Managed firewall

Managed firewall services run by security engineers

Your firewalls decide what gets in and out of every site. We manage them around the clock: policies, firmware, VPNs and threat prevention settings, reviewed by engineers who also investigate attacks and know what a risky rule looks like.

  • Next-generation firewall management, 24/7
  • Rule reviews that remove risk and clutter
  • Firmware and threat updates kept current
Security engineer working at a workstation in a dark office

24/7 monitoring

Firewall health and security events watched around the clock

Security operations behind it

Suspicious traffic escalated to our MDR analysts

Documented changes

Every rule change requested, reviewed and recorded

Engineer working on a laptop at a lit server rack

Why it matters

A firewall is only as good as the way it is run

Firewalls collect years of rules that nobody remembers adding. Firmware falls behind, threat prevention features are licensed but switched off, and remote access VPNs stay open to accounts that should have been removed. Each of those is a common way in for attackers.

Firewall management services fix that by giving the firewall an owner. We keep configurations clean and current, apply vendor security updates on a schedule you approve and review traffic for signs of trouble. Because we also run 24/7 managed detection and response, a blocked connection that looks like part of an attack gets investigated instead of ignored.

What’s included

Next-generation firewall management, end to end

How it works

From first review to ongoing management

1

Firewall review

We review configurations, rule bases, firmware levels and licensed features, and give you a prioritized list of what to fix.

2

Remediate

We close the urgent gaps, such as exposed management interfaces, outdated firmware and rules that allow far more than intended.

3

Manage and monitor

We take on day-to-day policy changes, updates and 24/7 monitoring through a documented change process.

4

Review regularly

Periodic rule reviews and service meetings keep the policy lean and aligned to how your business works today.

Deliverables

What you get from our managed firewall provider team

  • Initial firewall configuration and rule base review
  • Prioritized remediation plan
  • Documented change request and approval process
  • Scheduled firmware and signature updates
  • Periodic rule clean-up and access reviews
  • Configuration backups and change history
  • Security event escalation to our MDR team
  • Reports that support PCI DSS, SOC 2 and HIPAA audits

Technologies

Firewall platforms our engineers support

Palo Alto firewall management and Check Point firewall management are among the most common requests we handle. We also manage Meraki MX appliances and UniFi gateways for distributed and smaller sites.

Next-generation firewalls

  • Palo Alto Networks
  • Check Point

Cloud-managed and distributed sites

  • Cisco Meraki
  • Ubiquiti / UniFi

These are platforms our engineers support, not partnerships. See all technologies we support.

FAQ

Managed firewall questions

Managed firewall services mean a provider takes responsibility for running your firewalls: rule changes, firmware and signature updates, VPN configuration, monitoring and reporting. You keep approval of changes, and the provider keeps the firewall current and documented.

A next-generation firewall filters traffic by application and user as well as by port and address, and adds features such as intrusion prevention, URL filtering and malware inspection. Those features only help when they are turned on and tuned, which is a large part of what management covers.

Yes. Our engineers support Palo Alto Networks and Check Point firewalls, along with Cisco Meraki and Ubiquiti / UniFi. We can manage the firewalls you already own, and we will tell you if a model is near end of support.

No. Planned changes go through a request and approval process that we agree with you at the start. Emergency actions, such as blocking an address that is actively attacking you, follow rules you approve in advance.

Price depends on the number and size of firewalls, whether they run in high-availability pairs, how many sites and VPNs are involved and how often your rules change. We scope it with you and give you a fixed monthly proposal.

Yes. Frameworks such as PCI DSS, SOC 2 and HIPAA expect documented firewall rules, change control and regular reviews. We provide the change history and review records auditors ask for.

Talk to an expert

Put an owner on your firewalls

Tell us which firewalls you run and how many sites they protect, and we’ll scope management and a fixed monthly proposal.

  • Scoping call with a firewall engineer
  • Starts with a review of your current rules

Prefer email? Write to [email protected] or call (858) 712-0040.

Send us a message