Palo Alto Networks

Palo Alto Networks Prisma Access

About the product

Palo Alto Networks Prisma Access is a comprehensive Secure Service Edge (SSE) platform that integrates advanced security features with cloud-based software-defined WAN technology (Prisma SD-WAN), delivering the Secure Access Service Edge (SASE) model. Prisma Access offers centralized protection for mobile users, remote branches, applications in the organization’s data centers and on the Internet through a global network of access points (PoPs), eliminating the need to deploy local security devices.

Prisma Access is managed from the Strata Cloud Manager cloud console, which is the central interface for security policy configuration, environment monitoring, and deployment automation. SCM enables the creation of consistent rules for all locations and user types.

Prisma Access as a Firewall-as-a-Service (FWaaS) moves security configurations to the cloud, offering traffic tunneling using the IPSec protocol. Service Connection, which connects customer data centers to the Prisma Access cloud, provides secure access to private customer applications, while Remote Networks offers connectivity to remote branches by moving communication security configurations to the Prisma Access edge. A global network of access points (PoPs) connects data centers, remote locations, and mobile users, optimizing traffic routes and minimizing communication delays.

Prisma Access offers a modern Zero Trust Network Access (ZTNA) approach through dynamic identity and context verification before granting access to applications. The solution’s architecture also includes a Secure Web Gateway (SWG) that blocks web threats in real time and a CASB (Cloud Access Security Broker) that monitors and controls access to SaaS applications, enforcing DLP (Data Loss Prevention) policies by masking sensitive data and blocking unauthorized transfers. FWaaS provides L3-L7 traffic filtering with features familiar to Palo Alto NGFW.

Access for mobile customers is provided by a dedicated Palo Alto GlobalProtect agent with communication encryption using IPSec/SSL protocols. In addition, the Prisma Access Browser is available with preventive features such as sensitive data masking, screen sharing blocking, clipboard blocking, and file upload blocking and restrictions.

Prisma Access uses the Autonomous Digital Experience Management (ADEM) tool to monitor user experience, analyzing latency, packet loss, and application performance.

Adventages of the solution

Global reach and scalability – Prisma Access is a cloud-based solution with multiple access points around the world, enabling secure connections regardless of user location (headquarters, branch office, mobile user, remote worker).

High level of security – offers advanced threat protection, including malware prevention, phishing prevention, URL filtering, SSL decryption, and precise App-ID-based policies.

Consistent protection for all users – policy centralization enables security policies to be standardized regardless of location or user type.

Reduced local hardware – simplifies configuration and reduces the number of network devices in company branches.

Flexible deployment – offers management via Panorama or SCM and scalability according to the needs of the organization.

End-to-end encryption – ensures secure encryption of data between mobile users, branches, and the data center.

Support for different connection types – supports IPSec connections, GlobalProtect VPN for mobile users, and the Prisma Access Browser for corporate users and external contractors, allowing flexible security for all types of traffic.

Centralized logging and analysis – centralizes log storage in the cloud (Strata Logging Service), facilitating analysis, reporting, and troubleshooting.

Benefits of Implementation

Increased network and data security – thanks to comprehensive protection against threats and consistent enforcement of security policies for all users, regardless of location.

Reduced IT costs – no need to invest in network and security hardware and maintenance, reducing operating and capital expenses.

Support for remote and mobile work – enables secure access to company resources from anywhere, including for external users using private devices, which is crucial in today's hybrid work model.

Scalability and flexibility – easily adapt solutions to changing organizational needs without having to expand your infrastructure.

Simplified security management – central management and visibility allow administrators to focus on protection.

Fast deployment and integration – seamless migration from existing solutions and integration with other Palo Alto Networks solutions.

See other products Palo Alto Networks 17

Palo Alto Networks

Cortex XDR

Cortex XDR is the world's first extended threat detection and response platform that collects and integrates all security data, making it easier to block sophisticated attacks.

