Ise Solution Overview
Ise Solution Overview
Cisco Public
ISE 3.x
Flexibility and choice power security
resilience for zero-trust architectures
What if IT and security operations could respond to change
and reduce risk with seamless access to network resources
from anywhere, to everywhere, and on anything? And, what
if controlling and managing access to the workplace was
radically simplified and modernized to build security
resilience into the network?
segmentation, better across the distributed network. segmentation. Network segmentation builds zero
trust into the network with policy-based access to
• Pervasive visibility. See and know everything
policy enforcement, connecting. The first step to building a resilient security
contain and prevent the lateral movement of threats.
Organizations can shrink the attack surface, limit
posture is gaining the ability to see and know everything
and better identity and that is connecting to the network. ISE automates the
the spread of ransomware, and enable rapid threat
containment, all while continually assuring this level
access management.” discovery of devices connecting to the network. With
ISE, teams can identify, classify, and track endpoints
of protection will not disrupt business outcomes.
connected to the network to allow the automation of • Automated threat containment. Don’t just block
CIO, financial services organization
policy provisioning before allowing access to network threats—remove them. ISE integrates with Cisco
From the commissioned study conducted by Forrester Consulting on
behalf of Cisco, March 2022, “The Total Economic Impact™ of Cisco resources. IT teams have the flexibility they need to Security products and third-party ecosystem
Identity Service Engine (ISE)” balance business objectives with security and can partners through pxGrid and pxGrid Cloud to gain
choose between an agent or agentless approach to contextual information from on-prem and cloud-
Read the report gain the visibility required to look deep into the device native solutions. This open integration ecosystem
and ensure endpoint compliance. Any changes to brings an active arm of policy enforcement into
the overall posture of any endpoint automatically and your security stack to automate threat containment,
dynamically updates the policy to control access, remove threats, and reduce mean time to repair.
ensure compliance, reduce risk, and contain threats.
Forrester Consulting recently conducted an • Endpoint compliance. Business continuity relies on • Secure access. Accelerates value by simplifying
independent analysis of five organizations using a strong, resilient security posture. ISE continually the provisioning of policies and devices. ISE enables
ISE. The commissioned study conducted by verifies that device posture complies with your self-registration, automates device configuration
Forrester Consulting on behalf of Cisco, March security policy so that risky, unpatched, and outdated and manages certificates and mobile policy
2022, “The Total Economic Impact™ of Cisco devices cannot threaten the network. ISE 3.x compliance. With granular visibility and controls IT
Identity Service Engine (ISE),” highlighted: increases organizational posture with a customizable admins can confidently and quickly provision new
approach to gaining continuous posture assessments resources to allow connection to the network without
191% for endpoints connecting to your managed sacrificing protection.
ROI in first 3 years infrastructure. With a limitless number of posture
checks, customers can now customize and
50% enforce dynamic policy and gain continuous
Reduction in access-related security events trusted access to ensure business resiliency,
while limiting organizational risk without disrupting
11-month business objectives.
Payback period
66%
Avoided increasing NetOps headcount by 66%
with automation
88%
Uplift of additional benefits when deployed for SDA
Why ISE?
Other standalone solutions end up “bolting on” security to the network, often resulting in operational complexity and Check out ESG’s whitepaper on
performance issues. Cisco Identity Services Engine (ISE) has gained market dominance with a focus on security that
is built directly into the network. Our customers can provide secure network access to trusted users and endpoints
strategic zero trust:
through a flexible, simple solution that accelerates their value. “Zero Trust Must Include
Our key differentiators are: the Workforce, Workloads,
1. Security Resilience built into the network. Cisco 3. Unrivaled scalability. With the rise of the connected
AND Workplace”.
is the only vendor who leads in both enterprise everything, organizations need scale more than
networking and cybersecurity, and ISE builds ever before. ISE is the only solution that is proven
pervasive security directly into the network. With to support more than two million concurrent
flexibility and choice in deployment and purchasing, endpoint sessions. Visit the ISE webpage to learn
ISE enables organizations to tether secure network 4. Network admin access control. ISE is the only how we can enable your secure
access across the distributed network their way. NAC solution that includes TACACS+ for
2. Integrations and partner ecosystem. With integrated
network access initiatives, and
role-based administrative access control to
intelligence, ISE builds zero-trust policy decision networking equipment. SD Access webpage to learn
points into the network for continuous trusted access
and to automate threat containment. Effective
more about our complete secure
cyber programs require integrated technologies to access solution.
break down silos and reduce complexity. ISE has
the most extensive partner ecosystem for Cisco
Secure and third-party solutions through pxGrid and
© 2022 Cisco and/or its affiliates. All rights reserved. Cisco and the Cisco logo
pxGrid Cloud to bring a platform approach to secure are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S.
and other countries. To view a list of Cisco trademarks, go to this URL: www.
network access and zero trust. cisco.com/go/trademarks. Third-party trademarks mentioned are the property of
their respective owners. The use of the word partner does not imply a partnership
relationship between Cisco and any other company. 883227226 05/22