Hi everyone, I've been following the discussions here for a while and finally decided to post. I come from a marketing tech background (HubSpot, analytics, etc.), so networking and security are relatively new areas for me, but I'm diving deep into SASE as it's becoming critical for our customer data and digital experience.
My company has been using Palo Alto's Prisma SASE solution for about two years. The firewall-centric approach made sense initially, but as we shift more work to SaaS and the web, we're feeling some friction, especially around performance for cloud apps and the complexity of policies. Netskope keeps coming up in conversations, particularly for its CASB and inline SaaS security strengths, which seems to align with where our traffic is going.
Has anyone here made a migration from Palo Alto SASE to Netskope? I'm trying to understand the real-world tradeoffs.
Specifically, I'm curious about:
* The performance impact (or improvement) for end-users, especially when accessing tools like Salesforce, AWS, or our own marketing platforms.
* How the operational overhead compares. Is managing security policies in Netskope significantly different?
* Were there any unexpected challenges during the migration, particularly with remote user clients or existing firewall rules?
* From a security control perspective, do you feel you gained more than you lost by moving away from Palo Alto's NGFW stack?
Any insights from those who've lived through this would be incredibly helpful as we evaluate our options.