Web Application Firewall (WAF)
Ever-changing web portals, new functionalities, many different applications and new vulnerabilities in web technologies. WAF is a modern technology that protects your systems without a complex development cycle.
Solution description
It protects against web application attacks and denial of service (DoS) attacks. Unlike traditional network firewalls or intrusion detection systems (IDS) that simply pass HTTP, HTTPS, or FTP traffic to web applications, the Web Application Firewall acts as a two-way proxy for this traffic. It checks the traffic for attacks, isolating web servers from direct access by hackers. In addition, the Web Application Firewall eliminates attacks carried out by deliberately modifying application queries (e.g., making it impossible to modify cookies).
Unlike intrusion detection systems that analyse only binary samples, Web Application Firewall takes all traffic instead of the web server itself. It decodes the communication and removes/drops unauthorized characters or queries and normalizes the data. In addition, the systems provide protection against misuse of sensitive data. Of all the attacks reported today, approximately seventy percent target the application layer.
Benefits
- Significant reduction of application risk (possibility of compromise).
- Ensuring high availability of applications.
- Reducing the cost of deploying new application versions.
- Detailed traffic visibility over monitored applications.
Differentiation
Implementation of the selected WAF solution Implementation by analysis of the selected solution, according to detailed proposals. Support/development of the WAF solution Support/development of the WAF solution at the level of contact with the manufacturer, resolution of non-standard events, or overall support to ensure the functionality of the WAF solution.
Rental of WAF solutions (as a service) may include both implementation and support/development according to the parameters of the rental agreement.
Methodology, tools, technology
Case study
The insurance company therefore asked us for help. Our team quickly analysed the entire firewall setup and its overall integration into the network infrastructure. Thanks to our knowledge of security technologies, protocols and standards, we identified and described the critical vulnerabilities within the first day. In addition, we proposed an effective solution that led to a quick remediation of the problems and enabled the insurance company to proceed with the major ICT projects in question.
DO NOT HESITATE TO
CONTACT US
Are you interested in more information or an offer for your specific situation?