The firewall is not the network security. It is one part of it.
Segmentation, firewall policy, remote access, wireless security and the logging that lets you prove what happened. Designed so a single compromised laptop does not reach everything.
Six pieces that have to agree with each other
Segmentation
Finance, operations, guests and servers separated, so an infection in one place is contained rather than fatal.
Firewall policy
Rules reviewed and written down. Most firewalls we inherit have rules nobody can explain and nobody dares remove.
Secure remote access
VPN and zero trust access with multi factor, replacing the open ports that were opened during a crisis and never closed.
Wireless security
Separate guest and corporate networks, certificate based access for staff devices, and no shared password on a whiteboard.
Logging
Central logs, retained long enough to investigate, in the form an auditor or an insurer will accept.
Review
Policy and rule review on a schedule, because a network that is secure today drifts by itself.
What we deploy
- Fortinet for firewall and SD-WAN. See the Fortinet page for detail.
- Cisco and HPE for switching and wireless, where the estate calls for it.
- Sophos and Kaspersky for endpoint, chosen against your environment rather than by habit.
- We hold the partner status, which means escalation to the vendor is a call, not a web form.
Ask us to review your firewall rules
It takes a day and it is the single most revealing thing we can look at.
02 3537 5791
