AlgoSec - Experts & Thought Leaders
Latest AlgoSec news & announcements
AlgoSec, global pioneer in application-centric security management, announces the latest release of Horizon A33.30, its unified platform for securing application connectivity across hybrid and multi-cloud environments. The release helps security teams accelerate secure application delivery, reduce operational complexity and strengthen policy governance. As enterprises accelerate cloud adoption, AI initiatives and digital transformation, security teams are under increasing pressure to enable business innovation without compromising security or compliance. Yet many organizations continue to rely on fragmented security tools, disconnected workflows and manual processes that slow application delivery, increase operational costs and create unnecessary risk. Fragmented security operations Horizon A33.30 helps organizations break down those silos. The platform brings together application, policy, risk and compliance context so security teams can govern secure application connectivity without having to rely on a patchwork of isolated security tools. "Security should never be the reason business slows down," said Eran Shiff, Chief Product Officer at AlgoSec. "Today's enterprises don't need another point product – they need a unified platform that understands applications, business context and risk across every environment. Horizon enables organizations to replace fragmented security operations with intelligent automation, giving them the confidence to innovate faster while reducing operational complexity and cyber risk." Risk assessment capabilities With Horizon A33.30, organizations can: Unify security across hybrid and multi-cloud environments: Modern enterprises operate across data centers, public cloud, private cloud, SDN, Kubernetes and SaaS environments. But security operations often remain fragmented across tools and teams. Horizon A33.30 gives security teams a unified way to govern application connectivity and policy across this complex infrastructure. The release expands support for Check Point Smart-1 Cloud, including traffic simulation, query and risk assessment capabilities. The release also expands support for additional cloud-managed security platforms, including Palo Alto Networks Strata Cloud Manager capabilities, Azure Firewall automation, Google Cloud security services and AWS Network Firewall – giving security teams a single operational view of application connectivity and policy across their entire infrastructure. Reducing deployment delays Accelerate secure application delivery: Rather than treating security as a bottleneck, Horizon A33.30 helps organizations securely deliver applications faster without compromising governance, compliance or control. Combining AI-powered application discovery, flow-level recertification, traffic simulation, impact analysis and policy automation, the platform enables Security and networking teams to gain deep visibility into application dependencies before implementing changes, dramatically reducing deployment delays, troubleshooting time and business disruption. Manual policy management Transform security operations through intelligent automation: One in five organizations still relies primarily on manual security processes. Horizon A33.30 introduces expanded automation capabilities that eliminate manual policy management while maintaining governance. Enhanced workflows, Azure Firewall automation, new REST APIs, AI-powered natural language queries and streamlined user experiences help security teams automate repetitive work, reduce human error and focus on strategic security initiatives instead of operational overhead. Continuously reduce cyber risk and strengthen compliance: Security is most effective when it's continuous, not reactive. Horizon A33.30 introduces new compliance reporting for NIS2, updated PCI DSS and SWIFT frameworks, expanded risk intelligence, customisable tag-based risk definitions and enhanced cloud security analysis, enabling organizations to continuously identify, prioritise and remediate risk while maintaining audit-ready compliance across hybrid environments.
