RiskCampaign

Firewall Campaign Risk Management & Rule Recertification

Track, prioritize, and recertify firewall rules through structured campaigns. Reduce audit preparation time with real-time risk scoring across Fortinet, Check Point, Palo Alto Networks, and Stormshield firewalls.

Campaign dashboard showing real-time compliance tracking and KPIs

A New Way to Track and Reduce Your Firewall Risk

Create campaigns with different risk levels and custom criteria

Automated Firewall Rule Detection & Prioritization

The new Campaign module allows you to automatically detect, track and prioritize firewall rules according to custom conditions defined by your security policy. Build targeted campaigns that align with your organization's compliance requirements and risk tolerance.

Benefit from Built-in Ruleblade Risk Items

Ruleblade provides more than 25 different risk items, allowing security teams to scope every campaign from multiple angles. Filter rules by risk level or compliance violations. All risk items are calculated in real-time by Blade Risk , our continuous firewall risk automation engine.

  • Custom risk criteria and thresholds
  • 25+ built-in security risk items
  • Multi-dimensional campaign filtering
  • Align campaigns with security policies
  • Firewall perimeter-based scoping
Campaign creation interface with risk items, risk level, and perimeter filters
Campaign filter summary showing selected risk items and perimeter criteria

Each Campaign is a Real-Time Board for Reviews

Track progress and manage recertification with instant visibility

Real-time campaign dashboard with KPIs, progress tracking, and firewall perimeter breakdown

Track Progress Instantly Through Built-in KPIs

Monitor campaign maturity in real-time with comprehensive metrics:

  • Total firewall rules in campaign scope
  • Available rules ready for review
  • Completed rules with approved changes
  • Number of firewall perimeters covered
  • Reviews performed and pending approvals
  • Risk reduction metrics over time

Firewall Perimeter Micro-Jurisdiction

Organize campaigns by firewall perimeters for granular tracking. Allow specific teams to work on their own dedicated firewalls . Built-in field remediation and bulk review capabilities accelerate the recertification process.

Simplified Firewall Rule Recertification

Automated remediation detection and centralized review process

Simplified Rule Recertification

Streamline the rule recertification process with automated workflows and bulk capabilities. Transform quarterly compliance reviews from days of manual work into hours of focused decision-making.

Centralized Rule Review Process

Manage all firewall rule reviews from a unified dashboard regardless of vendor (Fortinet, Check Point, Palo Alto, Stormshield). No more switching between multiple management interfaces or reconciling disparate reports.

Automatic Remediation Detection

Ruleblade continuously verifies whether firewall rules have effectively reduced risk for active campaigns. Risk-item scoped campaigns automatically confirm that the targeted risk item is no longer present. Risk-level scoped campaigns validate rules when they meet a lower risk threshold.

Automated Validation When Rules Are Corrected

Firewall rules showing corrected status with automated validation badges

Track which rules have been corrected and automatically mark them as compliant when risk items are resolved

Multi-Vendor Firewall Orchestration

Unified campaign management across all major firewall platforms

Fortinet FortiGate

Comprehensive FortiGate firewall rule recertification with native API integration

Check Point

Security Gateway and management server campaign orchestration

Palo Alto Networks

Support for Panorama and individual PAN-OS firewalls

Stormshield

Stormshield Network Security policy lifecycle management

Comprehensive Campaign Capabilities

Feature icon

Create campaigns with risk levels and custom criteria

Feature icon

Leverage 25+ built-in Ruleblade risk items

Feature icon

Track progress with real-time KPIs and metrics

Feature icon

Manage reviews per firewall perimeter

Feature icon

Automated remediation and risk validation

Feature icon

Bulk review capabilities for efficiency

Feature icon

Simplified rule recertification process

Feature icon

Continuous compliance verification

Compliance & Governance

Meet regulatory requirements with automated firewall rule reviews

PCI-DSS

Requirement 1.2.1: Quarterly firewall rule reviews with complete audit trail and documentation

GDPR

Article 32: Technical measures ensuring appropriate firewall security through regular policy reviews

ISO 27001

A.13.1.1: Network access control policies with documented review and recertification process

ANSSI

French cybersecurity agency guidelines for network security policy lifecycle management

Frequently Asked Questions About Firewall Campaign Risk Management

What is firewall rule recertification and why is it important?

Firewall rule recertification is the periodic review process where policy owners verify that existing firewall rules are still necessary, properly configured, and compliant with security policies. It's required by PCI-DSS (quarterly reviews), ISO 27001, and GDPR. Without regular recertification, firewall rule bases become bloated with outdated, unnecessary, or overly permissive rules, creating security gaps and compliance violations. Automated recertification campaigns reduce manual effort while maintaining continuous audit readiness.

How does campaign-based firewall review differ from continuous monitoring?

Continuous monitoring tracks firewall changes in real-time. Campaign-based reviews are structured, time-bound initiatives where specific rule sets are systematically recertified by firewall perimeter, age, risk score, or vendor. Blade Campaign combines both approaches: continuous risk scoring alerts you to issues immediately, while scheduled campaigns ensure comprehensive quarterly or annual reviews required for compliance frameworks like PCI-DSS and ISO 27001.

Which firewall vendors are supported for campaign management?

Blade Campaign provides unified orchestration for Fortinet FortiGate, Check Point Security Gateway, Palo Alto Networks (including Panorama), and Stormshield firewalls. All vendors are managed from a single platform with normalized rule views, cross-vendor compliance reporting, and consistent workflow automation - eliminating the need to learn multiple management interfaces.

How can I automate firewall rule recertification for PCI-DSS compliance?

PCI-DSS Requirement 1.2.1 mandates firewall rule reviews at least every six months. Blade Campaign automates this by: creating scheduled review campaigns for all in-scope firewalls, tracking bulk accept/reject/modify decisions with full audit trails, and showing all reviews completed with timestamps and approvers. This reduces audit preparation time from days to minutes. Automatic compliance reports are coming soon in Ruleblade.

What is the difference between firewall risk scoring and campaign reviews?

Risk scoring is continuous - every rule receives a dynamic risk score based on 25+ security controls (overly permissive rules, protocol risks, shadow IT, unused rules, etc.). Campaign reviews are periodic governance activities where stakeholders formally recertify rules. Blade Campaign combines both: high-risk rules are automatically flagged within campaigns for priority review, while low-risk rules can be bulk-approved, focusing human effort where it matters most.

Can I customize review workflows for different security perimeters?

Yes. Blade Campaign allows perimeter-based customization: DMZ firewall rules may require quarterly reviews with dual approval, while internal segmentation rules could have annual reviews with single-approver.

Does Blade Campaign support policy-as-code and API integration?

Absolutely. Blade Campaign is API-first, enabling integration with GitOps workflows, CI/CD pipelines, and SOAR platforms. You can define compliance policies as code, trigger campaigns via API, export review results programmatically, and integrate with SIEM systems for correlation. This supports modern DevSecOps practices and automated governance at scale.

Enterprise-level Automation, Accessible to Everyone

Whether you're starting with our free plan or need advanced enterprise solutions: we’re here to support your success.

Gain complete visibility and control over your firewall policies with our automation.

Copyright 2025 | All Rights Reserved | Privacy Policy