Sophos Firewall – Secure By Design

ProductsSophos Firewall

As a Sophos Partner, your customer’s security is our top priority. We want you to know that we’ve not only invested heavily in ensuring Sophos Firewall is the most secure firewall on the market, but we continuously work to make it the most difficult target for hackers, while helping keep your customers’ network and organization safe from future attacks through proactive monitoring.

Here are a few examples of how we have invested in making Sophos Firewall secure by design:

Best-Practices Built-In:

Our goal is to ensure the firewall’s security posture is optimally configured right from the start by building-in security best-practices for easy out-of-the-box deployment. Your customers is getting powerful protection for their network as soon as it’s connected and turned-on. It starts with strict and granular access controls and default firewall rules that provide security and control for all network traffic. Sophos Firewall also makes it quick and easy to setup additional features such as ZTNA to protect their applications while allowing secure access for remote workers without opening any ports on the firewall.

Hardened Against Attack:

Taking measures to prevent attacks from targeting the firewall is critically important. Sophos Firewall has been designed from the start with security in mind and is continually being hardened against attacks with new technologies. Sophos Central management offers the ultimate in secure remote management and recent enhancements include improved multi-factor authentication, containerization for the VPN portal and other trust boundaries, strict default access controls, rapid hotfix support, and more, making Sophos Firewall a formidable opponent for attackers.

Automated Hotfix Response

Sometimes it’s important to patch urgent security issues quickly before the next regular firmware update. Sophos Firewall integrates an innovative hotfix capability that enables us to push urgent and important patches out to the firewall “over the air” to address any new zero-day vulnerabilities or other critical issues that arise between regular firmware updates. This enables a rapid fix to be applied without requiring any downtime normally associated with a firmware upgrade. However, it’s still vitally important that you keep your customers’ firewall up to date with the latest firmware release as every release includes important security fixes, as well as performance, stability, and feature enhancements.

Proactive Monitoring

You depend on Sophos to be proactive, transparent, and responsive. That’s why we continually monitor our global install base of firewalls and rapidly react to any incident. This enables us to identify incidents before our customers thanks to telemetry collection and analysis. You can rest assured that if a single customer anywhere in
the world has their firewall attacked, we’re working tirelessly to help shut the attack down and prevent it from happening elsewhere.

In addition, our mature vulnerability disclosure program ensures we are transparent and communicative with every security vulnerability or incident, so you are as well-equipped as possible to protect your customers’ network. We also offer the most active and well funded bug bounty program in the industry to get ahead of any potential issues before they can become a problem.

Additional Best Practices:

In addition to the best-practices we build-into the firewall, be sure to follow this Hardening Your Sophos Firewall Guide for additional best-practices you should follow in setting up and administering Sophos Firewall.

Download the Sophos Firewall Security Brief if you would like a PDF document covering these capabilities.

Find out more about Selling Sophos Firewall and lead generation on the Sophos Partner Portal.