Versa Networks launched a secure access service edge (SASE) product targeted at mobile telecom operators that uses a SIM card to provide authentication and access control for devices attempting to connect to an enterprise network. The service echoes work Versa announced last year with T-Mobile US.
The Versa SASE on SIM for Mobile Operators merges Versa’s SASE as a clientless service into a SIM card to allow mobile operators to bolster their enterprise security services. The Versa-embedded SIM runs authentication through a Versa SASE gateway, which uses a device’s international mobile subscriber identity (IMSI) and IP address to authenticate access.
A device SIM card is advantageous in that it can use device location and other embedded information to further refine and enforce enterprise security policies.
Versa noted this combination provides the ability to integrate zero-trust services without the need for an agent into mobile devices and can simplify the expansion of enterprise security policies across all devices. This can include IoT and IT services, or new network services like private networks.
Chitresh Yadav, VP and global head of solutions engineering at Versa, explained to SDxCentral via email that the platform allows “mobile operators to build their own version of SIM-based SASE service offerings integrated as part of their mobile subscriber services for IT/OT/IoT.”
Analysts have increasingly pointed to mobile devices as a key structural part of enterprise security efforts.
“Running technologies such as SASE, SSE and SD-WAN over mobile connections validates the theory that wireless can begin to replace wireline as the requirements of corporate networks evolve,” Gary Barton, research director for enterprise technology and services at GlobalData, noted in a recent report on 5G and enterprise security.
ABI Research highlighted the need for cloud security platforms to be adaptable to the specific needs of 5G network operators.
“Numerous existing solutions in the traditional cybersecurity market can secure 5G networks, data and devices. The critical success factor is to ensure that these technologies are adapted to the new context and can work with the architectural requirements defined by 5G standards,” wrote Michela Menting, telco cybersecurity research director at ABI Research.
The analyst firm predicts the 5G security software and services market will hit $8.6 billion in sales by 2027.
Operators moving down the SASE pathVersa's Yadav noted that the new Versa platform is the same as the one T-Mobile US launched last fall.
The T-Mobile SASE Edge product is positioned as a network management and zero-trust network access (ZTNA) platform. It’s designed to support enterprise customers in securely connecting employees, systems and endpoints to remote networks, corporate applications and company resources.
The T-Mobile SASE platform also provides a Private Access service, which uses ZTNA for a virtual private network (VPN) to provide secure, direct and least-privileged access to devices. There is also a Secure Internet Access service that includes web filtering using a secure web gateway (SWG), a cloud access security broker (CASB) for software-as-a-service (SaaS) application protection and next-gen firewall IT network security.
“This SASE offering for enterprise customers will allow them to enforce cloud-based security policies consistently and persistently to any of the T-Mobile devices anywhere on their network without the hassle of installing a device client,” John Saw, EVP and CTO at T-Mobile, said during a keynote speech at the MWC Las Vegas event.
The carrier explained that the hardware-based offering is superior to traditional software-based SASE which “only offers protection when client software is downloaded into devices and configured. This is a heavy administrative lift for IT departments and can potentially leave some devices vulnerable, such as IoT hardware and routers.”
Mishka Dehgan, SVP for strategy, product and solutions engineering at T-Mobile’s Business Group, told SDxCentral at the event that this hardware-based approach is key for simplifying security for overworked enterprise IT teams.
“There’s nothing new about SASE,” Dehgan said. “This is something that we had been working on, but we wanted to make sure we bring something that’s differentiated. … The fact that IT administrators do not have to worry about the authentication and it’s happening organically through the SIM, that’s a differentiation point, which we know is resonating with customers.”
While the platform was launched through a partnership with Versa, T-Mobile is interested in bringing along other vendors.
“[Versa’s] the first SASE partner that we are going to market with,” Dehgan said, adding “we are going to be augmenting our SASE portfolio working with other partners. Versa is just the first.”
And with those partnerships, T-Mobile thinks it can maintain its unique position in the market by offering something that traditional SASE vendors can’t provide.
“Security is really top of mind, so that’s why you really see a proliferation of companies delivering SASE solutions,” Dehgan said. “But all of them are traditional SASE and they’re all software based. We wanted to make sure that we work with partners that understand and align with our approach on making it hardware-based and really bringing that differentiation.”
Comments