Securing connectivity for a globally dispersed workforce to ensure an enhanced user experience
Managing multiple security tools across different geographies was complicated, especially in remote locations. The pandemic exacerbated this challenge, as remote work increased at Midas Safety by as much as 70%. Also, the existing VPN solution faced wireless signal loopholes, as employees tried to log in to different networks.
Nishantha Wickramaratne, Head of Cloud Platforms and Information Security explains, “When we analyzed the security and privacy issues due to the increased load on our VPN, we realized there was a massive vacuum to be filled.” The company also had a growing need for cloud compliance and adherence to local data protection laws.
“We were using a simple VPN solution for users in remote locations, allowing them to connect to our data center and this compromised user security. We had no filtering and no control on those endpoint devices, and we faced the risk of misconfigured settings, weak encryption protocols, data leaks due to vulnerabilities and potential malware within the VPN infrastructure.”
- Nishantha Wickramaratne
Head of Cloud Platforms and Information Security,
Midas Safety
End-to-end integration, secure connectivity, and better user experience
Midas Safety was looking for a solution that could:
- Provide consistent user interface and protection across all locations, regardless of whether they connected directly to the network from a company location or over VPN.
- Allow for scalability and adapt to increasing demands as new manufacturing facilities are added in new geographies.
- Ensure zero trust, promoting least-privileged access with continuous trust verification, protecting all users, networks, and environments.
The company chose Prisma SASE, with the Security Service Edge (SSE) capabilities in Prisma Access and SD-WAN on Instant-On Network (ION) devices, as well as Prisma SD-WAN to further optimize performance and efficiency of its WAN infrastructure. Instead of using traditional customer premises equipment (CPE) devices, Midas Safety could now build application-specific load balancing, WAN traffic prioritization, and automatic failover capabilities with new ION devices at a lower cost.
Midas Safety chose mobile user Autonomous Digital Experience Management (ADEM) so it now has a unified view across its environment, including remote sites and branch locations.
“The Prisma Access SASE infrastructure is fully aligned with the zero trust security framework. Therefore, our remote workforce can now access our services at any time, from anywhere and with any device.”
- Zeeshan Muhammad
Head of Infrastructure and Network Security,
Midas Safety
0 gaps in user experience
By pivoting to a SASE framework and converging both network and security services into a unified cloud-native service, Midas Safety now has a unified security platform. With Prisma SD-WAN, the company has secure, seamless access to all locations. If a primary line to a particular location drops, a secondary line takes over automatically, ensuring zero interruptions to the user experience.
85% decrease in malicious DNS queries
Prisma SASE delivered enhanced visibility, strengthened security, and simplified management. As a direct result, Midas Safety saw a decrease in malicious DNS requests. Previously, the DNS was susceptible to attacks given the high traffic volume, making it easy for adversaries to hide malicious activity, deliver malware, and exfiltrate data. With our solution, Midas Safety discovered malicious attacks were reduced by 85%, from 16,000 malicious DNS requests to 2,500 requests.
Figure 1. DNS Report showing a decrease in DNS requests June 2023–December 2024
25% reduction in data circuits costs
By moving away from multiprotocol label switching (MPLS) to Prisma SD-WAN, Midas Safety optimized WAN bandwidth utilization, achieving 25% cost savings.
Secure network and security with Zero Trust
With Palo Alto Networks Prisma Access, Midas Safety has superior security with a zero trust framework. This framework ensures least-privileged access, continuous trust verification, and continuous security inspection to protect all users, devices, applications, and data used by the company’s hybrid workforce.
Resilient network, simplified management, robust security
These tangible benefits have positively impacted the risk profile and overall security posture for Midas Safety. The company also benefited by how seamlessly Cortex XDR® integrated with its SASE environment. Midas Safety also discovered it has flawless cloud compliance and General Data Protection Regulation (GDPR) compliance across geographies.
Discover how Palo Alto Networks best-in-class solutions can improve networking and security for your organization. Get started with Prisma SASE.
“The Prisma Access SASE infrastructure is fully aligned with the zero trust security framework. Therefore, our remote workforce can now access our services at any time, from anywhere and with any device.”
- Zeeshan Muhammad
Head of Infrastructure and Network Security,
Midas Safety