Cybersecurity / capability
Network and Perimeter Security
The useful test is not whether a rule is correct but whether it matched traffic in a year. You get an annotated rule base with a risk note on every line.
Every firewall rule you have was added for a reason. Almost nobody can still say what it was.
A rule base grows for a decade because a rule nobody can explain is a rule nobody dares remove. The result is a policy that is both too permissive and too fragile to change, and a change window that everybody avoids.
SECCOM builds perimeter and segmentation on Cisco, Fortinet and Palo Alto Networks. Where you already run one of them, SECCOM reviews what the rule base was written to do against what the firewall enforces today, rather than selling a replacement.
Next step