AlgoSec, a global cybersecurity pioneer, reported its best year ever with strong year-over-year annual recurring revenue growth, a gross dollar retention rate exceeding 90% and 37% year-over-year new business growth in 2025. The results reflect continued demand for greater visibility and control over application connectivity across hybrid and multi-cloud environments. Founded in 2004, AlgoSec has maintained positive cash flow and remained debt-free throughout its history. Automating application connectivity Enterprises faced increasing complexity throughout 2025 as application environments spanned data centers, cloud and hybrid infrastructure. That complexity was reflected in AlgoSec’s 2025 State of Network Security Report, based on insights from over 500 cloud and network security professionals globally, which found that multi-cloud environments are now the norm, with Azure emerging as the most widely used cloud platform among respondents. The report also found that automating application connectivity has become the top priority for minimizing risk and downtime as environments continue to expand. High satisfaction scores In response to these challenges, large, distributed enterprises adopted AlgoSec in 2025. New customers included Volkswagen Group UK, Vodacom Business, NTT DATA Spain, Gainwell Technologies LLC – Texas, Lamborghini and more. AlgoSec consistently earns high satisfaction scores from real users, scoring 4.5 out of 5 on both G2 and Gartner Peer Insights, outperforming matching peers and being recognized as customer choice in Gartner’s Voice of the Customer report and #1 in PeerSpot. Additionally, AlgoSec’s 4.5 out of 5 Glassdoor rating places the company among top-tier employers. Data center environments The AlgoSec Horizon platform, released in 2025, is recognized as the industry’s first application-centric security management and automation platform designed specifically for hybrid networks. The platform provides a single source of visibility across multi-clouds and data center environments, enabling security teams to prioritise risk based on business needs while managing security at scale. Through AI-driven visibility and risk mitigation that automatically discovers applications and maps connectivity dependencies, AlgoSec Horizon reduces operational friction, minimizes misconfigurations and supports faster, safer application delivery. Multiple cloud platforms “Today’s security teams are managing unprecedented levels of application and infrastructure complexity,” said Yuval Baron, AlgoSec CEO and co-founder. “2025 has been our best year ever. In just a few months, over 100 customers have implemented the AlgoSec Horizon platform. This rapid adoption highlights enterprises’ strategic need for a single platform to secure their hybrid estate, often spanning multiple cloud platforms and data centers. At the same time, organizations must accelerate application connectivity to speed delivery. Together, these capabilities are essential for driving growth and innovation in the AI era.” AlgoSec’s application-centric approach was also recognized by the industry in 2025, earning the 2025 SC Award for Best Security Company from SC Media at RSAC, a Global InfoSec Award from Cyber Defense Magazine for Best Service as a Cybersecurity Company, and Trailblazer recognition in Network Security and Management from Cyber Defense Magazine’s Top InfoSec Innovator Awards.
Global cybersecurity pioneer AlgoSec has released its annual State of Network Security Report, providing a comprehensive vendor-agnostic analysis of today’s network security landscape. The report identifies a decisive shift in how organizations are responding to network evolution and hybrid architecture sprawl, with the focus shifting back towards consolidation; defined by unification, automation and control as businesses look to manage visibility of risk and resilience posture. Based on comparative year-on-year findings, AlgoSec’s research includes over 500 responses from security, network and cloud professionals across 28 countries and evaluates market pioneer including AWS, Cisco, Microsoft Azure, GCP, Check Point, Palo Alto Networks, Fortinet and more. Major structural changes Key findings from the report include: AI-powered threats and defences go mainstream – Artificial intelligence has become both the newest threat vector and the next frontier of defense. For the first time, AlgoSec’s research asked how organizations are adjusting to the rise of AI-powered attacks. The majority (65%) have already adapted their strategies, with 23.6% making major structural changes and 40.9% implementing moderate adjustments. Cloud firewall strategies prioritise consolidation - The move toward cloud-based firewalls continues, but with a change in tone. Nearly a quarter (24%) of respondents plan to move primarily to cloud firewalls over the next two years, confirming that cloud-native controls are no longer a consideration, but a baseline expectation. Security becomes the deciding factor in cloud platform selection – The rise of AI-driven workloads, compliance requirements and cross-platform orchestration has made security the critical benchmark for platform selection, with 54.7% of organizations stating that security capabilities carry the most weight when selecting a cloud platform. SD-WAN further cements its role – As organizations expand their hybrid environments and distributed workforces, the demand for secure, high-performance connectivity has solidified SD-WAN’s role. Fortinet (31%) has become the most widely used SD-WAN solution while Cisco (30.7%) remains a close second. SASE moves from exploration to standardization – For the third-year running, the share of organizations without a SASE solution has declined, down to 27.5% from 40% in 2024. This consistent decrease signals that SASE adoption is no longer exploratory, but a planned progression for most enterprises. Multi-cloud environments “Compared to last year, we are now seeing a transition from experimentation to optimization,” said Eran Shiff, Chief Product Officer at AlgoSec. “After several years of rapid expansion across multi-cloud environments, AI-powered operations and hybrid architectures, organizations are entering a new phase of consolidation and control. Our survey reveals a collective recalibration, with organizations moving away from tool proliferation toward unified management, shared visibility and measurable automation.”
