Configuration Security · Firewall & Cloud Audit

Security Posture Management
audits every rule, closes every gap

SDefender Security Posture Management is evidence-based configuration assessment for firewalls and supported cloud-firewall controls. It imports supported configuration exports or approved connection input, resolves vendor-specific objects and rules, evaluates benchmark and CVE context, and separates observed evidence from controls that require manual review.

All products
  • 15 platforms, auto-detected on import
  • CIS-style benchmark per platform
  • Live CVE feed for 10 of 12 firewall platforms
  • Cross-mapped to 8 compliance frameworks
Security Posture Management
Configuration workflow

From configuration import to verified posture change

01

Import

Receive a supported configuration export or approved connection input.

02

Normalize

Resolve vendor-specific objects, services, rules and references.

03

Assess

Evaluate policy, configuration, CVE context and compliance controls.

04

Separate uncertainty

Show observed, failed and manual or unknown controls distinctly.

05

Remediate

Explain the risk, affected object and corrective action.

06

Compare

Verify changes against the next approved assessment.

Capabilities

What it does

Risk score & prioritized findings

Every firewall gets an overall risk score and findings ranked critical → low (weak admin access, plaintext management, any-any policies and more), each mapped to attacker techniques (MITRE ATT&CK).

CIS-style benchmark per platform

A dedicated CIS-style benchmark for every supported platform, auto-detected on import rather than a generic baseline, with control coverage you can track and prove.

Live CVE feed

Branch-isolated CVE matching flags vulnerable firmware and software, e.g. PAN-OS GlobalProtect (CVE-2024-3400), Cisco IOS-XE WebUI (CVE-2023-20198), Check Point VPN (CVE-2024-24919).

Compliance crosswalk (8 frameworks)

Every finding cross-maps to PCI, NIST, ISO 27001, HIPAA, STIG, NERC, CMMC and NCSC: one scan, audit-ready evidence across all of them.

AI analysis & remediation

One-click AI analysis explains each finding in plain language and generates remediation scripts, while an AI chat answers questions about your configuration.

On-prem & cloud, exports & API

Covers firewalls and cloud firewalls (AWS, Azure, GCP) in one place, with topology, change tracking, rule cleanup, CSV/JSON export, REST API tokens, RBAC and a full audit log.

Customer deliverables

Evidence a firewall or compliance owner can use

Prioritized configuration findings

High-risk rule, management and firmware issues grouped by practical impact.

Evidence and affected objects

The relevant rule, service, object or platform context that supports the finding.

Score with coverage

Posture score shown together with assessed coverage so unsupported controls are not hidden.

Manual or unknown controls

Items that require customer validation are separated from observed pass or fail results.

Remediation guidance

Plain-language risk explanation and corrective action for the responsible team.

Compliance crosswalk

Findings mapped to supported frameworks for audit and management reporting.

Evidence example

Posture score with coverage and uncertainty

Sanitized Security Posture Management dashboard

Coverage, findings and review state

The view shows risk score, benchmark coverage and the separation of findings from manual review items.

Sanitized demo view. Environment identifiers are replaced.

At a glance

Specifications

CategoryFirewall & cloud configuration security
Platforms15, auto-detected on import (12 firewalls + AWS / Azure / GCP cloud firewalls)
Benchmarks15 dedicated CIS-style benchmarks (neutral baseline only as fallback for unknown vendors)
CVE feeds10 platforms, branch-isolated + linear matching
CompliancePCI · NIST · ISO 27001 · HIPAA · STIG · NERC · CMMC · NCSC (crosswalk)
AIAI analysis, AI chat, generated remediation scripts
DeploymentOn-premises

Security Posture Management covers firewall and cloud-firewall configuration posture across 15 platforms. The separate Cloud Security Posture Management product is available now for read-only AWS account, IAM and compliance assessment; Azure, GCP, Microsoft 365, OCI and Zadara are on its roadmap.

Coverage

15 platforms supported

FortiGatePalo Alto PAN-OSJuniper SRX (Junos)Cisco IOS / IOS-XECisco ASACheck PointSophos FirewallSonicWallWatchGuard FireboxMikroTik RouterOSpfSenseOPNsenseAWS Security GroupsAzure NSGGCP VPC Firewall

Auto-detected on import. 15 CIS-style benchmarks · live CVE feeds for 10 platforms (branch-isolated & linear matching) · every finding cross-mapped to 8 frameworks. And we keep adding more.

Coverage boundary

Score and coverage stay together

Supported platforms only

Current coverage applies to 15 firewall and cloud-firewall platforms and the listed frameworks.

No false pass

Missing evidence is not presented as a passed control, and unsupported controls are not treated as failures.

Cloud boundary

This product covers firewall and cloud-firewall configuration posture. Cloud account and IAM posture belongs to the separate Cloud Security Posture Management product, available now for AWS.

Assessment model

Review a configuration

Start with one supported firewall or cloud-firewall configuration and produce evidence-backed remediation guidance.

01

Assess

Confirm supported platform, input method and compliance scope.

02

Implement

Import, normalize and map controls to evidence.

03

Operate

Review findings, remediate and compare the next assessment.

Measured engagement

Plan Security Posture Management around your own data

Choose one product, one environment and one measurable outcome. We define success criteria before the engagement begins.