Start with the business question.
Each explanation covers the purpose, a manufacturing example, baseline protection, insurance considerations, and a documented incident. Product names are examples of how a control can be delivered.
Cloudflare WAF
Screens requests to your website so suspicious traffic can be blocked before it reaches the application.
Read the business explanationRemote staff and suppliersCloudflare Zero Trust
Checks who is connecting and, where configured, whether their device meets your rules before allowing access.
Read the business explanationPrivate applications and internet accessZscaler Zero Trust
Provides controlled connections to private applications and, through separate services, helps protect internet use.
Read the business explanationEmployee identity and permissionsMicrosoft Entra ID
Manages work identities and sign-in rules for Microsoft 365 and connected applications.
Read the business explanationComputers, servers and responseMicrosoft Defender / EDR
Looks for suspicious activity on devices and gives responders tools to investigate and contain it.
Read the business explanationNetwork boundaries and plant separationCisco firewalls
Controls connections between networks and can inspect traffic for threats, depending on the product and configuration.
Read the business explanationConsistent security across sitesCisco Meraki MX
Combines site networking and firewall functions with centralized cloud management.
Read the business explanationSite networking and protectionUniFi gateways and firewalls
Provides network management and firewall capabilities; supported gateways also offer threat detection and prevention.
Read the business explanationProductivity, identity and security licensingMicrosoft 365 licensing
Determines which Microsoft productivity, identity, device management and security capabilities the company can actually use.
Read the business explanationBusiness continuity and ransomware recoveryBackup and recovery
Keeps recoverable copies of critical information and provides a tested way to restore operations after failure or attack.
Read the business explanationDetection, investigation and responseSOC, SIEM and security monitoring
Collects security records, looks for suspicious activity and gives responders a process for investigation and escalation.
Read the business explanationKnown weaknesses and software maintenancePatch and vulnerability management
Finds software weaknesses, prioritizes the ones attackers use and tracks repairs or approved exceptions.
Read the business explanation