Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Security Infrastructure

Qualys Web Application Firewall 2.0 Brings Virtual Patching, Event Response

Qualys today announced the availability of version 2.0 of the company’s Web Application Firewall (WAF). The latest version of the solution comes with several new features designed to help organizations address web application security issues.

Qualys today announced the availability of version 2.0 of the company’s Web Application Firewall (WAF). The latest version of the solution comes with several new features designed to help organizations address web application security issues.

Qualys WAF is a cloud-based service designed to block website attacks in real time. The solution is capable of handling web server vulnerabilities, application framework issues, improper configurations, and coding faults.

Fully integrated with the Qualys Web Application Scanning (WAS) solution, Qualys WAF 2.0 enables companies to create “virtual patch” rules based on vulnerability information delivered by WAS. This virtual patching feature helps Qualys customers fine-tune their security policies, customize WAF security rules for web applications, and quickly remove false positives.

In an effort to help organizations with prioritizing and mitigating vulnerabilities, Qualys WAF 2.0 introduces customizable event response capabilities. This functionality allows customers to create exceptions to certain types of web events.

Qualys WAF is easy to deploy and configure even without a dedicated security staff, Qualys said. The Qualys console allows customers to centrally manage the web application firewall from any location.

“Many organizations are struggling to find a balance between identifying and effectively addressing vulnerabilities fast enough to avoid falling victim to large-scale breaches,” noted Philippe Courtot, chairman and CEO of Qualys. “By integrating security rules and policies from our WAF solution with Qualys WAS data, we are providing significant value to our customers with the flexibility and automation needed to tackle web application security threats. It’s a giant step towards complete automation of web application security.”

Pricing for an annual subscription for Qualys Web Application Firewall starts at $1,995 for small businesses and $9,995 for larger enterprises, depending on the number of web apps and virtual appliances they have. Organizations can also register for a free trial.

At the RSA Conference, Qualys also unveiled its Cloud Agent Platform (CAP). The solution is designed to help companies assess and resolve the security and compliance of IT assets on mobile endpoints, on-premise, and in cloud environments.

Advertisement. Scroll to continue reading.

Qualys CAP is currently available for trial on the Windows platform. The company says the service will go live on May 15 for Windows, and in the third quarter for Unix and OS X.

Qualys also announced today the expansion of the Qualys Continuous Monitoring solution with internal monitoring capabilities. According to the security firm, the new feature enables organizations to proactively identify potential threats, and accelerate incident response time.

Written By

Eduard Kovacs (@EduardKovacs) is a managing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Management & Strategy

Hundreds of companies are showcasing their products and services this week at the 2023 edition of the RSA Conference in San Francisco.

Security Infrastructure

Security vendor consolidation is picking up steam with good reason. Everyone wants to improve security efficiency and effectiveness while paying for less.

Cloud Security

The term ‘zero trust’ is now used so much and so widely that it has almost lost its meaning.

Security Infrastructure

Instead of deploying new point products, CISOs should consider sourcing technologies from vendors that develop products designed to work together as part of a...

Funding/M&A

Responding to Cyber Threats Against Critical Infrastructures: Wired Business Media Acquires Long Running ICS Cybersecurity Conference Series

Security Infrastructure

Comcast jumps into the enterprise cybersecurity business, betting that its internal security tools and inventions can find traction in an expanding marketplace.

Audits

The PCI Security Standards Council (SSC), the organization that oversees the Payment Card Industry Data Security Standard (PCI DSS), this week announced the release...