Prisma SASE
A comprehensive SASE platform unifying security service edge and SD-WAN.
Palo Alto Networks Prisma SASE is a comprehensive Secure Access Service Edge platform that converges cloud-delivered security (Prisma Access SSE) with software-defined WAN (Prisma SD-WAN) — connecting and securing users, branches, and applications from one cloud platform. It brings ZTNA, SWG, CASB, FWaaS, and SD-WAN together with AI-powered operations. Faltrox designs, deploys, and operates it as managed SASE.
Overview
What Prisma SASE is
Hybrid work and cloud applications broke the old hub-and-spoke network — users and apps are everywhere, and backhauling traffic to a data centre for security no longer works. SASE converges networking and security into one cloud-delivered model, and Prisma SASE is Palo Alto Networks’ comprehensive platform for it, bringing security service edge and SD-WAN together.
It combines Prisma Access (the SSE component — ZTNA, Secure Web Gateway, CASB, Firewall-as-a-Service, and more) with Prisma SD-WAN (application-aware connectivity), plus Autonomous Digital Experience Management (ADEM) for visibility and AI-powered operations. That gives one platform to connect and secure every user, branch, and application with consistent policy. Faltrox designs the SASE architecture, deploys it, and operates it as a managed service.
Coverage
What it protects
The platforms, threats, and surfaces this product is built to defend.
Hybrid Workforce
Secures users working anywhere with cloud-delivered security service edge.
Branches & Sites
Connects and secures branches through integrated Prisma SD-WAN.
SaaS & Applications
Secures access to SaaS, private apps, and the internet with ZTNA, SWG, and CASB.
Converged Security
Unifies ZTNA, SWG, CASB, and FWaaS with SD-WAN on one platform.
AI-Powered Operations
Autonomous digital experience management and AIOps optimise and troubleshoot.
Single Platform
One cloud platform and policy across networking and security.
How it works
The mechanism
How the product moves from signal to protected state, step by step.
- 01
Connect
Prisma SD-WAN connects branches and users, and Prisma Access connects them to the cloud security service edge.
- 02
Verify
Zero-trust policy validates identity and device posture before granting access to applications.
- 03
Secure
ZTNA, SWG, CASB, and FWaaS inspect and control all traffic in the cloud with consistent policy.
- 04
Optimise
ADEM provides end-to-end digital experience visibility and AI-powered troubleshooting.
- 05
Operate
Faltrox designs and manages the SASE architecture, policy, and operations as a managed service.
Capabilities
Key capabilities
Converged SASE Platform
Unifies security service edge and SD-WAN in one comprehensive cloud platform.
Prisma Access SSE
ZTNA, Secure Web Gateway, CASB, and Firewall-as-a-Service protect users anywhere.
Prisma SD-WAN
Application-aware SD-WAN connects branches and users into the SASE fabric.
Zero Trust
Least-privilege access to applications based on identity and device posture.
ADEM
Autonomous Digital Experience Management provides end-to-end visibility and AIOps.
Consistent Policy
One policy model across networking and security for every user, branch, and app.
Cloud-Delivered
Security and networking delivered from the cloud, scaling without on-site appliances.
AI-Powered Operations
AIOps optimise performance and troubleshoot issues proactively.
Works with
Part of the platform
Palo Alto Networks products this pairs with, and the Faltrox services that operate it.
Palo Alto Networks products
Delivery
You buy the outcome, not the console
Managed by Faltrox
Faltrox licenses, deploys, and tunes Palo Alto Networks Prisma SASE for your environment, then runs it as part of a managed service, so you get the protection without staffing another security console.
FAQ
Common questions
01What is SASE and why converge networking and security?
SASE (Secure Access Service Edge) converges networking (SD-WAN) and security (SSE) into one cloud-delivered platform. Converging them means users and branches get consistent security applied from the cloud wherever they are, instead of backhauling traffic to a data centre — which is essential for hybrid work and cloud applications.
02What are the components of Prisma SASE?
Prisma Access provides the security service edge (ZTNA, SWG, CASB, FWaaS); Prisma SD-WAN provides application-aware connectivity for branches and users; and ADEM adds end-to-end digital experience visibility and AIOps. Together they form the comprehensive SASE platform.
03Does it replace our VPN and branch firewalls?
It can. ZTNA replaces broad VPN with least-privilege access to applications, and cloud-delivered security replaces backhauling branch traffic to on-site firewalls. Faltrox manages the migration from legacy VPN and branch security to SASE.
04How does it help with performance and troubleshooting?
ADEM (Autonomous Digital Experience Management) gives end-to-end visibility into user experience across the SASE path and uses AIOps to pinpoint and troubleshoot issues proactively — so a slow application is diagnosed rather than guessed at.
05How does Faltrox operate it?
We design the SASE architecture and zero-trust policy, deploy Prisma Access and SD-WAN, integrate ADEM, and operate the platform — delivering converged networking and security as a managed SASE service.
Start an engagement
Secure what’s next.
Speak with the engineering team to define scope, walk through the methodology, and decide whether Faltrox is the right team to test and run your environment.
Contact us