“theUntold WAF Security Service by Consys.it” is built around the F5 SaaS-based Essential App Protect (EAP) solution and guarantees agile application security
Consys.it, a consultancy company specializing in cybersecurity, presents the "Web Application Firewall (WAF) Security Service by Consys.it" service, developed within theUntold brand, to guide customers in choices related to Digital Transformation.
For over 25 years Consys.it has been following innovation in the IT Security world and, to overturn the paradigm of application security, has created its own brand - theUntold - which ensures greater value to people's know-how, to its professional services designed ad-hoc for customers and to consultancy aspects. In particular, the latter today more than ever is the essential tool to accompany customers in the choices of Network Transformation, Security Transformation and Application Transformation, with a focus on application protection.
Services and Apps today can still be provided by private on-premise data centers, or entirely by public cloud data centers (in iaaS and paaS forms) or in hybrid mode, i.e. partly by on-premise data centers and partly by public cloud data centers. In summary, the adoption of multicloud is a reality, posing new operational and security challenges, even considering that each App makes use of exploited and abused APIs, that an organization on average uses a thousand applications and that more than half of the Apps remain vulnerable and expose companies to the loss of sensitive data. Added to all this is the need for agile application development: development pipelines built to meet the needs of being quick in creating new services and releasing them into production immediately after their development are already common. However, this is often done leaving security aside, also because traditional security policies are often difficult to translate into "Agile" and "cloud" environments.
In this scenario, 'theUntold WAF Security Service by Consys.it' fits in, designed to protect customer Apps, built around the F5 Networks SaaS-based Essential App Protect (EAP) service. Everything is based on the use of F5 Cloud Services, an architecture of cloud-native SaaS solutions, which guarantees agile application security. Within the F5 architecture, Consys.it, Gold F5 partner, offers the SaaS-based Essential App Protect service, accompanying it with its own professional services, services that guarantee the best configuration of the SaaS EAP service, which guide in the definition of security policies, and quickly and effectively help applications to be protected with DevSecOps methodologies.
“Today companies tell us that there is an imbalance within the teams dedicated to agile development, where compared to a hundred developers we have around ten DevOps architects and perhaps only one person dedicated to security,” he underlines Luca Brignoli, Sales Manager of Consys.it – and it is precisely in these contexts that Web Application Firewall solutions still constitute the fastest and best cost methodology for managing the vulnerabilities of exposed applications.”
The service is completely delivered via the cloud, and guarantees app protection in just a few minutes, providing coverage from OWASP Top 10 attacks, detecting and defending services from requests coming from malicious IPs, botnets and targeted attacks and compensating for the time between publications of known vulnerabilities and code reviews, promptly resolving vulnerabilities without maintenance windows. The configurations are simple as they are activated with the step-by-step guide provided by the service itself and with the support of Consys.it specialists and the service immediately provides a visual map of the attack trends and facilitates access to the details of the incidents.
"We are an innovative System Integrator by tradition - continues Brignoli - and the 'theUntold WAF Security Service by Consys.it' service confirms that a cultural change in application security has become a necessity. With this new service, we guarantee our customers a managed WAF as a Service solution, which shifts application security from a GATEKEEPER mentality, to the DevOps mentality where security is everyone's responsibility, and allows you to build good application security policies already in the application development phase."






