See and control everything
A world leader in retinal imaging, Optos’ eye examination products are used by thousands of ophthalmologists and optometrists worldwide. But network traffic and cybersecurity issues were holding the company back
- Optos were relying on an on-premises VPN platform for remote connectivity and network security.
- Separate legacy platforms were struggling to deliver the trusted security, performance, security protection, and user experience needed to drive Optos into the future.
- Connectivity was complex: remote users needed to boot up their devices, find their VPNs, and log in with multifactor authentication.
“It’s ironic that a company acclaimed for its ocular vision technology had only blurred visibility into its network traffic. Our split tunnel configuration was hard to inspect, the complex mix of different solutions was difficult to manage, and the remote user experience was disappointing."
- Graham Coffer
Lead Network Engineer, Optos
Simple, nimble, and secure hybrid working
Optos standardised on Prisma Access to protect the company’s application traffic. The secure access service edge (SASE) platform safeguards more than 600 hybrid sales, field support, and other teams with cloud-delivered Zero Trust network architecture and an intuitive, unified security product. The result is powerful security for all users, apps, and devices, no matter the location.
Connectivity has been transformed: the users now simply log in using their SAML-based authentication and connect automatically.
Graham comments, “There’s no manual configuration – it’s quick, simple, and secure. We benefit from true least-privileged access, continuous trust verification, and continuous security inspection. Being completely software-based, Prisma Access also scales easily.”
Autonomous Digital Experience Management (ADEM) is also used to assess Optos’s digital experience, application SLAs, and IT infrastructure – all from one dashboard. “The ADEM Experience Score gives us application performance metrics for all monitored applications,” says Graham. “For example, a user might claim that the network is running slowly, but we can see the fault lies in their router cable. We call this the ‘mean time to innocence’.”
This modern SASE strategy is connected to Optos’s Palo Alto Networks Next-Generation Firewalls, powered by Precision AI. This simple platform approach to cybersecurity reduces risk and complexity while accelerating threat identification and response.