Imperva
> What
A WAF is a purpose-built platform which shares
some similar functionality with network-based firewalls.
> more
> Who
Organisations, which leverage the web as a
medium for transacting with their customers.
> more
> Why
WAF's protect the business critical applications
and servers from both known and unknown attacks.
> more
"Sapphire's
input provides me with an additional source of impartial, practical, advice
and guidance..."
Steve Marshall,
Head of Security Architecture, Barclaycard
> more
SecureSphere protects databases and web applications against insider threats, as well as external attack and worm infection. It requires no manual tuning or changes to existing infrastructure. Imperva SecureSphere gateway appliances are deployed in leading financial, healthcare, and retail organizations around the globe.
Technology
Imperva's Dynamic Profiling technology automatically examines live Web and
database traffic to create a comprehensive model (profile) of an application's
structure and dynamics. Valid application changes are automatically recognized
and incorporated into the profile over time. Imperva's Transparent Inspection
technology delivers multi-gigabit performance, sub-millisecond latency, and
options for high availability that meet the requirements of the most demanding
database environment. Transparent Inspection makes it possible for SecureSphere
to be deployed in minutes with no changes to the database or any other aspect
of the data center infrastructure.
Benefits
Automated Application Security
Ongoing policy maintenance is the most significant component of a security
solution's total cost of ownership (TCO). It is not practical to expect multiple
organizations (e.g. operations, security, database administration, and software
development) to jointly tune a security product every time the application
or database changes. Dynamic Profiling eliminates manual tuning by automatically
adapting to changes as they are deployed. However, administrators have full
access to view and modify profiled information as well as create custom policy
rules as desired. The result is comprehensive protection of data center assets
without new burdensome operational processes.
No Changes to Existing Infrastructure
SecureSphere can be flexibly deployed on the network as a transparent inline
bridge, an inline router, or as an offline network monitor (sniffer). Whether
inline or offline, deployment requires no changes to the existing data center
infrastructure, including the network, servers, applications, and databases.
By not requiring changes to existing IP address configuration, routing schemes,
application code, and SSL certificates, SecureSphere easily drops into any
enterprise's carefully optimized data centers.
Regulatory Compliance
Both pre-configured and customized reporting is supported with an integrated
fully featured copy of Crystal Reports™ package or the use of any ODBC-compliant
database reporting tool. Pre-configured reports provide immediate visibility
into regulatory compliance, as well as performance, security alerts, application
vulnerabilities, and application changes. SecureSphere is the only unified
solution that meets regulatory compliance requirements by combining both policy
audit and policy enforcement functions.