Site Search

Cato Networks

Cato Networks

Cato SASE Cloud Security Overview

Cato SASE Cloud Security Overview

Cato SASE Cloud's cybersecurity measures are centrally managed through global PoPs. There's no need for tedious vulnerability checks or patching of network and security devices. Measures against ransomware such as Emotet are implemented on the cloud side within days or even hours, and we offer enterprise-grade cybersecurity measures and monitoring services.

No additional hardware or construction work is required even if network traffic increases. The throughput to the cloud PoP can be connected at 10 Gbps. Security measures for overseas bases can also be centrally managed, making it effective against supply chain attacks.
Since network and security vendors can be consolidated into one company, response times are also shorter.

Our security services include Next generation firewall that supports L7 applications, a secure web gateway (SWG) that performs URL filtering, TLS inspection that combines and inspects traffic, the use of global IPs for each PoP to strengthen cloud security, next-generation anti-malware (NGAM *) that uses machine learning to respond to zero-day attacks, a managed intrusion prevention system (IPS *) that defends against unauthorized communications, cloud access security measures (CASB *) to combat shadow IT, remote browser isolation (RBI *) that isolates malicious sites, endpoint protection functions (EPP *), a Box * that inspects files, and IoT/OT security * that visualizes communications from factories, cameras, etc., all provided as a software stack.

Cato Networks provides XOps (Xtended Operation Service) *, a dedicated team that protects networks and detects compromised endpoints, and MDR *, a manned monitoring service. Macnica offers SoC services. This enables companies without dedicated security or network personnel to quickly identify and address problems.

※別途オプション

Universal ZTNA client for telework, remote work, and hybrid work

Cybersecurity measures for remote work have also become urgent. Cato SASE Cloud also includes VPN servers in global PoPs, so it can be centrally managed, eliminating the need for additional hardware and patching, allowing you to take measures for remote work with peace of mind. ZTNA client software supports multiple operating systems such as Windows, macOS, iPhone, Android, and Linux, so it can support a wide range of users' work styles. In addition, even devices without a ZTNA client can access the internal system from a web browser. The ZTNA client also supports IDaaS such as Okta and EntraID, so you can log in via SSO and multi-factor authentication. Access from the terminal can also be enhanced. You can check your login status from the Cato SASE Cloud admin.

Universal ZTNA client for telework, remote work, and hybrid work

SD-WAN and Cato Global Backbone

With over 85 PoPs (Points of Presence) deployed worldwide, the PoPs are connected via a high-speed backbone dedicated to the CATO Cloud with guaranteed SLAs, and communications are optimized for each application.

We have four PoPs in Tokyo, two in Osaka, and one in Sapporo in Japan, and provide our own cloud service that implements redundancy measures and automatic repair functions in multiple data centers.

Cato Cloud constantly calculates the shortest route for mobile users, each location, data center, and cloud service, automatically connecting them to each PoP. International communication line costs are included in Cato Cloud, resulting in significant reductions in communication costs and the optimization and stabilization of communications.

SD-WAN and Cato Global Backbone

Cato SASE Cloud configuration

The Cato SASE cloud's cybersecurity measures and network optimization functions are implemented at PoPs (Points of Presence) located in various locations. PoPs are not virtual appliances in the public cloud, but are fully cloud-native, consisting of an all-software stack and multiple locations. This allows them to scale out even in the event of sudden digital application overloads or user surges, without impacting business. Each PoP operates with a 99.999% uptime SLA and is connected by Cato Networks' full-mesh private backbone, optimizing cloud communications globally and improving business efficiency. The PoP operating status is published on the website.

