Home > IT Security > Internet Security and Content Filtering > Web application firewall for mid-sized companies

Web application firewall for mid-sized companies

Imperva (published 07/10/2008)
 

Companies with smaller IT budgets can benefit from automatic web application firewall with the release of SecureSphere standard edition


Imperva has announced the release of SecureSphere Standard Edition (SE), a new model of its multi award-winning SecureSphere Web Application Firewall (WAF) that is tailored to meet the requirements of mid-market enterprises. SecureSphere SE provides the automated protection and transparent inspection capabilities of its larger siblings in a form factor geared to mid size datacentres.

According to Gartner, adoption of WAFs among mid-market enterprises is accelerating, “Smaller enterprises — which typically do not have ADCs (Application Delivery Controllers) — and enterprises whose security organisations are not willing to depend on the security functionality included in network operational equipment represent the second-most-important growth area for WAFs, after enterprises with PCI compliance requirements.”

On the Web, mid-market enterprises face the same threats as businesses with larger IT staffs and budgets, including SQL Injection, Cross-Site Scripting (XSS), and Cross Site Request Forgery (CSRF/XSRF). These mid size enterprises must also meet regulatory requirements imposed by the PCI Data Security Standard, Sarbanes-Oxley, HIPAA, and other mandates. SecureSphere SE makes WAF technology accessible to these organisations, and was designed for easy deployment by IT departments with limited resources.


Created for businesses with limited IT budgets and staffs, SecureSphere SE can be deployed quickly and uses patent-pending Dynamic Profiling technology to learn application behaviour and automatically create security policies. Unlike traditional WAFs, SecureSphere does not require intensive ongoing manual tuning or configuration. Using a unique combination of positive and negative security models, SecureSphere SE prevents attackers from exploiting unknown and unpatched vulnerabilities in both commercial and custom developed web applications. It can be managed by just one or two administrators.

To simplify regulatory compliance reporting, SecureSphere SE includes pre-packaged reports for specific business applications and regulatory mandates including PCI DSS, SOX, HIPAA, and others. In addition, SecureSphere SE receives continuous signature updates developed by experts at the internationally recognised security research organisation the Imperva Application Defense Center (ADC).

“The SecureSphere Web Application Firewall is a battle-hardened platform that is protecting over 4,500 organisations worldwide and has won more than 20 industry awards in the past five years,” said Shlomo Kramer, CEO of Imperva. “SecureSphere SE makes these same industrial strength web application security capabilities available in a form factor that is accessible to mid-market enterprises.”

 

 

© 2009 ProSecurityZone.com