Posts tagged ‘Zero Trust’

Compliance Sep 29, 2026

How Versa Sovereign SASE Answers the EU Technological Sovereignty Package

Versa Sovereign SASE answers the EU Technological Sovereignty Package by localizing all four operational planes, data, control, management, and jurisdiction, under EU law, rather than stopping at data residency.

Read More
Industry Insights Sep 24, 2026

Federal Zero Trust Maturity: Aligning Mission, Security, and Cost

Federal zero trust maturity now depends on more than security controls. Agencies must also cut the cost of fragmented network and security stacks and keep citizen services running. This post explains how device consolidation, a software-defined WAN, and careful sequencing let agencies meet all three goals together.

Read More
Intelligent Edge Sep 22, 2026

The Flat Network Is the Last Unsegmented Zone in the Enterprise

Zero Trust programs have largely completed two phases, remote access and the WAN edge, while the physical campus network remains outside continuous identity-based validation. This post examines why flat and coarsely segmented LANs persist, why VLANs and port authentication do not constitute a segmentation strategy, and how Versa Secure SD-LAN makes segmentation a property of the fabric by enforcing Zero Trust and microsegmentation at the LAN edge.

Read More
Product & Engineering Sep 17, 2026

The Essential Planes Every Sovereign SASE Vendor Must Support

“Sovereign SASE” has become a loosely used claim. This post breaks genuine sovereignty into four architectural planes — data, control, management, and jurisdiction — and shows how Versa Sovereign SASE, built on the VersaONE platform, is architected to satisfy all four, plus the questions that pressure-test any vendor’s claim.

Read More
AI Thought Leadership Sep 15, 2026

The Trust Layer: How Versa Delivers AI-Driven NetOps with Explainability and Zero Trust Guardrails

AI in NetOps is transitioning from passive alerting to active decision support and execution, but adoption depends on whether engineers can trust it. Learn how Versa’s single-OS platform, unified data lake, Versa Verbo Copilot, and patent-pending Zero Trust MCP Server deliver AI-driven NetOps with explainability and governance built in.

Read More
Security Sep 10, 2026

The New OWASP GenAI Top 10 and Why Network Security Matters

Almost every risk in the 2026 OWASP GenAI Top 10 leaves observable artifacts at the network layer. This post walks through all ten categories, real-world incidents behind each one, and the specific SASE controls (SWG, CASB, DLP, ZTNA, RBI) that catch what app-layer guardrails miss.

Read More
Pervasive Security Sep 1, 2026

Pervasive Security and Why the AI Era Needs a New Security Model

Attackers now exploit in hours while breaches take months to contain. Fragmented tools can’t close that gap. Here’s the case for Pervasive Security.

Read More
AI Thought Leadership Aug 27, 2026

Beyond the Console: MCP and the New Operating Model for Enterprise Infrastructure

Enterprises are converging on the Model Context Protocol (MCP) to connect AI agents to networking and security infrastructure. This piece looks at why an enterprise routing and governance layer, not just vendor-specific MCP servers, is becoming essential for provisioning, troubleshooting, and threat hunting across a multi-vendor stack.

Read More
Industry Insights Aug 25, 2026

Your Next Switch Refresh Is an Architecture Decision, Not a Purchase Order

Campus switching estates turn over every five to seven years, and the refresh is usually run as a procurement exercise rather than an architectural one. This post examines the operational costs that sit outside the hardware line item, explains why software-defined networking largely stopped at the WAN edge, and shows how Versa Secure SD-LAN extends one fabric and one operating system into the LAN so that the refresh becomes the moment the operating model changes.

Read More
Industry Insights Aug 6, 2026

Beyond Integration: Why a Truly Unified Branch Needs Intelligent Edge, Pervasive Security, and AI-Native Operations

Piecemeal SASE creates security debt. See how Versa unifies pervasive security, intelligent edge, and AI-native operations on one platform.

Read More

My WFH Story with Versa Secure SD-WAN (Part 3)

Robert McBride
By Robert McBride
Sales Engineer
April 13, 2020

Part 3 of a 3 part series (read Part 1 and Part 2) So, with the default configuration with minor LAN and NGFW customizations, what was I capable of using now at my home office? Always on VPN to corporate whether I was wired or wireless at my house Multi-link WAN with LTE providing me backup services to have 99.99% uptime for all my devices Prioritize my voice, video conferencing, O365, SFDC, Virtualization applications over Netflix, Hulu, PlayStation Network, Google Play Music, Spotify and other social media-oriented applications Secured my Internet with not only a NGFW but URL reputation and…

My WFH Story with Versa Secure SD-WAN (Part 2)

Robert McBride
By Robert McBride
Sales Engineer
April 9, 2020

Part 2 of a 3 part series (read part 1 and part 3) Now, my journey. I requested a Versa Cloud Services Gateway appliance, specifically the CSG750-WLA (that’s our 750 series appliance with an integrated Wi-Fi AP (Access Point) and an integrated cellular modem for LTE). I submitted a request to our Versa Titan operations team [sent an internal PO] to create my organization and provide me with licenses for 4 sites – each license was the Versa Titan CSG750-Advanced Security software license. The Advanced security license provides routing, SD-WAN, NGFW, URL Filtering, AV and NG-IPS [for those who are…

My WFH Story with Versa Secure SD-WAN (Part 1)

