We use Cisco Umbrella to protect our DNS queries and the traffic going out.
Umbrella DNS Security Advantage
Cisco Systems, Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Helps enable us to effectively detect and remediate threats, free up IT staff time, and improve cybersecurity resilience
What is our primary use case?
How has it helped my organization?
Cisco Umbrella is transparent to my users; they are unaware of its presence. The documentation they use is solely for the IT staff. It is functioning exceptionally well, to the point where I no longer require extensive documentation for its operation.
It has reduced malware and mitigated risks associated with email links and various other factors, resulting in cost savings.
Cisco Umbrella helps secure our infrastructure, enabling us to effectively detect and remediate threats. Apart from host-based firewalls or malware attempting to bypass threat detection, we currently do not have any other alternatives. Although there may be competing solutions available, we have been using Umbrella, and it has served us well.
Cisco Umbrella helps free up IT staff time indirectly by reducing the number of calls we receive regarding malware or bad calls.
Our organization improved its cybersecurity resilience by effectively blocking threats with Cisco Umbrella.
What is most valuable?
We used one feature, which is aimed at protecting our users from accessing malware-infected websites and encountering associated problems.
What needs improvement?
I am unsure if Cisco Umbrella offers a Windows option for running the server. However, since I am not familiar with Linux, I had to rely on someone else to handle that aspect. I'm not completely convinced that using Windows would be a superior solution, as Linux is generally regarded as more stable. However, it would benefit individuals like myself who are unfamiliar with Linux.
For how long have I used the solution?
I have been using Cisco Umbrella for seven years.
What do I think about the stability of the solution?
I haven't needed to reboot the servers for years due to their excellent stability.
What do I think about the scalability of the solution?
For the size we have, Cisco Umbrella has worked out really well in terms of scalability.
Which solution did I use previously and why did I switch?
The solution that was previously used was acquired by Cisco and turned into Umbrella.
What was our ROI?
I have seen a return on investment using Cisco Umbrella.
What's my experience with pricing, setup cost, and licensing?
The pricing model is easier compared to some of the other solutions, and it is also competitive.
What other advice do I have?
I rate Cisco Umbrella a nine out of ten.
I recommend that people try Cisco Umbrella because I believe it is the best option available.
I have never needed to utilize technical support because the solution has consistently functioned effectively.
Very easy to accomplish content filtering, we don't need to do a lot of customization for it
What is our primary use case?
Our primary use case for Cisco Umbrella is for content filtering and for different access lists. We have different lists for different departments of what they can access.
How has it helped my organization?
It makes it really easy to accomplish content filtering. We don't have to do a lot of customization. You just click the box for the content category and it's up to date.
This ability is very important to my organization because we're in the financial sector and security is at a premium.
What is most valuable?
Cisco Umbrella is pretty straightforward and simple to use. We recently did social media blocking and it was really easy for our marketing department to access it. It's pretty straightforward.
It helped free up IT staff for other projects. It saves us a lot of time by blocking potential breaches. It's very reliable.
Umbrella has definitely helped us improve our cybersecurity resilience by blocking malicious links and adware.
What needs improvement?
I would like for them to continue building on IPS and IDS functionalities.
For how long have I used the solution?
We have been using Cisco Umbrella for five years.
What do I think about the stability of the solution?
It's been very reliable. I haven't had any issues with it.
What do I think about the scalability of the solution?
The scalability is easy. It's deployed through group policies.
Which solution did I use previously and why did I switch?
We're a Cisco shop. We have a lot of their products.
What was our ROI?
We have seen ROI through its pop-up blocking.
What other advice do I have?
We hope that Cisco will help us consolidate tools more than it is now by incorporating more IPS and IDS functionality.
My advice to someone considering Cisco Umbrella would be to focus on how easy is to use the GUI and how easy it is to navigate. You pretty much just click a box and the content categories work.
I would rate Cisco Umbrella a ten out of ten.
If your needs vary by department, I would advise making different groups for different departments. It's easier to do it that way than to set it up and go back to tie it to different AV groups.
Prevented a countless number of attacks on our organization
What is our primary use case?
I use Cisco Umbrella mainly for content filtering. We use it to ensure that my users don't access something they shouldn't be accessing. It's just like pushing and scan prevention.
How has it helped my organization?
There are a countless number of attacks that Cisco Umbrella prevented from happening in our organization.
What is most valuable?
Suppose we see a very silly entry where a bad actor tries to impersonate a good website or service we continuously use. They buy the domain, misspell it somehow, and then inject that in a link. Suppose my email scanning tools did not detect or notice that for one reason or another, and we identified it later. We immediately block impersonating users from accessing services over Cisco Umbrella-controlled devices.
What needs improvement?
iOS devices and mobiles are huge in my environment right now, and I cannot run them on Cisco Umbrella 24/7. Each user has one desktop but three or four mobile devices on two iPads, and a phone or multiple phones and an iPad, or vice versa. I'd like to turn on my Cisco Umbrella on the network level, at least on my office premise. However, my security team would like to keep all devices on-network and off-network to be connected or managed by Cisco Umbrella all the time. So their use cases are higher and stronger than my mobile ones. Sometimes we try to work around my mobile ones with MDM, but sometimes it would be way more flexible to have both running side-by-side.
