TrustRadius: an HG Insights company

Cisco Multicloud Defense

Score8.7 out of 10

28 Reviews and Ratings

What is Cisco Multicloud Defense?

A solution to simplify security and gain multidirectional protection across any public or private cloud to block inbound attacks, lateral movement, and data exfiltration using a single solution. Cisco Multicloud Defense protects all cloud environments using a single software-as-a-service (SaaS) control plane, eliminating inefficient, complex, and costly point solutions.

Top Performing Features

  • Security Incident Response

    Establishes protocols and procedures for promptly responding to security incidents, mitigating their impact, and conducting forensic investigations.

    Category average: 7.2

  • Compliance and Auditing

    Supports compliance with industry regulations and standards, and offers audit logs and reports to meet regulatory requirements and facilitate security audits.

    Category average: 8.4

  • Secure Data Transfer

    Provides secure methods for transferring data to and from the cloud, such as encrypted protocols or virtual private networks (VPNs).

    Category average: 8.1

Areas for Improvement

  • Regular Vulnerability Management

    Conducts regular vulnerability assessments and scans to identify and remediate security vulnerabilities within the cloud infrastructure.

    Category average: 7.8

  • Intrusion Detection and Prevention:

    Implements systems and technologies to detect and prevent unauthorized access or intrusions into cloud resources or networks.

    Category average: 7.8

  • Identity and Access Management

    Offers centralized management of user identities, roles, and permissions to streamline access control and enforce least privilege principles.

    Category average: 7.5

Must Use Product of Cisco Security

Use Cases and Deployment Scope

We use 1000 plus Cisco Multicloud Defense gateways in our environment. This product solved a lot of problems we had with the previous product. Few examples are limitations on automating the gateway deployment, Policy push Vs Policy pull, a lot of time spent on upgrades. This Product solved all these problems.

Pros

  • Protecting the Egress Internet traffic
  • Ease of Policy Changes
  • Ease of gateway image roll outs
  • Single Controller to manage multiple environments and Multiple clouds

Cons

  • VPN tunnel capability
  • Security Audits of Cloud infrastructure like Security groups, NACLs, NSGs, GCP firewall policies, etc.

Return on Investment

  • Saved a lot of money on Operational Overhead. I would say we were able to save more than 10 hours every week.

Usability

Alternatives Considered

Aviatrix, AWS Firewall Manager and Palo Alto Networks Next-Generation Firewalls - PA Series

Other Software Used

Cisco Application Centric Infrastructure (Cisco ACI), Cisco Identity Services Engine (ISE), Cisco Nexus 9000 Series Switches

Cloud native scalable secure networking using Cisco Multicloud Defense

Use Cases and Deployment Scope

We are an MSP offering Cisco and Palo Alto products and solutions. We use Cisco Multicloud Defense in our offering to secure our customer's cloud environments. Cisco Multicloud Defense is a next-generation cloud native security solution that utilizes both APIs and proprietary gateways to secure cloud environments in a manageable and scalable way. Cisco Multicloud Defense takes care of keeping the gateways up2date, enables redundancy and scales automatically with the customer's cloud environments.

Pros

  • IPSec VPN to integrate with campus and/or private cloud solutions
  • Integration through CDO using shared objects
  • Clear policies that are understandable

Cons

  • The GUI for IPSec VPN is sometimes confusing if you want to add third party VPN endpoints.
  • There should be a clearer indication of the sizing you need to choose for the gateway deployments.
  • We would love to be able to push policies to private cloud as well.

Return on Investment

  • Cisco Multicloud Defense is easy to deploy and manage

Alternatives Considered

Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series and Cisco Secure Firewall

Other Software Used

Palo Alto Networks Next-Generation Firewalls - PA Series, Cisco Secure Firewall, Cisco Secure Firewall Management Center, Cisco Secure Endpoint, Cisco Secure Connect, Cisco Umbrella, MISP Threat Sharing, Cisco XDR, Cisco Secure Network Analytics, Cisco Secure Cloud Analytics

Cisco Multicloud Defense

Use Cases and Deployment Scope

Cisco Multicloud Defense has been a great product. It has helped us keep eyes on our network activity. It helps us track our local machines, servers and even remote devices. It helps us block inbound attacks, laterlam movement, and even data exfiltration. Cisco Multicloud Defense is a great SaaS product.

Pros

  • Inbound Attacks
  • Lateral Movement
  • Data Exfiltrations

Cons

  • Logs can be tricky to navigate
  • GUI can sometimes be confusing
  • Wish there was a better sizing recommendation for gateway deployments

Alternatives Considered

CrowdStrike Falcon and Arctic Wolf Cloud Posture Security Management

Adaptability, Ease of use, scalable - what more could you ask for?

Use Cases and Deployment Scope

In our organization we utilize multiple different cloud providers. With Cisco Multicloud Defense we have the ability to break down our security needs and implement protection across all of our public and private cloud infrastructure. With Cisco Multicloud Defense we are able to segment and allow specific types of traffic to flow while bocking traffic we do not want.

Pros

  • Segmentation
  • Ease of use
  • Reducing risk

Cons

  • The ability to see traffic flowing and identify malicious traffic is amazing.
  • The ease of setting up the connections of the cloud platforms is perfect.
  • Dynamic based security policies allow for better protection.
  • I don't have any detailed examples of improvement so instead I highlighted a couple of aspects that make the solution amazing.

Return on Investment

  • The insight that it provides allows us to move away from other tools and just utilize the Cisco Multicloud Defense.
  • Insights into data usage provides tangible analytics.
  • Ease of management and use allows for less in-depth and specialized training.

Alternatives Considered

Netskope Cloud Firewall

Other Software Used

Sophos Intercept X, Corsair SSD, FortiAuthenticator

Cisco Multicloud Defense user review

Use Cases and Deployment Scope

My company uses this as a gateway to the cloud environment. The key for us is a single panel which shows how the full environment (all clouds environments) is behaving - all the details related to health status and data transfer. The key was the data transfer in the cloud as we can see exactly what is leaving our company and if we want it to leave or should it be blocked. Visualisation of all environments in the cloud and how data flows also help to identify each hop of data flow.

Pros

  • DLP monitoring - key item for us which helps to view if anything which should leave our environment our or even between each part of network between/inside specific clouds
  • Segmentation of subnet, basic but helpful to isolate each host into their own part of single subnet and connect them, including all visibility features which are offered by Cisco defense systems
  • Allow/deny rules helps us to block, monitor and logs traffic passing in each direction of our environment

Cons

  • Logs which are tricky to apply properly in the cloud, due to limitations of how vendor builds its environment sometimes it was hard to guess what is going on in the cloud as this solution also pulls data from these logs sometimes it can be missing some more detailed information
  • Initial data flow related to specific solutions which company can use can - mean its custom apps which can need lots of learning processes what is valid what not and how to properly allow this can of solution example is DLP

Return on Investment

  • It requires good knowledge of the product at the start, so it can take time and Cisco resources for help with setting it up.
  • Analise data going to websites/web servers which can help to block some unwanted traffic.
  • Easy to monitor what is happening after implementation due to nice dashboards which are fully customisable.

Other Software Used

Palo Alto Networks Advanced Threat Prevention, Palo Alto Networks Advanced URL Filtering, Cisco Catalyst SD-WAN