Overview
Cisco Secure Access makes life better for users, easier for IT, and safer for everyone. It addresses cybersecurity challenges driven by the rapid software as a service (SaaS) adoption and the expansion of hybrid work.
Cisco Secure Access is a cloud-delivered Security Service Edge (SSE) solution that fundamentally reduces risk, radically simplifies IT operations, and eliminates remote access complexity for end users. With Secure Access, IT and security teams can effectively protect and defend their users from fast-moving internet-based attacks while providing them secure connectivity to the public and private applications they need, all in a single platform.
Cisco Secure Access is a full SSE solution, with ZTNA, SWG, DLP, CASB, RBI, and FWaaS with further differentiated capabilities including VPN-as-a-Service (VPNaaS), AI Assistant for policy creation help, and AI Access for visibility, control, and exclusive guardrails for third-party AI applications. Further, Secure Access is the only SSE which includes a recursive DNS-layer security service for lower latency, Experience Insights monitoring by Cisco ThousandEyes, and much more, in one license and management platform, all delivered with a single client.
Highlights
- Deliver unified and secure end user access to AWS apps.
- Simplify IT operations via a single console, with a single policy construct, featuring aggregated reporting across datacenter-hosted and AWS environments.
- Reduce business risk with advanced cybersecurity protection, zero trust, and granular security policies.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Custom pricing options
How can we make this page better?
Legal
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
You can reach for the Cisco Secure Access support at: https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products
Customer reviews
Secure access has protected financial data and supports compliant work from anywhere
What is our primary use case?
I have been using Cisco Secure Access for three and a half years since I joined. The primary use case for Cisco Secure Access is to provide security services across networks. The main job is to securely connect all our employees to any applications or resources from anywhere without relying on traditional or clunky corporate VPN. Cisco Secure Access acts as a single cloud-delivered security checkpoint for us.
In the old way, the existing VPN client connected the laptop directly into the corporate network. Now, when I open my browser and type any URL on the internet, such as for a financial application, Cisco Secure Client runs on my laptop and intercepts this request and securely passes the context to Cisco Secure Access cloud.
My organization works with GDPR compliance, data privacy, and some AI use cases. We have very big financial decisions every day, every year, every month, and every quarter. For us, we have to make sure that the employee data, the customer data, and the metrics we produce are secured.
Cisco Secure Access offers zero-trust network access, which replaces the legacy VPN by granting application-level access instead of full network access. The Secure Web Gateway plays an important role for us. Since we are in the financial sector, we look after bank data and financial institute data, which is related to financial decisions. This is one of the crucial roles for me to make sure that the data is not breached and we are also compliant with GDPR activities.
We have seen a radical optimization in terms of security operations. For a long time, my office bought separate point solutions, such as for DNS filtering. A traditional hardware VPN proxy could not resolve those issues.
Cisco Secure Access handles AI features by providing comprehensive visibility and control over generative AI applications. My organization is cloud-native, so we do not have on-premises deployment. We are using it on the public cloud itself via AWS , which serves as a virtual connector for us.
When it comes to reliability and overall trustworthiness, its AI capabilities help separate into two distinct categories: AI threat detection and enforcement.
What is most valuable?
Cisco Secure Access continuously checks identity, user context, and device postures. It has a dual capability client. One use case could be a secure gateway for a DNS layer. It is an Umbrella foundation, which blocks malicious domains at the DNS level.
It also spots any unwanted AI tools which are not governed by the officials. For the admin, the Cisco Secure Access dashboard provides a single, correlated health score for the user's device, network path, and application performance.
AI Assistant is a major operation feature from Cisco Secure Access. Security administrators use it extensively to simplify daily tasks.
In terms of identity management, we have VOYAM, which is our Vodafone internal tool, where all the employees are onboarded. If we do not have Cisco Secure Access connection, it does not allow us to open the applications without a secure network.
What needs improvement?
Cisco Secure Access is powerful, though there is no solution that is completely perfect. We have seen some pain points. One challenge is that the initial configuration and the policy migration can be quite complex, especially for large companies like us with legacy infrastructure. Another area for improvement could be that adjusting to the zero-trust model requires a cultural and operational shift for both users and the IT team, which can take some time.
Another potential friction point can be the authentication process, particularly if all of the people are repeatedly prompted for multi-factor authentication. All the time, I have to use my email, my password, and then I have to authenticate with the OTP.
For how long have I used the solution?
I have used the solution for three and a half years since joining in 2023.
What do I think about the stability of the solution?
Cisco Secure Access is highly stable for my company. I have not seen any downtime. It maintains a strong uptime record because it is cloud-native. However, employees in specific geographic areas might experience intermediate connection timeouts, slow web loading, and some brief delays.
What do I think about the scalability of the solution?
The platform is stable for us. For example, when our organization expanded or acquisitions happened, our employee numbers spiked, and Cisco Secure Access scaled instantly at the identity level. Cisco's platform is built in an elastic global cloud.
How are customer service and support?
The support experience was good. I have seen that the people are highly technical in their expertise.
What was our ROI?
