Cristie Data Ltd

Barracuda Web Application Firewall - AWS

Barracuda CloudGen Firewall's are hardware, virtual, and cloud-based appliances that protect and enhance dispersed network infrastructure. They deliver advanced security by tightly integrating a comprehensive set of next-generation firewall technologies, including Layer 7 application profiling, intrusion prevention, web filtering, malware and advanced threat protection, antispam protection, and network access control.

Features

  • Full user/group awareness
  • Full application visibility and granular access control
  • Advanced Threat Protection (incl. sandboxing)
  • Built-in web security and IDS/IPS
  • Full SD-WAN capabilities included
  • Application-based provider selection
  • Full support for Azure ExpressRoute
  • True license flexibility with Bring-Your-Own-License or Pay-as-You-Go (time- or volume-based)

Benefits

  • leverages all AWS features, and license models ensure frictionless commerce
  • Bridging on-premises and cloud security in a single interface
  • Secure and reliable connectivity between on-premises and Azure-Azure deployments
  • Central management of functionality for both, on-premises and AWS deployments
  • Unrivalled Quality of Service capabilities

Pricing

£3,271.80 to £9,438.80 a unit a year

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at ryan.smith@cristie.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 12

Service ID

1 5 2 7 0 8 8 5 4 5 1 6 2 0 9

Contact

Cristie Data Ltd Ryan Smith
Telephone: 01453310070
Email: ryan.smith@cristie.co.uk

Service scope

Software add-on or extension
Yes
What software services is the service an extension to
Amazon Web Services
Cloud deployment model
Public cloud
Service constraints
None
System requirements
Must be using Amazon Web Services

User support

Email or online ticketing support
Email or online ticketing
Support response times
Response within 4 hours
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
None or don’t know
Phone support
Yes
Phone support availability
24 hours, 7 days a week
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
Bronze, Silver and Gold support levels are available with Gold providing 24/7 response to alerts, taking calls, making decisions and acting to ensure that your services are operating effectively every second of the day. The support desk is accredited to ISO9001 quality standards.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
Cristie's Professional Services team can assist with the implementation and configuration of the Barracuda Web Application Firewall. Full documentation and training is available through the Barracuda Campus and on-site training can be provided at additional cost.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
Services are automatically terminated when the contract ends, with no customer data being affected.
Cristie can help the customer export their configuration data if this is required.
End-of-contract process
As a software Firewall, the service simply stops at the end of the contract and services will stop being protected.

Using the service

Web browser interface
Yes
Supported browsers
  • Firefox
  • Chrome
Application to install
Yes
Compatible operating systems
  • Android
  • IOS
  • Linux or Unix
  • MacOS
  • Windows
  • Windows Phone
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
Core functionality is available across all platforms.
Service interface
Yes
Description of service interface
Support can be accessed by telephone or email directly from the user interface.
Customers can call Cristie's support desk for diagnosis and call management.
Accessibility standards
None or don’t know
Description of accessibility
Support is accessed through email or telephone as standard. Urgent issues should be logged by telephone for fastest response.
Accessibility testing
None
API
No
Customisation available
Yes
Description of customisation
TBC

Scaling

Independence of resources
Web Application firewalls are independent to the customer environment and so will not impact other users. These are devices to support the customer environment deployment

Analytics

Service usage metrics
Yes
Metrics types
Complete access to all firewall metrics provided
Reporting types
  • Real-time dashboards
  • Regular reports
  • Reports on request

Resellers

Supplier type
Reseller providing extra features and support
Organisation whose services are being resold
Barracuda

Staff security

Staff security clearance
Other security clearance
Government security clearance
None

Asset protection

Knowledge of data storage and processing locations
No
Datacentre security standards
Managed by a third party
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with another standard
  • Encryption of all physical media
Data sanitisation process
No
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
As an add-on to Public Cloud, there is no data to extract. This service is providing a Cloud-Gen Firewall for Public Cloud applications.
Firewall configurations can be exported if required.
Data export formats
CSV
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
  • Private network or public sector network
  • TLS (version 1.2 or above)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
Devices are supplied into customer environments and so managed dependant on customer design and deployment
Approach to resilience
Web applications firewalls can be deployed in cluster setup giving resilience and scaleability.
Outage reporting
E-mail Alerts, SNMP, Syslog export

Identity and authentication

User authentication needed
Yes
User authentication
Username or password
Access restrictions in management interfaces and support channels
Username and password to validate user credentials. HTTPs protocol and SSH interfaces.
Access restriction testing frequency
At least once a year
Management access authentication
Username or password

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
Between 1 month and 6 months
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
Between 1 month and 6 months
How long system logs are stored for
Between 1 month and 6 months

Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Other security certifications
No

Security governance

Named board-level person responsible for service security
No
Security governance certified
No
Security governance approach
Barracuda are a IT security provider of securely built technology and devices. Platforms are built on hardened operating systems and tested by independent 3rd parties.
Information security policies and processes
Available upon request from Vendor

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
Details of controls can be requested from Vendor when relevant.
Vulnerability management type
Undisclosed
Vulnerability management approach
Details of controls can be requested from Vendor when relevant.
Protective monitoring type
Undisclosed
Protective monitoring approach
Details of controls can be requested from Vendor when relevant.
Incident management type
Undisclosed
Incident management approach
Details of controls can be requested from Vendor when relevant.

Secure development

Approach to secure software development best practice
Supplier-defined process

Public sector networks

Connection to public sector networks
No

Pricing

Price
£3,271.80 to £9,438.80 a unit a year
Discount for educational organisations
Yes
Free trial available
Yes
Description of free trial
Fully featured free trial available for up to 30 days
Link to free trial
https://www.cristie.co.uk/how-we-do-it/

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at ryan.smith@cristie.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.