In The Mature WAF Market, Product Offerings Continue To Expand


At first glance, the web application firewall (WAF) market — populated by long time vendors with robust partner programs, extensive supporting services, and a slew of customer engagement opportunities — may seem like a space that has topped out. However, changes in how organizations develop and deploy applications — more hybrid cloud, more APIs, more automation — mean that WAFs have extended their protections to APIs, enhanced security operations integrations, added infrastructure-as-code (IaC) support, and worked to better embed threat intelligence with policy and analytics. As I conducted the evaluation for The Forrester Wave™: Web Application Firewalls, Q3 2022, a few things stood out:

  • Native API security capabilities have improved. Two years ago, state of the art in API security for WAFs was the ability to upload an API specification file and generate rules based on it. That’s now a baseline capability. Many vendors have added API discovery and schema enforcement to their WAF capabilities, and top vendors can generate API specification files based on analyzed traffic. Note that we are looking at API security capabilities native to the WAF offering, not through other API security products sold separately.
  • IaC support has become the norm. Almost all the Wave vendors have verified support for Terraform, and some offer support for other IaC tools too. APIs and command-line options are also available, but several reference customers shared that they have embraced IaC to manage their WAF configurations and deployments.
  • Vendors are investing in modern reporting. In my previous Waves (not just WAF), I have often found vendors’ reporting capabilities wanting, and customer references have agreed. Typically, reporting is the area that gets the most negative reference feedback. While not all the customer reference complaints have disappeared, feedback was much improved over previous years, indicating that vendors are making progress in this area. Several vendors have integrated modern reporting tools, offering customers more flexibility and new visualizations.
  • Vendors responded quickly to Log4Shell issues. Log4Shell was an avalanche of panic and work for security pros last year, and with WAF as one of the key defense points, we wondered how quickly vendors were able to help their customers and how well they communicated. It was a pleasant surprise to see that top vendors had issued new rules within hours or by the next day, posting regular blogs with updates and even hosting events to help customers understand the issues. Customer references were uniformly pleased with their vendors’ responses.

To learn more about the latest and greatest in the WAF market and how the players differentiate even in highly mature areas, check out The Forrester Wave™: Web Application Firewalls, Q3 2022, or set up an inquiry.



Source link

Related articles

SoundHound AI, Inc. (SOUN) Q2 2025 Earnings Name Transcript

SoundHound AI, Inc. (NASDAQ:SOUN) Q2 2025 Earnings Convention Name August 7, 2025 5:00 PM ET Firm Contributors Keyvan Mohajer - Co-Founder, CEO, President & DirectorNitesh Sharan - Chief Monetary OfficerScott Smith - Head...

Vitalik Buterin Backs ETH Treasury Corporations However Warns Of Dangers

Ethereum co-founder Vitalik Buterin has thrown assist behind so-called Ether treasury firms, however warned the pattern might spiral into an “overleveraged sport” if not dealt with responsibly.In an interview with the Bankless podcast...

Tesla shuts down Dojo, the AI coaching supercomputer that Musk mentioned can be key to full self-driving

Tesla is breaking apart the group behind its Dojo supercomputer, ending the automaker’s play at creating in-house chips for driverless expertise, in keeping with Bloomberg. Dojo’s lead, Peter Bannon, is leaving the corporate, and...

OpenAI Launches GPT-5: How Will It Have an effect on the Buying and selling and Funding Business?

OpenAI has pulled the curtain again on GPT-5, its most superior AI mannequin to this point, and is making it obtainable to everybody—together with free customers. The shock rollout on Thursday alerts a major step...

World file for cross-border loans: $34.7 trillion by 2025 – Market Information – 7 August 2025

By the start of 2025, the quantity of cross-border loans reached $34.7 trillion, which is the very best since 2008. Within the...
spot_img

Latest articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

WP2Social Auto Publish Powered By : XYZScripts.com