In terms of the networking, cybersecurity, and automation tools, Cisco Secure Access saves our company a massive amount of time and money. I have seen some reports where my company's use of AI-driven automated networking has saved three hours and twenty minutes per person per day. This is a huge achievement for us.
What other advice do I have?
As an experience, I would definitely rate this at a nine because it really depends upon how we are having the connectivity itself. Cisco Secure Access stopped the repetitive data and the connection is seamless all the time. This makes us less annoyed to connect with the network again and again.
Another reason could be the simplification of IT management through the unified cloud dashboard, which consolidated multiple security functions for us and reduced the policy administrator efforts. In terms of the productivity, optimization, performance, and IT issues, Cisco Secure Access is playing every role. We have integration with Microsoft Azure . Cisco Secure Access makes the transition secure because it eliminates the security gaps during the migration phase. My overall rating for this solution is nine out of ten.
Hybrid access has unified secure cloud and data center connectivity for diverse client needs
What is our primary use case?
The major use cases for clients regarding Cisco Secure Access involve ZTNA , for when you require cloud services, like ZTNA , Secure Web Gateway, CASB , and Firewall as a Service. When you want to secure your on-premises equipment, on-premises data center, or services center, we provide the connectivity through the cloud, and at that moment, we use Cisco Secure Access .
The ZTNA part in Cisco is very important because it helps my customers to secure applications. When you configure your application or deploy your application on the on-premises data center and you want to access it where there is no trust on the inbound—whether you are an enterprise user, a remote user, or any other user coming through the cloud—then you will provide only the split tunnel or the tunnel between the cloud and your data center, which provides Cisco Secure Access.
CASB is also relevant when your services are deployed in many different cloud services, as you can use CASB in those scenarios.
What is most valuable?
The biggest benefit of Cisco Secure Access, compared to Fortinet or other solutions from Palo Alto or Prisma, is its adaptability to different network environments.
Customers appreciate the good features of Cisco Secure Access because it is a hybrid network solution. When there is a hybrid network, customers require Cisco Secure Access so they can access both cloud services and on-premises data center services.
I would say it is easy to manage Cisco Secure Access through this console. It is similar to managing a firewall, such as the FTD, and the console is straightforward.
What needs improvement?
I have seen that if the on-premises devices are Cisco devices, then we use Cisco SSE. However, when there are Fortinet devices, then we use FortiSSE, which indicates a potential area for improvement.
Cisco could add new features in the future, such as enhanced automation capabilities. They are providing automation in their technology, which is an improvement area. If you use automation tools like Red Hat, you can perform automation more effectively. Regarding AI, I think Cisco is doing well, though there is still room for improvement in AI capabilities.
For how long have I used the solution?
I started working with Cisco Secure Access relatively recently, but I understand how it works and how we submit proposals for Cisco Secure Access and Fortinet security solutions. When we require cloud security, then we provide Cisco Secure Access and SSE.
What do I think about the stability of the solution?
Cisco is stable and reliable.
What do I think about the scalability of the solution?
Scalability mostly depends on the architecture, not on the hardware or OEM. How you architect and define the network design determines scalability. If you do not have a good architecture, you cannot achieve scalability.
How are customer service and support?
I think Cisco's technical support is good. I believe that both Cisco technical support and Juniper technical support are very good.
What other advice do I have?
If the requirement is for Cisco equipment, then we propose Cisco Secure Access. If the requirement is for Fortinet, then we provide FortiSafety.
As a system implementer, I think the biggest advantage of the product is its usability in various scenarios.
I am not certain who is the leader when comparing Cisco with Fortinet and Palo Alto. Both are good at what they do, and sometimes we cannot use all the features of any product. We use specialized or customized features for our data center according to customer requirements, and all follow standard features and protocols, which are good.
The HTTP protocol is important for connecting through the cloud or establishing a tunnel. A VPN service and another tunnel between the cloud SSE and your on-premises data center are essential.
Cisco Secure Client provides the resource connector. There is a connector on the on-premises data center, so we establish a secure connection, mostly VPN or IPsec VPN, between the cloud and the data center.
I would say that Cisco Secure Access is effective in protection from ransomware and phishing attacks. It is a standard they are using, and when you are using Cisco devices, then you can rely on Cisco cloud.
Both deployment parts are not very difficult. It is straightforward.
I did not deploy Cisco Secure Access myself, but I understand from my team that it is not a big challenge.
Cisco could add new features in the future, such as enhanced automation capabilities. They are providing automation in their technology, which is an improvement area.
My experience is primarily with clients using a hybrid model.
We mostly integrate with Azure and AWS through the cloud.
I cannot say who is the leader when comparing Cisco with Fortinet and Palo Alto. Both are good at what they do, and sometimes we cannot use all the features of any product. We use specialized or customized features for our data center according to customer requirements, and all follow standard features and protocols, which are good.
I would rate Cisco support at an eight out of ten. The overall review rating for this product is nine out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Unified access security has simplified cloud architectures and reduced hardware dependency
What is our primary use case?
My role is to enable partners and customers in Cisco Secure Access