Cybersecurity / capability
Network and Perimeter Security
The useful test is not whether a rule is correct but whether it matched traffic in a year. You get an annotated rule base with a risk note on every line.
Every firewall rule you have was added for a reason. Almost nobody can still say what it was.
A rule base grows for a decade because a rule nobody can explain is a rule nobody dares remove. The result is a policy that is simultaneously too permissive and too fragile to change, and a change window that everybody avoids.
Palo Alto Networks builds its firewall platforms around the same discipline, and where an estate already runs one, SECCOM reviews the rule base against what it actually enforces.
Consult SECCOM for a rule base review. What still matches traffic, what has not fired in a year, and what can be removed without anybody noticing.
What you get. An annotated rule base with a recommendation and a risk note per rule, and a change sequence your operations team can actually run.