Tufin is a network security policy management company that enables organizations to automate and centrally manage security policies across hybrid environments. The Tufin Orchestration Suite, including SecureTrack+ and SecureChange+, provides visibility and control across firewalls, cloud platforms, SASE architectures, and edge infrastructure. Tufin supports micro-segmentation by delivering zone-to-zone policy visualization and enforcement. With the ability to understand the global network topology, Tufin provides exposure assessment data that enhances vulnerability prioritization by identifying which assets are actually reachable. Its platform automates policy changes, ensures continuous compliance, and integrates with major security and cloud technologies. Tufin helps enterprises in sectors like finance, healthcare, telecom, and retail strengthen their security posture while enabling operational efficiency and agility.
Do You Manage Peer Insights at Tufin?
Access Vendor Portal to update and manage your profile.
One of the aspects we appreciate the most is the fast response when we encounter issues with the platform. Incidentes were handled very quickly, and the TAC team is always professional in their work. Another point worth mentioning is their patience at all times, especially considering that English is not our native lange and we are continously improving in each session.
One place to review all policies Get alerts for policy violations Ingest of traffic logs and analyzing it
The features that stands out are the following 1. Unified policy visibility across hybrid and multi-cloud environment 2. Powerful automation and change management 3. Effective policy cleanup and governance
There are several issues we have encountered during our experience with Tufin, particularly related to CPU performance in our EC2 instances. This was a major headache at the time; however, the TAC team eventually helped us improve the platform's performance. Currently, we still experience some CPU performance issues, but they are not critical and do not affect the overral funcionality of the platform.
Not having support with Palo Alto Networks Strata SSO configuration management was complex to be configured Upgrades procedures were not so clear
Things that I dislike most about the product are as follows: 1. Lacks inbuilt vulnerability module 2. The platform is feature rich, hence mastering the interface and workflows requires time an effort for beginners. 3. Deployment, integrations and version upgrades often require careful planning and coordination with vendor