Identity & Access

Secure Remote Access VPN/ZTNA

Secure access to internal systems for users outside the office. A classic VPN puts the user on the whole network; ZTNA (Zero Trust Network Access) connects them only to the applications they are authorized for, after checking device health.

When you need it

  • If employees connect to internal applications (ERP, file server) from home
  • If suppliers or outsourcing firms access your systems remotely
  • If RDP or applications are exposed directly to the internet today (urgent)

When you do not need it

  • If all your applications are SaaS (M365, Salesforce, etc.), you do not need a VPN; MFA and conditional access are enough.
  • For a few IT staff, the firewall's built-in VPN + MFA is enough; no separate product is needed.

VPN on the firewall; ZTNA as a cloud broker + a connector in the internal network. Supplier access must always be application-based and logged.