Also, in the Apple services or the Apple space, between my Cisco Umbrella and between my Apple updates, something breaks. I'm not sure if it's because of a policy that my company did before I joined them or if it's something that's happening due to a conflict in the configuration somewhere. So we always have to completely get the device or the endpoint out of any filtration to get the policies. We get everything pushed properly from Apple to the device and provision it afterward. Then we add the Cisco Umbrella roaming client to it.
For how long have I used the solution?
Cisco Umbrella has been running in my environment for about five years, and it was there even a couple of years before I joined my company.
What do I think about the stability of the solution?
We've never really seen any service outages or downtime with Cisco Umbrella. It is amazing for a product to be running such a long marathon for the amount of time that I have witnessed it.
What do I think about the scalability of the solution?
Cisco Umbrella is very flexible. Before, after, and during the years of the pandemic, my environment went up and down concerning headcount and use cases. Since Cisco Umbrella is pretty flexible, it was able to scale with us.
How are customer service and support?
On the technical side, we always get our questions answered in a reasonable turnover. There was an incident when I had two instances running, and I tried to research it first and run discovery with it. When I couldn't find the answer immediately, we called Cisco, and somebody over the phone was very helpful and told us within ten minutes that it wouldn't work for us.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup was pretty straightforward. The solution's documentation is great. My environment needed a little bit of customization to match the deployment configuration or documentation, and it worked fine.
What about the implementation team?
We implemented Cisco Umbrella through an in-house team.
What was our ROI?
We have seen a return on investment with Cisco Umbrella regarding the working hours and the ticketing. The tickets do not have to get escalated to a network engineer or to a network person to look at. They could be worked on by someone on the app on tier one or tier two before needing an escalation if it even needs it.
Which other solutions did I evaluate?
I was onboarded to an environment where Cisco Umbrella was already running. I'm sure my predecessor evaluated other products during the same time, and then they decided to start and stick with Cisco Umbrella for the past six-plus years for its efficiency.
What other advice do I have?
The security team deployed Cisco Umbrella in our organization. I deployed the solution briefly on my network infrastructure, and then we decided to switch that off because we noticed a conflict when we had it running at two different places.
I cannot really speak so much on the infrastructure because until recently, whenever we installed Cisco clients on a machine that's running a server, the machine broke. The reason for that is something that happens in the trust relationship between the server and the domain controller. We opened a support case with Cisco Umbrella, and they told us the server was not supported. Servers are not meant for browsing, and the environment that they are in should not be open to the entire world.
My network team is not that large. For content filtering, when a request comes in to unblock a website saying that it is misclassified, it's super easy to give enough access or limited access to the support desk agent or analyst that's getting your clients' calls. The turnover time is much quicker and much shorter. We do not have to deal with maintenance windows or change management times because it's easy to go to a portal or website and change it versus changing a configuration on a firewall. It helps a lot with hybrid environments, especially during the unprecedented times we had a couple of years ago when we all decided to work from home. My environment was 90% ready to work from home, and one of the reasons for that was Cisco Umbrella.
In a 2000-user environment, Cisco Umbrella has helped save at least 14 hours weekly.
Cisco Umbrella has changed the way that we have access to a tool. It helps us do content filtering. I do not need DNS servers running anymore on my network because I identify it on the Cisco Umbrella portal, and everybody gets the configuration within 30 seconds to a minute. I do not have to deal with DNS changes, especially for internal tools and websites.
Cisco Umbrella has helped our organization improve its cybersecurity resilience for the end clients by having that on-off network flexibility. I do not necessarily have everybody run on a VPN all the time.
The nearest product to Cisco Umbrella is not even comparable. Cisco Umbrella's feature richness and compatibility are becoming an industry standard. We do not ask if an environment has a DNS server running in it or not. Instead, today we ask whether that is a Cisco Umbrella environment.
Overall, I rate Cisco Umbrella ten out of ten.
Offers good DNS protection, domain blocking, SIP component, and roaming client features
What is our primary use case?
We use Cisco Umbrella to deploy policies and configurations for our company internally and some customers.
How has it helped my organization?
We use a lot of different Cisco products like Endpoint and Umbrella. With Cisco Umbrella, we get a total picture of security internally, especially for external sources or malware threats. I've only deployed it on one customer, and it's working well so far. We're still going through the full deployment process, but the customer likes the solution, which has worked well.
What is most valuable?
DNS protection, domain blocking, SIP component, and the Cisco Umbrella roaming client are the valuable features of Cisco Umbrella. With the way the industry is now, even if you're not in the network, you could still get the policies for your organization applied to your computer via the actual hardware or the user.
What needs improvement?
Cisco Umbrella should add some more documentation on proxies. Different organizations utilize proxies in their environment. With Umbrella, based on my experience, there are some deployment issues. It would be good to have some more documentation that can walk you step by step. The tech support is about 90% and needs to provide more step-by-step processing of the procedure and also a little more background on the solution.
