What are the greatest advantages offered by SASE?

4.7k views1 Upvote8 Comments
Sort By:
Oldest
CISO in Software3 years ago
Every vendor is calling themselves SASE now. The CISOs and CIOs that I speak with say, "We're working on being secure now because we're going to get SD-WAN." But it's a secure access service edge (SASE) company so it has all the security protections built-in.

When you actually dig down into it, SASE is just a multiprotocol label switching (MPLS) replacement, except you can use public lines or open internet connections. So, what makes it SASE is adding Zscaler or some security tool on top of that. We had a huge discussion with a SASE industry leader recently and they fully admitted that networking really hasn't changed in the last 30-40 years. You still have your firewall, switches, routers, gateways, WiFi, etc. We just have a different way of accessing it now. Instead of a firewall you just throw in your huge SD-WAN appliance, depending on how you're setting it up, and you do all your security and network management from there. I'm not sure how that’s different, besides the internet connections and the simplicity of rolling it out. 

I'm a big SD-WAN user, so I was a VeloCloud customer back in 2014 because I had offices all over the world and it didn't make any sense to pull out network stacks. I just shipped out a little VeloCloud box with some arrows and stickers that said, "Plug internet in here, plug switch in here." And we could see those come online as the receptionist plugged them in—it was simple and easy and it worked. It wasn't perfect, but it was better than waiting 90 days to get a MPLS connection and an AT&T internet connection. I could do things instantly—that's the advantage I see of SD-WAN, but I don't see any security advantages to it.
2
Director, IT in Software3 years ago
After I moved to a more SaaS-focused company, I was exposed to cloud access security brokers (CASBs) and SD-WAN was more prevalent at that point. But we kept that hybrid approach because we still had to do things on-prem at a much smaller footprint and we had to be able to backhaul traffic to inspect it. We had to be able to geolocate users from 14 offices around the world at the time. So, there were still a lot of old practices I had to bring in and mix with the new ones. That's what I'm seeing with SASE.

But outside of your traditional VPN, where you're likely sending all your traffic back to one hub, being able to optimize that traffic, then inspect it on top and then get creative with those packets is a benefit. And that’s whether you want to block people from doing things or optimize connections based on certain criteria. I see that being more beneficial moving forward, especially in the hybrid or even full-remote workspace.
1
Director of Technology in Government3 years ago
Some of the advantages of SASE is that it is designed for virtualized connections (SD-WAN) while providing flexibility and simplicity in managing your WAN traffic and security in your environment. It is also built so that you can add your own capabilities in regards to unified security and policy management. One other benefit Is that it can enable edge to edge security, DLP and can significantly increase your network performance.

While there are many benefits, there are some issues that must be overcome. SASE requires a lot of expertise and personnel time to configure SASE to work within your network environment. You also need to pay special attention in protecting your data and ensuring that your security and network personnel work very closely together and not independently.

Overall, I still see SASE as a solution with great benefits but still needs some fine tuning.
2
lock icon

Please join or sign in to view more content.

By joining the Peer Community, you'll get:

  • Peer Discussions and Polls
  • One-Minute Insights
  • Connect with like-minded individuals
CISO in Services (non-Government)3 years ago
Traditionally in organisations network grows organically and with virtualisation and "Hot-Hot" availability, the network is still flat. Now with the new normal, cloud adoption and SaaS, networks architecture can be software-defined, one can implement micro-segmentation and granular cyber security policies much needed to implement an effective, manageable and secure network architecture, and cyber security in the host environment and for Zero Trust.
1
Board Member in Healthcare and Biotech3 years ago
SASE is useful only if you use Clouds extensively and there is a need to protect the Edge (Employees and Customers) especially when there is Zero Trust principle for security. I think one of the key benefits is an all-in-one security management solution as compared to a mix-and-match. 

One of my customers which had multi-cloud environment upgraded their security with SASE and were able to demonstrate to the management and their customers that their security was as good as it gets. 

If a vendor is selling SASE for closed network enterprises, they should carefully evaluate if they indeed need it.
1

Content you might like

TCO19%

Pricing26%

Integrations21%

Alignment with Cloud Provider7%

Security10%

Alignment with Existing IT Skills4%

Product / Feature Set7%

Vendor Relationship / Reputation

Other (comment)

View Results
5.7k views3 Upvotes1 Comment
Head of Enterprise Architecture MERCK Group in Healthcare and Biotecha year ago
Strategy & Architecture
Read More Comments
39k views5 Upvotes34 Comments

No Increase16%

1-5% increase47%

6-25% increase24%

26-50% increase6%

51-75% increase1%

76%+1%

Other2%

View Results
1.7k views1 Upvote