📌 Engineering Field Notes
On Friday’s I’d like to post about IT architectural patterns and changes we’re seeing in security that we can easily see are being driven by AI and how we construct the stack and other changes that are also driven by AI strategy but may don’t shout it. One of those changes is the network and how we’re approaching security around the network.
It’s clear that Cisco has been thinking about this strategy as well.
Cisco is changing enterprise protection by embedding security directly into the physical and virtual data paths of the network rather than treating it as an external "bolt-on" appliance.
Embedding security directly into the physical and virtual data paths eliminates blind spots, reduces latency, and allows security policies to scale automatically with modern cloud and hybrid networks.
As someone who learned about firewalls by programming a Cisco PIX firewall using the Command Line Interface, I can tell you for sure that when security is a "bolt-on" appliance, traffic must be redirected out of its natural flow, creating performance bottlenecks and operational complexity.
Core
@Cisco Technologies Driving the Shift
🌟Cisco HyperShield & Live Protect: Delivers runtime protection and applies kernel-level compensating controls against zero-day vulnerabilities in minutes without system reboots or downtime.
🌟Hybrid Mesh Firewall: Distributes firewalling across switches and workloads using technologies like eBPF (Extended Berkeley Packet Filter) to contain threats close to the source.
🌟Post-Quantum Readiness: Hardens network hardware with quantum-safe secure boot and post-quantum encryption standards to protect against future decryption threats
Why This Matters to the Enterprise
1️⃣ Performance and User Experience
Modern enterprise applications rely on microservices and real-time data processing. Redirection to external appliances creates a "hairpinning" effect—routing traffic out of its way just for security checks.
2️⃣ Cost-Effective Scalability
As enterprise network traffic grows, scaling external hardware appliances requires significant capital expenditure (CapEx) and complex load balancing. Embedded security leverages the existing compute and routing infrastructure.
3️⃣ Zero Trust and Internal Visibility
Most modern cyber threats move laterally within the data center (east-west traffic) once they breach the perimeter. External appliances typically only monitor traffic entering or leaving the network (north-south traffic).
4️⃣ Simplified Operations
Managing a sprawl of discrete physical and virtual appliances introduces human error through fragmented policies.
Let me know what you’re thinking
#AISecurity #CloudSecurity #NetworkSecurity #CyberSecurity
Cc:
@JoelyUrton