Import
Receive a supported configuration export or approved connection input.
SDefender Security Posture Management is evidence-based configuration assessment for firewalls and supported cloud-firewall controls. It imports supported configuration exports or approved connection input, resolves vendor-specific objects and rules, evaluates benchmark and CVE context, and separates observed evidence from controls that require manual review.
Receive a supported configuration export or approved connection input.
Resolve vendor-specific objects, services, rules and references.
Evaluate policy, configuration, CVE context and compliance controls.
Show observed, failed and manual or unknown controls distinctly.
Explain the risk, affected object and corrective action.
Verify changes against the next approved assessment.
Every firewall gets an overall risk score and findings ranked critical → low (weak admin access, plaintext management, any-any policies and more), each mapped to attacker techniques (MITRE ATT&CK).
A dedicated CIS-style benchmark for every supported platform, auto-detected on import rather than a generic baseline, with control coverage you can track and prove.
Branch-isolated CVE matching flags vulnerable firmware and software, e.g. PAN-OS GlobalProtect (CVE-2024-3400), Cisco IOS-XE WebUI (CVE-2023-20198), Check Point VPN (CVE-2024-24919).
Every finding cross-maps to PCI, NIST, ISO 27001, HIPAA, STIG, NERC, CMMC and NCSC: one scan, audit-ready evidence across all of them.
One-click AI analysis explains each finding in plain language and generates remediation scripts, while an AI chat answers questions about your configuration.
Covers firewalls and cloud firewalls (AWS, Azure, GCP) in one place, with topology, change tracking, rule cleanup, CSV/JSON export, REST API tokens, RBAC and a full audit log.
High-risk rule, management and firmware issues grouped by practical impact.
The relevant rule, service, object or platform context that supports the finding.
Posture score shown together with assessed coverage so unsupported controls are not hidden.
Items that require customer validation are separated from observed pass or fail results.
Plain-language risk explanation and corrective action for the responsible team.
Findings mapped to supported frameworks for audit and management reporting.
The view shows risk score, benchmark coverage and the separation of findings from manual review items.
Sanitized demo view. Environment identifiers are replaced.
Security Posture Management covers firewall and cloud-firewall configuration posture across 15 platforms. The separate Cloud Security Posture Management product is available now for read-only AWS account, IAM and compliance assessment; Azure, GCP, Microsoft 365, OCI and Zadara are on its roadmap.
Auto-detected on import. 15 CIS-style benchmarks · live CVE feeds for 10 platforms (branch-isolated & linear matching) · every finding cross-mapped to 8 frameworks. And we keep adding more.
Current coverage applies to 15 firewall and cloud-firewall platforms and the listed frameworks.
Missing evidence is not presented as a passed control, and unsupported controls are not treated as failures.
This product covers firewall and cloud-firewall configuration posture. Cloud account and IAM posture belongs to the separate Cloud Security Posture Management product, available now for AWS.
Start with one supported firewall or cloud-firewall configuration and produce evidence-backed remediation guidance.
Confirm supported platform, input method and compliance scope.
Import, normalize and map controls to evidence.
Review findings, remediate and compare the next assessment.
Choose one product, one environment and one measurable outcome. We define success criteria before the engagement begins.
Tell us a bit about your environment and we'll get back to you shortly.
Your message has reached us; a member of the SDefender team will be in touch shortly. You're always welcome to reach us directly at info@sdefender.com.
We use analytics cookies to understand how visitors use our site. You can decline anytime. Cookie Policy