
Only 7% of network security pros take the time to automate their firewall audit processes.

Approximately 40% of security professionals spend a month or more on firewall audits annually.

85% of security professionals say that at least half of their firewall rule changes are poorly designed and must be modified.

67% of security pros feel that poor change management processes greatly increase the chance of a breach.

86% plan on rolling out next-generation firewalls over the next year.

23% of security professionals have never audited their firewalls.

Worse yet, 22% of security pros have falsified their audits or outright cheated, claiming they didn’t have enough time to do them.

11% of security professionals don’t have a clue how much time it would take to audit their firewalls.

Just under 85% of security pros don’t know when firewall rules need to be decommissioned or recertified. 43% of that group manages the process manually.

47% of security pros attempt to find redundant rules manually. 20% don’t check at all.

Why security pros cheat on audits:Lack of timeFeeling the audit’s requirements are irrelevant to the businessFear the network security team would seem incompetent

More than 25% of professionals said that it usually takes hours to days to design a firewall rule change.

85% of need to fix poorly designed firewall configurations.

66% are afraid that their change management process might expose their company to a breach.

56% of those who worry about a change-management-related breach are concerned about their lack of formal processes to handle firewall rule changes.