What is our primary use case?
We have utilized Cisco Secure Firewalls for both perimeter defense and internal segmentation purposes. Our use cases include implementing secure gateways between IT and OT networks within manufacturing environments, where divisions require separation for operational purposes. This ensures that internal OT networks, crucial for manufacturing pumps, remain distinct and secure from IT networks. It plays a pivotal role in maintaining the integrity and security of these segregated networks.
How has it helped my organization?
The Cisco Management Center provides centralized management for a variety of Secure devices and policies. Typically, Cisco's centralized management is facilitated through the DNA Center platform, offering different flavors of DNA solutions. Although Cisco Prime has been utilized to some extent in the past, the predominant method for centralized management revolves around Cisco DNA.
In our organization, we utilize Cisco Firewalls along with Fortinet for monitoring and analyzing work traffic. Cisco continues to maintain its position as one of the top leaders in the industry. With a strong lineup of products, Cisco's brand reputation in-network services and equipment is widely accepted and trusted. Selling Cisco products is generally easier due to their established name and reputation.
The Cisco Secure Firewall Management Center offers numerous benefits, including the stability and quality of its products, which feature almost all the latest market-leading features. This ensures a long product life cycle, reducing the need for frequent tech refreshes. Cisco's robust lifecycle management and clear roadmaps enable customers to plan refreshes and replacements without unexpected downtime, contributing significantly to operational efficiency. Moreover, Cisco's exceptional support minimizes customer losses due to unplanned downtime, while ensuring smooth transitions and upgrades.
Working with a single vendor significantly reduces the complexity of future security operations. This approach eliminates situations where products from different vendors fail to communicate effectively, leading to disjointed management and increased reliance on technical support for troubleshooting and break-fix tasks.
Cisco Secure products, particularly the Cisco Secure Firewall, offer robust defense mechanisms against denial-of-service and distributed denial-of-service attacks. In many instances, despite the occurrence of such attacks targeting customer networks, the impact on operations was significantly minimized due to the presence of Cisco Secure Firewall at the perimeter. While these attacks were detected, their disruptive effects were mitigated effectively, highlighting the critical role of the Cisco Secure Firewall in safeguarding customer operations.
What is most valuable?
One of the most valuable features of Cisco Secure Firewalls is their seamless integration with other Cisco products. This integration streamlines the process of creating policies and correlation rules, making management more efficient through a centralized management and monitoring portal. This ease of integration is particularly beneficial for networking admins in mid to large enterprises, where Cisco equipment is predominantly used.
What needs improvement?
Areas for improvement include pricing points and the range of products available at any given time. Cisco could potentially address these aspects more effectively to better accommodate the needs of customers across various tiers and levels.
For how long have I used the solution?
We have been using it for approximately twenty-four years.
What do I think about the stability of the solution?
In terms of stability, conducting a pilot test before integration proves invaluable as it ensures thorough testing of policies and rule definitions prior to production deployment. Once this testing phase is completed and the product is integrated into the environment, it typically exhibits high stability. Challenges may arise occasionally due to software bugs in releases or the need to integrate legacy devices. In such instances, assistance from Cisco technical support is sought to address these challenges effectively.
What do I think about the scalability of the solution?
The solution is highly scalable.
How are customer service and support?
Cisco's technical support stands out as the key differentiator among other product brands in the market. Cisco consistently ranks as the top choice for technical support, thanks to the expertise of its engineers and the promptness with which defective materials are replaced, provided that all warranties and contracts are in place. It continues to be top-notch and arguably the best in the industry, providing valuable assistance whenever needed.
How was the initial setup?
The initial setup is typically straightforward, especially for those familiar with Cisco's command lines, menus, and layouts, which are widely recognized in the industry. Given our extensive experience with Cisco over the years, there's minimal learning curve for us. However, newcomers may find it slightly challenging initially.
What about the implementation team?
The first step of the development process involves assessing the network topology and design to ensure proper placement and sizing of the solution. Once these aspects are addressed, integrating the product becomes more straightforward. Typically, this involves taking inventory followed by setting up a test or pilot environment to verify connectivity and ensure that applied policies won't disrupt operations. After successfully integrating all implementation details, the solution is deployed in the production environment. This sequential approach helps to ensure a smooth deployment process.
What was our ROI?
Despite potentially higher upfront expenses, the overall operational costs are significantly reduced due to its efficiency. Consequently, the return on investment is notably faster or greater compared to competing products from other brands.
What's my experience with pricing, setup cost, and licensing?
One of the advantages of Cisco is its range of flexible licensing options. Whether customers are seeking a lighter version or a comprehensive feature set, Cisco offers various licensing tiers to accommodate different use cases. This versatility ensures that customers can tailor their solutions to their specific needs without overcommitting. Additionally, since most features can be enabled or disabled through licensing, customers have the flexibility to activate additional functionalities as needed without requiring a complete replacement of their existing setup.
What other advice do I have?
To date, we've successfully sold these products to approximately 125 customers. The attrition rate away from Cisco has been minimal, with only around 10% to 15% of customers opting for alternatives.
I highly recommend Cisco as the market leader. Whatever solution a customer is seeking from Cisco, the company undoubtedly possesses the capabilities and technical expertise to provide the right solution and seamlessly integrate it into any complex environment. However, it's crucial to carefully size and plan the solution during the initial stages to avoid any misconfigurations or introduction of unsuitable products into the infrastructure. Overall, I would rate it nine out of ten.
Which deployment model are you using for this solution?
On-premises