewall policy changes
80% on hardware

50% on security changes and admin
Business partnersManage third-party access

Direct access to published apps

Apply granular controls for activity

Remove lateral movement opportunities
80% on hardware

20% on support time
Mergers & Acquisitions (M&A)Onboarding and integration become more efficient

Consolidates current and future network and security costs

Synchronizes policy
40% on hardware

Onboarding is five times more efficient

If you’d like to read the complete Designing a SASE Architecture for Dummies book, you can download a complimentary copy here!

author image
Chad Berndtson
Chad Berndtson is global head of content and communications at Netskope. He joined the team in 2020 following several years building successful content, communications, and social media teams at Palo Alto Networks, Tanium, and Fortinet. Earlier in his career, Chad was a technology journalist focused on networking, security, and other IT topics at the dawn of the cloud era.
Chad Berndtson is global head of content and communications at Netskope. He joined the team in 2020 following several years building successful content, communications, and social media teams at Palo Alto Networks, Tanium, and Fortinet. Earlier in his career, Chad was a technology journalist focused on networking, security, and other…
Connect with Netskope

Subscribe to the Netskope Blog

Sign up to receive a roundup of the latest Netskope content delivered directly in your inbox every month.