For how long have I used the solution?
I have been using Cisco Umbrella for about a year.
What do I think about the stability of the solution?
Cisco Umbrella has good stability.
What do I think about the scalability of the solution?
Cisco Umbrella's scalability works fine. If it's in the cloud and you're pointing to the Cisco Umbrella DNS servers, the more users you have, you add a bigger package or a bigger tier.
How are customer service and support?
Cisco Umbrella's technical support is pretty good. The biggest thing with Cisco support is that you need to ensure you provide all the necessary information. If you give a vague problem, they will give you a lot of potential solutions. With Cisco support, if you get more granular with your information and accurate documentation, you should be able to find a good solution. They usually are very helpful and useful.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Our company chose Cisco Umbrella because it's a SaaS solution. We're working to incorporate different elements into our network internally. That helps us give prospective clients or customers real-life experiences.
What was our ROI?
The basic package of Cisco Umbrella with the DNS component has been implemented in our customer's network and started working right away. I check the logs, and both the logs and the policy are working. You get a good return on investment from the very basic package in the beginning. You get those same benefits as you move up to the top tiers.
What's my experience with pricing, setup cost, and licensing?
Cisco Umbrella has four tiers, and with each tier, there are different levels of abilities in those packages. You get what you pay for if you break the solution up into tiers.
What other advice do I have?
Cisco Umbrella is deployed via the cloud in our organization.
I would give Cisco Umbrella nine out of ten for securing our infrastructure from end to end. The solution does what it's stated that it would do. With different packages, you get different levels of security. However, the main component of Cisco Umbrella was the DNS component or the DNS protection, which it does very well.
Once you first deploy Cisco Umbrella, you might not have to go back and update the policy config. However, in and of itself, it still requires a level of project time, deployment, design, documentation, and implementation.
I deployed an integration between SecureX and Umbrella for one of our customers. I can jump on SecureX and see if there's any block. I can read the information on SecureX, and then if I need to go to Umbrella, I can click the launch icon, and it will take me right there. That's pretty good and useful.
Cisco Umbrella's ability to consolidate tools has had a good effect on our customer's security infrastructure. SecureX is a big component for a lot of Cisco security suites, and they can integrate all that together. We've integrated a lot of our Cisco products into that one SecureX platform. I don't particularly deal with the internal because that's more our IT department. However, I've viewed the dashboard, and it's very useful. With the customer, we deployed Endpoint, we deployed Umbrella, and we'll be deploying Duo, and then those things can be integrated into SecureX.
Cisco Umbrella's DNS and SecureWeb Gateway components have helped improve our organization's cybersecurity resilience. More granular policies could be built for security, implementation, and ensuring no threats enter our internal organization.
If you're looking for DNS protection without a bunch of firewall commands and configurations, a simple deployment, and a policy build, Cisco Umbrella is a good way to go. It's deployed in the cloud and not hard to deploy. So if you want to get something up and going right away, Cisco Umbrella is a good bet.
Implementing Cisco Umbrella into our environment was pretty easy. I worked on it, and once they gave me access, I did my research and built the policies in adherence to whatever they asked.
Overall, I rate Cisco Umbrella a nine out of ten.
DNS is the First line of Defence
Solid DNS Filter Software
The best solution for detection, blocking and high visibility of threats from the network.
I love that it provides a friendly interface, easy to interact with, organized and intuitive, so even without having extensive knowledge of this type of software, it is easy to use, and in case of doubts or any assistance, its support team is always present, and its Responses are quick and effective.
Although there is much other software that can provide similar functions, Cisco Umbrella differs in delivering solid and innovative protection since it is based on artificial intelligence; its security does not leave gaps against threats as it acts by detecting and blocking threats before they reach the system, this is how we can keep our endpoints free and clean from any hazards such as malware, trojans, botnets and more.
With Umbrella, we achieve endpoints free of threats, a stable network, non-malicious URLs, better control of our applications and even a more organized security administration without gaps and with high visibility.
Umbrella is ideal for closing gaps; you only need an exemplary configuration and apply effective security policies.
We have managed to reduce the detection time since it is based on AI has brought us the advantage of acting faster when blocking threats; our team is more productive, and our security has been strengthened since Umbrella closes our gaps against threats. In addition, its easy configuration, intuitive interface and centralized console give us high visibility of any threat from the network. With Umbrella, we keep our system clean, and our clients and remote workforce have more peace of mind because they know we are protected.
cloud security tool providing protection against Internet threats such as malware, phishing etc.
Real-time malware and phishing protection
Blocking of malicious websites and inappropriate content
Protection on all devices, including those outside the organization's network.
Using Umbrella helps ensure robust Internet security and threat protection.
It is very expensive and more if you depend on multiple licenses.
The lack of platform customization is notorious.
Its proactive real-time protection sometimes interferes with legitimate traffic as it occasionally blocks sites or applications of the organization.
Being a cloud-focused platform, all of its functionality depends on network availability.