Robert McBride
By Robert McBride
Sales Engineer
April 8, 2020

Part 1 of a 3 part series (read part 2 and part 3) Throughout my entire career of 20+ years I predominately have been a work-from-home employee through various roles I have held. As part of #WFH the need for secure and either on-demand or constant connectivity to corporate resources is a hard requirement in order to do my job effectively. Over the last 20+ years how, where and what I need access to have changed quite dramatically. In summary a lot of these resources are now off-net [ e.g. email, SharePoint, Skype, CRM, PRM, collaboration and communication applications [conferencing…

Accelerating Digital Transformation with Secure SD-WAN

The Versa Team
By The Versa Team
SASE Technical Professionals
April 2, 2020

Fiserv is the biggest financial company you may never have heard of. Every non-cash financial transaction that you conduct touches their network. Security is paramount for you—the consumer; for Fiserv’s clients—financial institutions, point-of-sale and payment industries in more than 100 countries; and for Fiserv’s global corporate network. Look at the staggering numbers on the right! If a company this size can successfully deploy a Secure SD-WAN, then the early adopter phase must be long over. It is. Mainstream companies like Fiserv are now deploying SD-WAN technology to manage—or survive—this era of rapid digital transformation. Which is not necessarily super-disruptive: SD-WAN…

Enterprises Need to Keep Edge Networks Safe

The Versa Team
By The Versa Team
SASE Technical Professionals
October 6, 2019

With enterprises investing heavily to transform themselves digitally, the threat environment has in many respects intensified and diversified. Enterprises pursuing a hybrid cloud or multi-cloud strategy, or relying on a software-as-a-service model to give remote workers access to critical applications, perhaps via a mobile device, will be potentially exposing themselves to new threat vectors that must be built into an already long list of security considerations for WAN edge optimization. As enterprises look for ways to accelerate their digital transformation journeys and to achieve greater business agility, they must match that by transforming their wide-area network to be more software-driven….

Mitigating Sophisticated Security Threats at the WAN Edge

The Versa Team
By The Versa Team
SASE Technical Professionals
March 20, 2019

According to several industry surveys, it takes the typical enterprise over 200 days to discover a security breach, such as undisclosed web vulnerabilities or spearfishing for email credentials, according to the 2018 Cost of a Data Breach Study: Global Overview from IBM Security and Ponemon Institute. The study calculated that the global average cost of a data breach is $3.86 million, up 6.4% from last year. The average cost, globally, for each lost or stolen record containing sensitive and confidential information is also up from last year, landing at $148 per record or a 4.8% increase from 2017. Although the…

Internal Network Exposure via UPnP NAT Injection

Winny Thomas
By Winny Thomas
Principal Security Architect
December 5, 2018

Universal Plug-n-Play – (UPnP) is a suite of protocols that enables a device to discover other devices on a network, configure itself to operate in the network, and advertise its services. This allows a device to locate routers, printers and other resources on a network. UPnP runs on UDP port 1900 and communicates using SOAP messages over HTTP. The actual configuration and management interface are implemented using a SOAP-based HTTP service running over a dynamically allocated TCP port. The UPnP protocol allows management of aspects of a device’s operation to extend support by the protocol implementation on the device and its…

Lateral Movement – Definition, Causes & Protection

Winny Thomas
By Winny Thomas
Principal Security Architect
October 5, 2018

Lateral Movement Definition: Lateral movement is a technique used by cyber attackers to infiltrate and move through a network with the intent of obtaining secure data. The Cause The term “Lateral Movement” has been around for a little over four years and was in the news when ransomware like WannaCry and APT’s like APT28 and APT29 used lateral movement techniques.  Most often an attacker may not have direct access to a machine or resource on the internal network, which the attacker considers a prized trophy. The prized trophy may be the domain controller, a machine hosting confidential information, or the…

Limit Impact of Data Breaches with SD-WAN Segmentation

The Versa Team
By The Versa Team
SASE Technical Professionals
August 15, 2018

The 2018 Data Breach Investigations Report (DBIR) compiled by Verizon is loaded with cloak and dagger cyber events conducted by both known and unknown bad actors and mechanisms. Verizon identified 53,000-plus incidents and 2,200 breaches in only 12 months, suggesting an information parallel universe in which an uneven playing field exists whereby the bad guys and rouge bots consistently probe from the outside. Here are some of the key findings in terms of actual breaches: 73 percent were perpetrated by external forces 50 percent were carried out by organized crime groups 48 percent were due to hacking; 30 percent from…

Security Breaches are often Network Breaches

The Versa Team
By The Versa Team
SASE Technical Professionals
August 6, 2018

Once again, recently we heard about an enterprise that succumbed to a major security breach. Shipping giant COSCO lost email and IP phone connectivity throughout their entire US network. And without finding the cause, the company shut down networks within other regions. This example, along with countless others, solidifies the point that distributed networks and security are inherently symbiotic. COSCO says the incident was a network breakdown that led to the ransomware infection. While some are arguing it was the network, others say it was a Malware security breach. The COSCO event was not only a network breakdown, it was…


Recent Posts













Gartner Research Report

2026 Gartner® Magic Quadrant™ for SASE Platforms

Versa has for the fourth consecutive year been recognized in the 2026 Gartner Magic Quadrant for SASE Platforms1 and is one of only 12 vendors that met the criteria for inclusion based on the analysts’ evaluation of the VersaONE Universal SASE Platform.