Palo Alto Networks

Palo Alto Networks Next Generation Firewall (PA-Series, VM-Series, CN-Series)

Next Generation Firewall (NGFW) from Palo Alto Networks is an advanced network security platform that integrates traditional firewall functions with modern security mechanisms, application identification, and identity-based access control.

Palo Alto Networks

Palo Alto Networks Prisma SDWAN

Palo Alto Networks Prisma SD-WAN is an advanced, cloud-delivered software-defined WAN solution that transforms traditional WANs into a virtualized, secure infrastructure.

Palo Alto Networks

Palo Alto Networks Threat Prevention (NGFW’s module)

In Palo Alto Networks solutions, IDS (Intrusion Detection System) and IPS (Intrusion Prevention System) functionalities are an integral part of the ATP (Advanced Threat Prevention) module, which extends the functionality of Palo Alto NGFW.

Palo Alto Networks

Palo Alto Networks NGFW Webproxy

Next Generation Firewall (NGFW) from software version 11.0 offers the ability to configure a web proxy feature that allows you to inspect and control HTTP/HTTPS traffic in one of two ways: explicit or transparent.

Palo Alto Networks

Palo Alto Networks Advanced DNS Security

Advanced DNS Security (ADNS) is a modern solution for Palo Alto Networks that protects against threats hidden in the DNS (Domain Name System) layer.

Palo Alto Networks

Palo Alto Networks SSL Decryption (build-in within PA-Series, VM-series, Prisma Access)

Palo Alto Networks SSL Decryption is an advanced feature built into Palo Alto Networks' Next Generation Firewall that enables SSL/TLS traffic decryption for threat detection, security policy enforcement, and prevention of hidden attacks.

Palo Alto Networks

Palo Alto Networks Enterprise DLP

Palo Alto Networks Enterprise Data Loss Prevention (DLP) is an advanced security solution that enables the detection and prevention of data leaks in network traffic.

Palo Alto Networks

Prisma Cloud (Cloud Security)

The Cloud Security module of Palo Alto Prisma Cloud provides security and regulatory compliance for cloud environments.

Palo Alto Networks

Palo Alto Networks Cortex XSOAR

Palo Alto Networks Cortex XSOAR (formerly DEMISTO) is dedicated SOAR (Security Orchestration, Automation, and Response) software that has been on the market since 2015.

Palo Alto Networks

Cortex XSIAM (Extended Security Intelligence and Automation Management)

The needs of SOC teams have evolved. Detecting security incidents and neutralizing them after detection takes organizations too much time.

Palo Alto Networks

Palo Alto Networks Advanced WildFire

Palo Alto Networks Advanced WildFire (AWF) is an advanced malware analysis and prevention solution that combines sandboxing, machine learning, and global real-time analysis to protect against known and unknown threats.

Palo Alto Networks

Palo Alto Xpanse

Palo Alto Networks Xpanse is an advanced ASM solution that enables automatic detection and monitoring of all your organization's Internet-facing assets, regardless of who created them or where they are located.

Palo Alto Networks

Palo Alto Networks CASB

The Palo Alto Networks CASB (Cloud Access Security Broker) solution is an advanced cloud security platform designed to monitor, control, and protect access to SaaS applications and other cloud services in real time.

Palo Alto Networks

Palo Alto Networks Secure Web Gateway

Secure Web Gateway (SWG) is an advanced security solution from Palo Alto Networks designed to protect internet and cloud traffic from modern threats.

Palo Alto Networks

Palo Alto Networks Prisma Access Browser

Prisma Access Browser (PAB) is an advanced web browser based on the Chromium engine, natively integrated with the Prisma Access SSE solution, designed specifically for enterprises to secure both managed and unmanaged devices.

Palo Alto Networks

Palo Alto ITDR

Identity-related threats and malicious insiders are currently significant attack vectors for organizations. These threats involve unauthorized access to user accounts as a result of theft or the use of weak credentials, phishing attacks, or social engineering techniques.