Cato SASE Cloud configuration

Examples of various industries and benefits that use Cato SASE Cloud

1. Global manufacturing industry
assignment:
Many manufacturing companies have established overseas bases
As digital transformation and the shift to the cloud progress, problems with communication delays and line costs have arisen.
The challenges are exacerbated by connections to Japan, China, Vietnam and Latin America.
Frequent cyber attacks from overseas bases and affiliated companies
Cato Cloud benefits:
Cato's global full-mesh backbone optimizes east-west communications and improves user experience.
We have multiple non-stop PoPs deployed in 90 locations around the world, including China.
Achieve high-speed edge cloud services and unified security policies.
Identifying IoT/OT devices and managing them on a dedicated dashboard
2. Multi-location retailers
assignment:
Installing Wi-Fi in stores and improving security for ordering terminals
DX order processing network delays and service outages
Protection of credit card information at each store
Supporting construction work for store openings and relocations
Costs for dedicated lines between stores are high
Cato Cloud benefits:
Locally selectable internet connection
Centralized management in the cloud
Strengthening vulnerability countermeasures at local stores
Quickly build a secure network anywhere
Automatically selects the closest PoP to the site and optimizes communication
Free choice of last-mile lines at store locations
3. Medical and pharmaceutical industry
assignment:
Handles confidential personal information such as electronic medical records.
Manage distributed locations such as clinics, health centers, and telehealth visits.
Protecting confidential information about new drugs.
Ransomware shuts down medical systems
Cato Cloud benefits:
Compliance with HIPAA and SOC type 3
Optimizing and connecting clinics nationwide
Protection from ransomware
Optimizing real-time communication of life-saving data
Simple system improves operational efficiency
Improved patient long-term utilization through reduced system costs.
4. Financial industry
assignment:
The financial industry is a prime target for cybersecurity.
The risk of valuable data such as personal information and financial assets being stolen.
Data exploitation can lead to companies losing trust.
Cato Cloud benefits:
Enjoy cutting-edge security features such as AI, machine learning, and behavioral detection in the cloud
The same functionality is available from anywhere in the world.
No need to apply vulnerability patches.
Manned monitoring services such as XOPs, MDR, and SOC.
Protect your entire corporate network 24 hours a day, 365 days a year.
Compliance with PCI-DSS, SOC Type3, GDPR, etc.
5. Real estate industry
assignment:
Real estate and facility management is distributed across many locations.
Handling line construction and security measures associated with the opening of a temporary model room and management office.
Because the store handles high-value products, strict information management is required.
Management of local devices and measures to prevent customer lists from being taken out
Cato Cloud benefits:
Manage both remote work and the company with the same security policy regardless of location.
Use CASB and DLP to prevent confidential information leaks due to internal crimes.
It is possible to control staff routes, reducing the risk of information leaks.
Security protection for reception terminals

Comprehensive Cato Networks-related services provided by Macnica

classification service Support content
Implementation Phase
Consulting Zero Trust
consulting
We can provide support in all phases of zero trust, from investigating the extent to which the elements required for zero trust have been implemented, to formulating a mid- to long-term roadmap based on the results of the investigation, to providing support for system implementation and operation.
Desk study Introduction consultation We will provide information to confirm whether your requirements can be met with Cato functions and whether they are compatible with your existing network configuration.
PoC PoC Support We can provide a free trial license.
In addition, our system engineers will provide support for creating plans for implementing PoC, support for considering network configuration for PoC, lectures on how to use Cato, and QA.
introduction Construction work and installation support We undertake the process from requirement definition to design and construction (including Socket installation) and migration work for the introduction of Cato.
operation
technical support Technical Support (Standard) Technical support for resellers is included as standard with the license.
Support will be provided by Cato Distinguished Support Provider certified personnel.
We are available from 9am to 5pm on weekdays.
Advanced Support In addition to standard support, this plan also includes 24/7 support and monthly regular meetings/on-call support.
There are also options to support end users directly.
Integrated SOC, Incident Response Cato Cloud monitoring Based on Cato's security alerts and events, the SOC analyst/monitoring team will conduct 24365 monitoring and correlation analysis using the integrated log analysis platform. If the analyst determines that there is a threat, the customer will be notified.
Integrated Monitoring In addition to Cato monitoring, EDR and authentication-related products are monitored in an integrated manner, and the SOC analyst/monitoring team monitors 24 hours a day, 365 days a year using an integrated log analysis platform.
Incident Response
Initial support
When a cyber attack occurs, we will assist you with forensic investigation, neutralizing the attack, and preventing the damage from spreading. By preparing a contact point in advance before an incident occurs, we can smoothly implement the initial incident response and help prevent the damage from spreading.
Regular Meeting/Security Trend Update We hold regular meetings to review the detection status, exchange opinions on how to improve monitoring accuracy, and provide information on the latest security threats.
*Applicable only to Cato monitoring or integrated monitoring contract customers
Log storage Logs imported into the SOC's integrated log analysis platform can be stored for up to one year.
maintenance On-site Maintenance This is an on-site maintenance service for customers who have purchased the service.
This is a service that dispatches a maintenance technician in the event of a hardware failure and replaces the faulty machine with a maintenance machine.
You can choose to contact us weekdays from 9am to 5pm or by calling 24365.
optimisation Accompanying support service This is a service where Macnica technical staff provide dedicated support to help you optimize your use of Cato.
Based on our extensive knowledge and experience, we will maximize the effectiveness of your implementation through regular discussions and configuration suggestions.
document FAQ We have published many frequently asked questions and their answers about Cato. We also regularly update case studies and seminar information.
https://cato-faq.macnica.co.jp/
Support Site By registering, you can receive and utilize the latest information necessary for operation, such as product manuals and configuration guides. You can also make inquiries via the web form.
Support site application
User Community User Group We provide a forum for end users of Cato to participate and exchange information through the latest Cato roadmap, case studies, and discussions.
Held once a year in Tokyo and Osaka, partner user meetings
Event Report