Blog

Product and company blog

Recent posts

PCI Firewall Review: Practical Questions to Ask Before an Assessor Does

PCI Firewall Review: Practical Questions to Ask Before an Assessor Does

Compliance | 2026-05-18

A focused guide to reviewing firewall rules, segmentation, management access, and evidence before a PCI-focused security review.

Network Segmentation and Firewall Policy

Network Segmentation and Firewall Policy

Network Segmentation | 2026-05-18

Why segmentation is only effective when firewall rules, objects, interfaces, and routing assumptions are reviewed as the environment changes.

FortiGate Hardening: Common Misconfigurations

FortiGate Hardening: Common Misconfigurations

FortiGate Security | 2026-05-18

A practical overview of FortiGate hardening areas such as admin access, services, logging, VPN exposure, and management-plane hygiene.

FortiGate Firewall Audit Checklist: What Security Teams Should Review First

FortiGate Firewall Audit Checklist: What Security Teams Should Review First

Firewall Auditing | 2026-05-18

A practical checklist for reviewing FortiGate firewall configurations, reducing hidden exposure, and turning manual review work into repeatable evidence.

Firewall Security Standards Mapping: Useful Guidance, Not a Magic Compliance Badge

Firewall Security Standards Mapping: Useful Guidance, Not a Magic Compliance Badge

Compliance | 2026-05-18

How standards mappings help security teams interpret firewall findings without pretending that automated checks alone prove compliance.

Firewall Rule Order Matters: How Policy Placement Can Change Security Outcomes

Firewall Rule Order Matters: How Policy Placement Can Change Security Outcomes

Firewall Best Practices | 2026-05-18

Why the same firewall rules can behave differently depending on order, shadowing, and overlapping policy logic.

The Firewall Rule Lifecycle: From Emergency Change to Forgotten Risk

The Firewall Rule Lifecycle: From Emergency Change to Forgotten Risk

Firewall Best Practices | 2026-05-18

How firewall rules are created, changed, inherited, forgotten, and eventually become risk unless teams review them regularly.

Firewall Rule Cleanup Best Practices for Reducing Risk and Complexity

Firewall Rule Cleanup Best Practices for Reducing Risk and Complexity

Firewall Best Practices | 2026-05-18

How duplicate, stale, shadowed, and overly permissive firewall rules increase risk, and how structured review helps keep a rulebase defensible.

Firewall Monitoring and Configuration Drift: Why One-Off Reviews Are Not Enough

Firewall Monitoring and Configuration Drift: Why One-Off Reviews Are Not Enough

Continuous Monitoring | 2026-05-18

How recurring firewall audits help detect drift after emergency changes, migrations, and routine operational work.

Firewall Compliance Audit Readiness: Turning Configuration Review into Evidence

Firewall Compliance Audit Readiness: Turning Configuration Review into Evidence

Compliance | 2026-05-18

How firewall configuration reviews support standards-aligned evidence for PCI DSS, ISO 27001, NIST, CIS, and internal security policies.

Firewall Audit Automation vs Manual Review: Where Each Fits

Firewall Audit Automation vs Manual Review: Where Each Fits

Firewall Auditing | 2026-05-18

Why automation improves consistency and coverage, while engineer judgement remains essential for context, exceptions, and safe remediation.

Executive vs Engineer Firewall Reports: Why Both Views Matter

Executive vs Engineer Firewall Reports: Why Both Views Matter

Reporting | 2026-05-18

Why firewall audit output should support technical remediation and management-level risk conversations without mixing the two audiences together.

Why Any-Any Firewall Rules Are Still One of the Biggest Policy Risks

Why Any-Any Firewall Rules Are Still One of the Biggest Policy Risks

Firewall Best Practices | 2026-05-18

A plain-English explanation of why source any, destination any, service any rules are dangerous and how teams should approach remediation.

Product Update 8th Feb 2026

Product Update 8th Feb 2026

Product Update | 2026-02-08

A short product and company update covering the push toward clearer messaging, a stronger homepage, and a tighter link between the public site and the product experience.