Firemon - Experts & Thought Leaders
Latest Firemon news & announcements
FireMon, a pioneer in network security policy management and the firewall policy control plane for the hybrid enterprise, announced it has completed its product integration with Palo Alto Networks Strata Cloud Manager to deliver intelligent and interoperable solutions that enable joint customers to innovate faster and solve their most complex cybersecurity challenges. The integration combines the FireMon platform with Palo Alto Networks Strata Cloud Manager to help security teams bring policy and configuration information from Palo Alto Networks cloud-managed environments into FireMon for policy control, analysis, risk validation, and governance workflows. Reducing unnecessary exposure FireMon support for Palo Alto Networks Strata Cloud Manager is available now, with current capabilities including policy ingestion, normalisation and analysis. At a time when the 2026 Verizon Data Breach Investigations Report found that 31% of breaches start with software vulnerabilities, the integration gives organizations a consistent way to govern firewall policy across hybrid environments, reduce unnecessary exposure, and support Zero Trust enforcement at scale. Cloud-delivered management platforms help security teams simplify operations and improve agility. However, they do not eliminate the need for policy control and governance. Security teams still need to know whether policies align with business intent, which rules are unused or overly permissive, which changes introduce risk, whether controls remain compliant, and how policies operate across the broader hybrid estate. Broader hybrid estate Recent FireMon Insights 2.0 data highlights the scale of the challenge: FireMon found that 58% of firewalls fail high-severity compliance checks and 48% fail critical-severity checks, while 69% of firewall rules are unused, 45% lack an owner or documentation and, 17% are redundant or shadowed. The integration is designed to complement Palo Alto Networks Strata Cloud Manager and Palo Alto Networks enforcement capabilities. Palo Alto Networks products remain responsible for security policy deployment and enforcement. FireMon provides policy governance, risk analysis, and operational workflows customers can use to validate policy effectiveness across complex environments, including organizations managing Palo Alto Networks Panorama and Palo Alto Networks Strata Cloud Manager in parallel. Policy lifecycle management “Firewalls have always been central to reducing an organization’s attack surface, but a firewall is only as effective as the policy it enforces,” said Jody Brazil, CEO of FireMon. “As artificial intelligence compresses the time between vulnerability discovery and exploitation, security teams need continuous policy control and policy lifecycle management across the environments that protect the business. This integration extends FireMon’s policy control plane to Palo Alto Networks Strata Cloud Manager to help joint customers reduce exposure, strengthen Zero Trust policy governance and maintain operational control across hybrid networks.” Palo Alto Networks is the global AI cybersecurity pioneer. The Palo Alto Networks Technology Partner Program delivers a comprehensive portfolio of integrated solutions that help businesses close security gaps, reduce latency, and improve the end-user experience.
FireMon, the foremost network security and firewall policy management company, announced the general availability of its integration with Illumio, giving organizations operational control over both microsegmentation and traditional firewall policies from a single platform. Zero Trust adoption risks lie at the point of implementation. Policy conflicts between segmentation and firewall rules stall deployments, leaving even strong designs incomplete and unenforced. These conflicts are not visibility gaps, but governance gaps caused by disconnected policy models across enforcement domains. FireMon solves this problem by unifying Illumio policies and firewall rules in a single place, enabling teams to detect and resolve conflicts automatically and to move Zero Trust initiatives from prototype to production. Strong security and compliance “Effective Zero Trust governance depends on consistent compliance and unified policy management across all enforcement points,” said Todd Palmer, SVP of Global Partner Sales and Alliances at Illumio. “FireMon’s integration with the Illumio Breach Containment Platform enables the first truly unified approach to analyzing and managing both microsegmentation and firewall policies. Together, the platforms provide stronger security and compliance, streamline reporting, and enable transparent auditing, accelerating organizations’ Zero Trust maturity.” Operational management Unlike point integrations that stop at application visibility, the FireMon–Illumio integration delivers true operational management. By consolidating policy governance and changing workflows, FireMon bridges the gap between network and workload segmentation, eliminating blind spots, reducing manual review, and ensuring consistent enforcement across hybrid environments. The result is a Zero Trust architecture that finally works as designed enabling enterprises to successfully adopt zero trust by bringing policy consistency, visibility, and control. Application driven connectivity “Application discovery has real limits in dynamic, non-deterministic environments,” said Jody Brazil, CEO and cofounder of FireMon. “As workloads move and identities change across cloud and on-prem, discovery alone can’t keep up. That’s why intent-based approaches like Illumio are so effective. Our integration brings that intent together with unified policy governance, giving organizations a practical way to support application-driven connectivity while managing enterprise complexity across hybrid environments.” Steps to evaluate the integration Organizations can begin evaluating the FireMon–Illumio integration immediately through the following options: Explore the FireMon–Illumio Zero Trust partnership Watch FireMon CEO Jody Brazil and Zero Trust creator John Kindervag explain the integration Attend an upcoming joint FireMon–Illumio product webinar See the integrated solution in a video demonstration
