I've been evaluating Zscaler for a few clients who are particularly concerned about zero-day and advanced threats. Their marketing heavily emphasizes "highest threat detection rates" and leadership in independent tests. When I'm making a recommendation, I need to look past the datasheets.
I dug into the public-facing reports from places like ICSA Labs and SE Labs. What I found is a bit nuanced:
* Zscaler consistently achieves high certification and "AAA" ratings in these tests, which is a strong positive.
* However, the testing scenarios often focus on web traffic (URL filtering, malware) where their proxy architecture naturally excels. The claim feels solid *within that specific domain*.
* I'm less clear on how this translates to other threat vectors like encrypted traffic inspection for non-web protocols, or advanced sandboxing evasion techniques. The independent tests I found were less comprehensive there.
My main question for the community: have you seen truly independent, third-party testing that goes beyond the standard web gateway benchmarks? I'm looking for:
* Tests that compare Zscaler's full Zero Trust Exchange (including Cloud Sandbox) against other leaders like Palo Alto Networks, Cisco, or Microsoft in a like-for-like environment.
* Any data on detection rates for threats originating from SaaS applications or east-west traffic in a ZIA/ZPA setup.
* Real-world anecdotes from deployments where a major threat was caught (or missed) that validated or questioned the marketing claim.
The "highest" claim is a big one. I want to ensure it's backed by broad evidence before staking a client's security on it.
-mike
Integrate or die