Insights & Opinions from thought leaders at AlgoSec
Hybrid cloud computing enables organizations to segregate their resources and workloads on-premise, in a private cloud, or in a public cloud. But despite its many benefits, the hybrid environment also creates security concerns. AlgoSec’s co-founder and CTO, Prof. Avishai Wool shares his expert insights on some of these concerns and offers best practices to boost hybrid cloud security. Hybrid cloud computing Hybrid cloud computing combines on-premises infrastructure, private cloud services, and one or more public clouds. Going hybrid provides businesses with enhanced flexibility, agility, cost savings, and scalability to innovate, grow, and gain a competitive advantage. So, how can you simplify and strengthen security operations in the hybrid cloud? It all starts with visibility – you can’t protect what you can’t see Hybrid environments are highly complex, which can create security blind spots Security teams need to know what these assets are and where they reside to protect their entire hybrid infrastructure, applications, workloads, and data. They also need to see the entire hybrid estate and not just the individual elements. However, complete visibility is a serious hybrid cloud security challenge. Hybrid environments are highly complex, which can create security blind spots, which then prevent teams from identifying, evaluating, and most importantly, mitigating risk. No fragmented security approaches Another hybrid cloud security concern is that you cannot implement a fragmented security approach to control the entire network. With thousands of integrated and interdependent resources and data flowing between them, vulnerabilities crop up, increasing the risk of cyberattacks or breaches. For complete hybrid cloud security, you need a holistic approach that can help you control the entire network. Is DevSecOps the panacea? Not quite In many organizations, DevSecOps teams manage cloud security because they have visibility into what’s happening inside the cloud. However, in the hybrid cloud, many applications have servers or clients outside the cloud, which DevSecOps may not have visibility. Also, the protection of data flowing into and out of the cloud is not always under their remit. Other teams are required to manage security operations and minimize hybrid cloud risks to compensate for these gaps. These additional processes and team members must be coordinated to ensure continuous security across the entire hybrid network environment. But this is easier said than done. IaC-based security IaC-based security defines security best practices in template files, which minimize risks and enhance security posture Using IaC to balance automation with oversight is key, but you shouldn’t solely rely on it Infrastructure as code (IaC) will help you automatically deploy security controls in the hybrid cloud to prevent misconfiguration errors, non-compliance, and violations while in the production stage and pre-application testing. With IaC-based security, you can define security best practices in template files, which will minimize risks and enhance your security posture. But there’s an inherent risk in putting all your eggs in the automation and IaC basket. Hybrid cloud issues Since all the controls are on the operational side, it can create serious hybrid cloud security issues. And without human attention and action, vulnerabilities may remain unaddressed and open the door to cyberattacks. Since security professionals who are not on the operational side must oversee the cloud environment, it could easily open the door to miscommunication and human errors, a very costly proposition for organizations. For this very reason, you should also implement a process to regularly deploy automatic updates without requiring time-consuming approvals that slow down workflows and weaken security. Strive for 95% automated changes and only involve a person for the remaining 5% that requires human input. Hybrid cloud security best practices – start early, start strong When migrating from on-prem to the cloud, you can choose a greenfield migration or a lift-and-shift migration. Greenfield means rolling out a brand-new application. In this case, ensure that security considerations are “baked in” from the beginning and across all processes. This “shift left” approach helps build an environment that’s secure from the get-go. This ensures that all team members adhere to a unified set of security policy rules to minimize vulnerabilities and reduce security risks within the hybrid cloud environment. Migration planning measurements You can also leverage hybrid cloud security solutions to detect and mitigate security problems in real-time If you lift and shift on-prem applications to the cloud, note any security assumptions made when they were designed. This is important because they were not built for the cloud and may incorporate protocols that increase security risks. Next, implement appropriate measures during migration planning. For example, implement an Application Load Balancer if applications leverage plaintext protocols, and use sidecars to encrypt applications without having to modify the original codebase. You can also leverage hybrid cloud security solutions to detect and mitigate security problems in real time. Matching cloud security with application structure is no longer optional Before moving to a hybrid cloud, map the business logic, application structure, and application ownership into the hybrid cloud estate’s networking structure. To simplify this process, here are some tried and proven ways to consider. Break up your environment into a virtual private cloud (VPC) or virtual network. With the VPC, you can monitor connections, screen traffic, create multiple subnets, and restrict instance access to improve security posture. Use networking constructs to segregate applications into different functional and networking areas in the cloud. This way, you can deploy network controls to segment your cloud estate and ensure that only authorized users can access sensitive data and resources. Tag all resources based on their operating system, business unit, and geographical area. Tags with descriptive metadata can help to identify resources. They also establish ownership and accountability, provide visibility into cloud consumption, and help with the deployment of security policies. Conclusion In today’s fast-paced business environment, hybrid cloud computing can benefit your organization in many ways. But to capture these benefits, you should make an effort to boost hybrid cloud security. Incorporate the best practices discussed here to improve security and take full advantage of your hybrid environment.