Managed Web Application Firewall Service

Protect your Web-Based Applications

The StillSecure Web Application Firewall (WAF) service protects your Web-based applications from attack by monitoring input, output and access attempts, and blocking any malicious activity. With the explosion of Web-based attacks, Web application firewalls have become a must-have for any organization relying on their website, Web applications, or e-commerce applications. StillSecure’s WAF service brings you into compliance with the Web application security guidelines specified in the PCI Data Security Standard and by OWASP.

When attacks are detected, the Web Application Firewall alerts analysts in our Security Operations Centers (SOCs), where blocks are immediately initiated against the originating IP address. The service protects against the full range of application vulnerabilities including cross-site scripting (XSS), injection flaws (SQL, LDAP, Xpath and others), malicious file execution, insecure direct object references, cross-site request forgery (CSRF), information leakage and improper error handling, broken authentications and session management, insecure cryptographic storage, insecure communications, and failure to restrict URL access.

Features

Protect Valuable Web-Based Resources
  • Inspects Web page content, such as HTML, Dynamic HTML, and CSS, along with the underlying protocols such as HTTP and HTTPS
  • Inspects Web services messages including SOAP and XML, both document– and PRC-oriented models
  • Satisfies PCI DSS 2.0 requirements 6.6, 6.5, OWASP top ten, 10.5.4, & configuration change process
  • Monitors both clear text and SSL encrypted traffic
  • Supports both whitelist and blacklist source IP address security models
  • Supports customer-specific rule sets
  • Protects multiple Web application servers simultaneously
  • Includes automatic rule updates
  • Deployment Options:
    • In-line and out-of-band: the Web application firewall acts as a reverse proxy for the application traffic
    • Virtual deployment: the Web application firewall can be used in multiple virtual environments, such as VMware and Xen

Contact us today for a free consultation

To learn more about StillSecure Managed Web App Firewall or schedule a demonstration, please call
(303) 381-3830 or email us at sales@stillsecure.com.