Sophos ZTNA unlocks SaaS app control and so much more

For many of you, Sophos ZTNA has been a staple in your security stack for a few years now, providing unmatched protection and a seamless user experience for securing access to your private applications.

For many of you, Sophos ZTNA has been a staple in your security stack for a few years now, providing unmatched protection and a seamless user experience for securing access to your private applications. 

What you may not realize is that the same license now extends Zero Trust to your SaaS and web apps as well — through Sophos Protected Browser, included at no extra charge as part of Sophos Workspace Protection.

As you may have seen, on February 28, all Sophos ZTNA customers were automatically upgraded to the full Sophos Workspace Protection bundle. Sophos Protected Browser is a key component of that bundle and is waiting for you to switch on today.

Here’s what it can do…

Extend Zero Trust from your private apps to SaaS

ZTNA already makes your private apps invisible to the internet and grants access only to users and devices that meet policy. Sophos Protected Browser applies the same Zero Trust model to the browser.  The browser is where over 85% of work happens, and naturally, SaaS applications lead here.

Control who can reach your sanctioned SaaS applications, manage how data is accessed between SaaS apps and the user, device, and other apps, and block the ones you haven’t approved.

  • Apply data boundary controls inside those apps — govern copy/paste, screen captures, printing, and uploads/downloads. It’s never been easier to ensure data stays within sanctioned applications and isn’t easily shared via personal email or other non-sanctioned applications.
  • Get visibility into shadow IT and shadow AI usage, and set guardrails for safe GenAI adoption.
  • Enforce the same device posture and Synchronized Security Heartbeat checks you already rely on in ZTNA.

Review this article to see how easy it is to set up SaaS app access control.

A better experience for your RDP and SSH users

If your people connect to servers over RDP or SSH, Protected Browser replaces the old client-based workflow with a rich RDP and SSH client built right into the browser:

  • Agentless access — no separate RDP or SSH client to install, configure, or maintain.
  • Users simply launch Protected Browser, click the remote desktop icon, and connect.
  • Files moved to or from the RDP host are automatically scanned before transfer — clean files go through, threats don’t.
  • Access still honors your ZTNA policies and device health, so a smoother experience never means weaker security.

About Author

What do you feel about this?

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.