Implementing the next generation firewall (NGFW) in organisations, business challenges and lessons learned
2025 (English)Independent thesis Advanced level (degree of Master (Two Years)), 10 credits / 15 HE credits
Student thesis
Abstract [en]
In recent years, organizations have faced constant, emerging, and complex cyber threats that traditional and basic firewalls can no longer manage. Next-generation firewalls (NGFW) may provide an answer via deep packet inspection and advanced capabilities such as intrusion prevention and application-aware controls. This thesis, based on semi-structured interviews and a survey, examined NGFW adoption with sixteen cybersecurity professionals from organizations in healthcare, education, industry and IT. The participants outlined six recurring themes: motivations for NGFW adoption, how decisions were made, implementation, cost, challenges, and expectations. A principal issue expressed was the rising number of application layer attacks and the pressure of complying with standards. During the implementation process, many participants also responded that an easy collaboration with existing vendors was important. Most organizations described a gradual process, but most started with a pilot and managed two systems in parallel, also supported by vendor support; this all went relatively well. However, participants underlined the priority of training staff and tuning features within their new system. Routine concerns were migrating legacy rules and combating alert fatigue once all actions were completed. Although some of the participants were cautiously optimistic about recognizing the benefit of an AI-enhanced feature, it was the individual oversight of the experts that most favoured it. The lessons, experiences, and insights concepts that will result from this research may be beneficial and informative to other organizations that are beginning to deploy their own NGFW and to be useful in future research initiatives.
Place, publisher, year, edition, pages
2025. , p. i, 40
Keywords [en]
Next-generation firewalls (NGFWs), cybersecurity, implementation, network security, firewall adoption, encrypted traffic inspection, zero trust architecture, AI in firewall, organizational security strategy, semi-structured interviews, qualitative research, policy enforcement, security operations, regulatory compliance, (GDPR), phased deployment, information security challenges, SSL/TLS decryption, threat detection, digital trust, security awareness and training
National Category
Information Systems, Social aspects
Identifiers
URN: urn:nbn:se:his:diva-25321OAI: oai:DiVA.org:his-25321DiVA, id: diva2:1973726
Subject / course
Informationsteknologi
Educational program
Privacy, Information and Cyber Security - Master's Programme 120 ECTS
Supervisors
Examiners
Note
På titelbladet är handledarens efternamn stavat McGregor.
2025-06-192025-06-192025-09-29Bibliographically approved