A Netskope foi nomeada Líder no Quadrante Mágico do Gartner™ de 2022 para Security Service Edge. Obtenha o Relatório

  • Produtos

    Os produtos Netskope são construídos na Netskope Security Cloud.

  • Plataforma

    Visibilidade incomparável e proteção de dados e contra ameaças em tempo real na maior nuvem privada de segurança do mundo.

Netskope é nomeada Líder no Relatório do Quadrante Mágico™ do Gartner de 2022 para SSE

Obtenha o Relatório Vá para a plataforma
Netskope gartner mq 2022 sse leader

A Netskope oferece uma pilha de segurança na nuvem moderna, com capacidade unificada para proteção de dados e ameaças, além de acesso privado seguro.

Explore a nossa plataforma
Birds eye view metropolitan city

Mude para serviços de segurança na nuvem líderes de mercado com latência mínima e alta confiabilidade.

Saiba mais
Lighted highway through mountainside switchbacks

Previna ameaças que muitas vezes contornam outras soluções de segurança usando uma estrutura SSE de passagem única.

Saiba mais
Lighting storm over metropolitan area

Soluções de zero trust para a implementação de SSE e SASE

Saiba mais
Boat driving through open sea

A Netskope permite uma jornada segura, inteligente e rápida para a adoção de serviços em nuvem, aplicações e infraestrutura de nuvem pública.

Saiba mais
Wind turbines along cliffside
  • Customer Success

    Proteja a sua jornada de transformação digital e aproveite ao máximo as suas aplicações na nuvem, na web e privadas.

  • Atendimento ao cliente

    Suporte proativo e o compromisso em otimizar seu ambiente da Netskope e acelerar seu sucesso.

  • Treinamento e certificação

    Os treinamentos da Netskope vão ajudar você a ser um especialista em segurança na nuvem.

Confie na Netskope para ajudar você a enfrentar ameaças emergentes, novos riscos, mudanças tecnológicas, mudanças organizacionais e de rede, e novos requisitos regulatórios.

Saiba mais
Woman smiling with glasses looking out window

Contamos com engenheiros qualificados no mundo todo, com experiências variadas em segurança na nuvem, redes, virtualização, entrega de conteúdo e desenvolvimento de software, prontos para prestar assistência técnica oportuna e de alta qualidade.

Saiba mais
Bearded man wearing headset working on computer

Proteja sua jornada de transformação digital e aproveite ao máximo seus aplicativos de nuvem, web e privados com o treinamento da Netskope.

Saiba mais
Group of young professionals working
  • Recursos

    Saiba mais sobre como a Netskope pode ajudá-lo a proteger sua jornada para a nuvem.

  • Blog

    Saiba como a Netskope viabiliza a segurança e a transformação de redes através do security service edge (SSE).

  • Eventos e workshops

    Esteja atualizado sobre as últimas tendências de segurança e conecte-se com seus pares.

  • Security Defined

    Tudo o que você precisa saber em nossa enciclopédia de segurança cibernética.

Podcast Security Visionaries

Episódio bônus: a importância do Security Service Edge (SSE)

Reproduzir o podcast
Black man sitting in conference meeting

Leia as últimas novidades sobre como a Netskope pode viabilizar a jornada Zero Trust e SASE por meio dos recursos do security service edge (SSE).

Leia o Blog
Sunrise and cloudy sky

SASE Week

Netskope is positioned to help you begin your journey and discover where Security, Networking, and Zero Trust fit in the SASE world.

Saiba mais
SASE Week

O que é o Security Service Edge?

Explore o lado de segurança de SASE, o futuro da rede e proteção na nuvem.

Saiba mais
Four-way roundabout
  • Empresa

    Ajudamos você a antecipar os desafios da nuvem, dos dados e da segurança da rede.

  • Por que Netskope

    A transformação da nuvem e o trabalho em qualquer lugar mudaram a forma como a segurança precisa funcionar.

  • Liderança

    Nossa equipe de liderança está fortemente comprometida em fazer tudo o que for preciso para tornar nossos clientes bem-sucedidos.

  • Parceiros

    Fazemos parceria com líderes de segurança para ajudá-lo a proteger sua jornada para a nuvem.

A Netskope possibilita o futuro do trabalho.

Saiba mais
Curvy road through wooded area

A Netskope está redefinindo a nuvem, os dados e a segurança da rede para ajudar as organizações a aplicar os princípios de Zero Trust para proteger os dados.

Saiba mais
Switchback road atop a cliffside

Pensadores, construtores, sonhadores, inovadores. Juntos, fornecemos soluções de segurança na nuvem de última geração para ajudar nossos clientes a proteger seus dados e seu pessoal.

Meet our team
Group of hikers scaling a snowy mountain

A estratégia de comercialização da Netskope, focada em Parcerias, permite que nossos Parceiros maximizem seu crescimento e lucratividade enquanto transformam a segurança corporativa.

Saiba mais
Group of diverse young professionals smiling
Blog Plataforma, Produtos, & Serviços What should security executives stop doing?
Sep 25 2018

What should security executives stop doing?

As a CISO, it’s likely that you often hear about what you should be doing to protect your systems and data better: Buy this software. Deploy that system. Use this service. Hire these people, etc..

However, how often do you hear about what you should stop doing, which technologies you should turn off, or which projects you should cancel?

