Enterprises navigating hybrid and multi-cloud environments often face increasing complexity when trying to maintain consistent visibility, security, and compliance across their expanding infrastructure. Tufin’s latest release, Orchestration Suite R25-1, directly addresses these challenges by introducing a series of enhancements aimed at helping security teams better manage the dynamic nature of modern networks.
The update brings three major advancements: expanded device support, improved cloud integration, and strengthened security policy enforcement. These updates are designed to support organizations managing security across diverse architectures, including firewalls, cloud-native services, and SASE platforms.
Broader Device Coverage, Streamlined Automation
One of the central updates in R25-1 is its expanded support for a growing range of network devices. The release introduces new integrations with Arista EOS and Cisco Meraki, as well as enhancements to VMware NSX-T Gateway Firewall support. These integrations enable deeper visibility and more efficient policy management across mixed infrastructure setups. Tufin also continues to build on its security automation capabilities. With the addition of Access Request Automation for Arista and Meraki, and policy change automation for Microsoft Azure Application Security Groups (ASGs), security teams can manage requests and changes more consistently—without introducing delays or policy gaps.
Reinforced Compliance Across Cloud Platforms
TOS R25-1 also delivers more proactive compliance monitoring for public cloud environments. By identifying risks and unused rules in Azure Network Security Groups (NSG) and AWS Security Groups, the system helps teams reduce configuration drift and maintain a tighter security posture. Cleanup capabilities, including AWS rule removal and Zscaler rule and object analysis, make it easier to eliminate redundant or outdated configurations that may otherwise go unnoticed.
Integration with Zscaler and SASE Environments
With organizations increasingly routing internet-bound traffic through SASE edge solutions, visibility into how traffic is managed becomes essential. Tufin addresses this by extending its integration with Zscaler Internet Access (ZIA). Security teams gain a centralized view of traffic flows and policies, enabling better validation and troubleshooting across both cloud and on-prem sites. This integration ensures that policies are enforced consistently, even when traffic routes change dynamically across environments.
Built for Future Scalability
The “any-device support” approach introduced in this release sets the groundwork for rapid integration of future technologies. As network environments continue to evolve, this flexibility allows enterprises to maintain consistent oversight and control without waiting on vendor-specific updates. Tufin Orchestration Suite R25-1 aligns network security with the pace of digital transformation. By extending automation, improving cloud visibility, and unifying security policy enforcement, the platform is well-positioned to support teams managing complex, distributed infrastructures.