Book a demo call with us
Cross icon
Network
Cloud

Prisma Access

Palo Alto Networks' cloud-delivered SASE solution that provides secure access for all users, devices, and apps from any location. It combines ZTNA, SWG, CASB, and next-gen firewall capabilities in a single cloud-native platform.

Prisma Access

What is Prisma Access?

Palo Alto Networks Prisma Access is a cloud-delivered SASE platform that provides secure network access for all users, whether in the office, working remotely, or located in branch offices, without requiring traffic to be backhauled through a corporate data center. It combines Zero Trust Network Access for private application connectivity, a Secure Web Gateway for internet access inspection, a Cloud Access Security Broker for cloud application governance, and next-generation firewall capabilities, all delivered from Palo Alto's globally distributed cloud infrastructure. Prisma Access applies consistent security policies based on identity and device posture rather than network location, and generates detailed traffic logs that capture every connection made through the platform. These logs are a valuable source for detecting command-and-control communications, data exfiltration attempts, and policy violations across a distributed workforce.

How does Prisma Access work with Qevlar?

Qevlar integrates with Prisma Access to retrieve network traffic logs and security events during investigations. When an alert involves suspicious outbound connections or policy violations by a remote user, Qevlar can query Prisma Access logs to reconstruct the network activity and determine whether it is consistent with known threat actor infrastructure or data exfiltration behavior.

Want to help your analysts focus on the most critical alerts?

Frequently asked questions

What is Prisma Access?

bar
bar

Prisma Access is Palo Alto Networks' cloud-delivered SASE platform, combining ZTNA, a Secure Web Gateway, CASB and next-generation firewall capabilities to secure access for users in any location, without backhauling traffic.

What can you do with Prisma Access in Qevlar?

bar
bar

Qevlar can ingest Prisma Access alerts and query its traffic and threat logs during an investigation, reconstructing network activity to determine whether suspicious outbound connections match known threat-actor infrastructure or data-exfiltration behavior.

Does Qevlar investigate network alerts automatically?

bar
bar

Yes. When Prisma Access flags suspicious activity by a remote user, Qevlar gathers the relevant traffic context and reaches a verdict without manual log review.

Can Qevlar correlate Prisma Access data with other sources?

bar
bar

Yes. Qevlar ties network telemetry from Prisma Access together with endpoint, identity and threat-intelligence sources to build the full attack picture.

Other integrations