Recently I posted a query about this to a security expert community on LinkedIn, and also spoke with hundreds of CISOs during roundtable dinners as part of a research project with a large group of CISOs and other experts. The goal of the project is to redesign our operating model of security and challenge every aspect of how we manage our controls today to prepare for digital transformation.

The post asked participants to help build a list of things security executives need to stop doing. The query drew more than 200 comments, covering a range of cybersecurity areas — including firewalls and their place in the modern security program. One of the examples provided from the CISO group was to stop thinking the firewall is the most crucial security control or technology, or that it is even going to be relevant in the cloud-based future to come.

Challenging assertions about the need for long-standing industry technologies is a controversial topic in the cyber security world. Firewalls are like a religion to many security people, the tried-and-true mechanisms for keeping the bad actors out of corporate networks and systems.

Ask many security executives to identify their most trusted and essential assets, and they will almost certainly mention firewalls. Companies continue to spend a good portion of their cybersecurity budgets on firewall products, and security organizations can’t imagine their security programs without these long-standing guardians of the enterprise network.

However, this is an outdated approach, and it could make organizations more vulnerable to attack over time because it does not address the types of threats and adversaries companies are facing today. For that reason, blind devotion to firewalls can become toxic for organizations, keeping them from providing the level of security they need in today’s environment.

To be clear, this is not a suggestion that organizations immediately rip out their firewalls because they are no longer needed. However, security leaders need to accept the fact that the firewall is much less significant than it was in the past, and it will become even less significant in the future as more of IT infrastructure moves to the cloud.

Firewall products have primarily become commodities that were critical components of cybersecurity in the days of strictly on-premise computing. Today they play a much less vital role in the era of cloud services such as software-as-a-service (SaaS) and infrastructure-as-a-service (IaaS), and mobile technology.

Cloud services use application programming interfaces (APIs) and mobile devices to bypass the network perimeter, and this is having a profound effect on security. Security tools, such as firewalls, have not kept up with the changes and are not designed to understand unique APIs. They are designed to allow or block traffic; which does not yield equivalent value in the cloud; where those same rules and configurations are by default just applied as code.

Firewall proponents might counter that the firewall can be virtualized, making it more suitable for today’s needs. However, the goal of moving to the cloud is not to lift and shift existing monolithic applications and a flat architecture out of the perimeter and into the cloud, and then put a firewall in front. All that achieves is getting rid of the physical layer, without getting the benefits of the cloud.

In many cases, endpoint devices and applications are not even on the enterprise network, so the firewall plays little or no role in protecting these assets. As businesses further mature their digital transformation strategies, more data and applications move outside of what has traditionally been considered the “enterprise,” to far-flung devices that might not even be within the purview of the IT department.

Think about the times when companies have been hacked or compromised in some other way. It wasn’t the firewall that made the difference. They didn’t suffer a data breach because they had a specific brand of a firewall in place. It was always other controls that failed. The type or brand of firewall didn’t matter.

For all these reasons, the firewall is increasingly being cut out of the security conversation. When the technology does come up in conversation, it’s generally because modern-thinking security leaders are voicing their opinions that the firewall’s best days are in the past.

As one participant in the LinkedIn discussion noted, security needs to move further up the stack into the application layer and APIs.

Companies need to deploy security technologies that take the cloud and mobile devices into account, that eliminate blind spots by going deeper to quickly find and control activities across cloud services and Web sites that indicate suspicious behavior. In this way, they can continuously protect data and guard against advanced threats.

The firewall we know today will no longer exist in the future. Many CISOs at some of the largest enterprises in the world already know this and are acting on this knowledge by changing their approach to security. They’re more proactive and less reactive, adding automation wherever possible, and getting out in front of threats before they become a problem.

They also realize that, in a rush to buy security technology in recent years, many companies have ended up with too many tools that don’t work well with each other and don’t easily scale. They’ve added more and more tools, which has increased the complexity of their security infrastructure, and as a result, increased their operating costs.  It also creates an opportunity for both additional security gaps and additional attack surface.

Security doesn’t have to be complicated. However, it does have to be effective, comprehensive, proactive, scalable, and built for the cloud. Those capabilities will not come from firewalls, but from the latest solutions designed with the new technology environment in mind.

Controlling the medium in which we talk— ports and protocols—is irrelevant because there’s no context. Sure, you know user A called user B, but what did they discuss? What does user B know now that he didn’t know before? What if this communication or data exchange took place over chat?

You can’t get this level of context with a firewall, and the firewall does not focus on the context, sensitivity, and criticality of the information that transits its interfaces. However, as practitioners, we need the context, and we need to deploy the technology that provides the capability to control not just the method of communication (which ports, protocols, etc.), but the data transmitted.

As we move toward the future, networks will increasingly provide only connectivity over the concept of trust, and trust must be developed using new, emerging approaches designed for today’s security challenges. If the network now only provides connectivity, by default we cannot trust the network.

What we know as the perimeter has dissolved decentralized is that it is everywhere! Your identity, your data, and your app in the cloud are everywhere. Therefore, trust must be built on the concepts of identity and data and not delivered by the network. This is the same concept of what we all have relied on firewalls to provide — to create trust.

As security leaders, we need to focus on identity and the data that provides all the context of the conversation. This is quickly accelerating to become new normal and is a vital part of the future of cybersecurity.

author image
About the author
Jason Clark brings decades of experience executing successful strategic security programs and business strategies to Netskope as Chief Strategy and Marketing Officer.
Jason Clark brings decades of experience executing successful strategic security programs and business strategies to Netskope as Chief Strategy and Marketing Officer.