TrustRadius: an HG Insights company

Barracuda Application Protection

Score8.5 out of 10

3 Reviews and Ratings

What is Barracuda Application Protection?

Barracuda Application Protection is a cloud-delivered application security service that includes full-spectrum L3-L7 DDoS protection (volumetric and application) to protect applications from disruptions and ensure nonstop availability.

Categories & Use Cases

Media

1 / 3

Decide in just 5 minutes

Use Cases and Deployment Scope

I used to work on this technology for lot of customers and its been owned from numerous health care institutions to financial sectors and it provides a lot of compliance features related to the below security modules

OWASP Top 10 threats

DDoS attacks

Bot attacks

Zero-day vulnerabilities

Credential stuffing

API abuse

Pros

  • Client Fingerprinting
  • Risk Scoring
  • Bot idenitification
  • Mitigation of false positives
  • Easy to deploy in seconds
  • Very user friendly

Cons

  • More bot categories should be integrated
  • URLs profiles should be user friendly the one feature which is bit complicated
  • client side integrity should include more mitigation techniques
  • there should a feature where you can achieve out of the box requirements means the feature which is not available can be included by writing a code

Return on Investment

  • Implementing Barracuda Application Protection has had a measurable and strategic impact on our overall business objectives. Within the first 6 months of deployment, I saw a 53% reduction in security incidents affecting the web applications, which directly translated into fewer service interruptions and less time spent on incident response
  • Cloud migration was so fast and give a head start and provides a competitive advantage in deploying new services faster than anticipated.

Usability

Other Software Used

Palo Alto Networks Next-Generation Firewalls - PA Series, Fortinet FortiGate, HPE Juniper Access Points

Exceptional piece of Security in a Virtual and Remote World

Use Cases and Deployment Scope

It's being used for our mobile apps we used and for the remote users we have. We used this as the secure gateway to protect the apps' integrity as well as the data going from the hospital campus to the users remotely as well as the ones in-house.

Pros

  • Provides full-spectrum security DOD-level protection; which is a big help for us for security of our data.
  • Ease of setup on her firewall for security for VPN users.
  • Configuration is easy to do and use for our security team with its features and pictures of instruction.

Cons

  • More innovative solutions for sniffing more on the network.
  • Have the advanced ability to close off ports when they could be getting tested from hackers for intrusion.

Most Important Features

  • DOD-level protection.
  • Its readiness to secure our data and network lines.
  • Built-in templates are easy to use and good to follow to make them our own to work how we do things.

Return on Investment

  • Has been good in lessening threats from the outside.
  • Ease of use for our security team to be able to use templates and configure to our specs.
  • Being able to set as many rules as you like is a big plus.

Other Software Used

FireEye Endpoint Security, Trend Micro Apex One, Cisco Secure Access by Duo

Barracuda WAF as a service perfect for a basic environment

Use Cases and Deployment Scope

Security protection to several web applications hosted in AWS.

We were looking to deploy a WAF out of the box with not to much maintenance and that will work out if the box.

One of the key Elements also was the WAF support for load balancing as we were looking to distribute the load of the web applications.

Pros

  • Automated policies
  • Easy to use
  • Identification of known attacks
  • Straight forward configuration

Cons

  • User interface
  • Slow response

Most Important Features

  • Easy to deploy
  • Standard policies
  • Easy to create rules

Return on Investment

  • Positive - quick deployment
  • Positive - scalable for simple environments
  • Negative - difficult to support complex web app environments

Alternatives Considered

AWS WAF, Sucuri and Cloudflare