FireMon, the pioneering network security and firewall policy management company, detailed expanded support for Zero Trust microsegmentation across hybrid environments, including a deeper integration with Illumio and continued coverage for VMware NSX and Zscaler. By normalizing, analyzing, and continuously validating segmentation intent across network, virtual, and host enforcement points, FireMon helps security teams operationalize Zero Trust at enterprise scale. Firewall governance report “The future isn’t more consoles,” said Jody Brazil, CEO of FireMon. “It’s one policy playbook that proves control efficacy every day and the evidence to back it up.” Organizations using FireMon to unify segmentation and firewall governance report measurable outcomes, including up to a 90% reduction in compliance reporting time through consolidated policy data and faster validation and change reviews across the hybrid networks. They also eliminate blind spots between virtual, host, and network enforcement points, strengthening segmentation consistency, and overall control assurance. “Zero Trust only works when segmentation policies are governed and consistent across every layer,” Brazil added. “We’re giving teams one place to validate intent, spot drift, prove compliance, maintain least access, whether the control lives on a firewall, a fabric, or the host.” Making Zero Trust real with microsegmentation Regulators and industry groups are pushing beyond periodic audits toward continuous proof that controls work every day. While Zero Trust has become mainstream, many organizations still struggle to operationalize segmentation due to siloed policies and governance blind spots. Fresh telemetry from FireMon Insights found 60% of enterprise firewalls fail high-severity compliance checks on first evaluation and 34% fail at critical levels — failures that point to process and ownership issues, not just isolated misconfigurations. Unifying segmentation and firewall policy under one governance model directly addresses this challenge, allowing enterprises to prove control efficacy across every enforcement plane. Illumio label-based policies “The Illumio Platform is the enforcement engine enterprises rely on to stop lateral movement and contain breaches. As organizations scale segmentation across hybrid environments, they need governance that aligns host-level intent with broader network policy." "Our collaboration with FireMon enables customers to extend Illumio label-based policies into unified governance workflows, ensuring segmentation remains consistent, validated, and continuously enforced, strengthening breach containment,” Sarab Matharu, Director, Tech Alliances at Illumio. How host-level segmentation from Illumio Matharu added: “Our collaboration with Firemon gives organizations the visibility and governance they need to connect segmentation intent with enterprise-wide policy assurance.” This integration highlights how host-level segmentation from Illumio and centralized policy governance from FireMon combine to deliver continuous Zero Trust validation, from the data center to the endpoint. What’s new Deeper Illumio integration (host-based Zero Trust Segmentation). FireMon ingests Illumio’s label-driven policies alongside firewall and cloud controls to: Optimize Illumio-defined policies to achieve least access, detect inconsistencies between network and host policies, validate segmentation against frameworks (e.g., PCI, NIST, CIS), and automate recertification and evidence collection across enforcement planes. NSX distributed firewall groups The result is a single governance workflow that keeps segmentation intent aligned from the data center to the cloud to the endpoint. VMware NSX microsegmentation, modeled in context. FireMon visualizes NSX distributed firewall groups and rules within the same hybrid topology used for physical firewalls, enabling conflict detection across virtual and physical layers, change simulation before deployment, and automated compliance checks for NSX-managed zones. FireMon has long supported NSX policy orchestration and visibility. Zscaler cloud-delivered Zero Trust, governed centrally. By integrating Zscaler policy data, FireMon extends policy visibility, risk analysis, and reporting to SASE and firewall-as-a-service environments, aligning user-to-app paths with on-prem and cloud controls, and reducing misconfiguration risk before changes ship. Operationalizing Zero Trust with FireMon Unified topology and policy normalization. See how access is permitted or denied at the network, virtual, and host layers in one console; analyze multi-vendor rules with a consistent schema for faster troubleshooting and safer change. Continuous compliance, not audit season. Run automated checks against control baselines, track exceptions, and measure time-to-remediate across firewalls, NSX segments, Zscaler policies, and Illumio labels with evidence on demand. Change simulation and policy optimization. Design and verify segmentation and access changes before deployment; flag redundant, shadowed, or overly permissive rules to shrink attack paths and simplify audits. Scale across the environment. FireMon supports 120+ firewall and cloud platforms, so segmentation governance lands where teams already manage policy. Built for hybrid reality The integrations align with how operators run modern environments: Illumio for label-driven, host-level containment to cut lateral movement, VMware NSX for distributed microsegmentation in virtualized data centers, and Zscaler for cloud-delivered enforcement at user and app edges, all governed through FireMon’s policy management workflows.