- Most companies fail to control high difficulty compliance, reports allegations
- Many come short at critical levels, which puts them at risk
- Incorrectly configured firewalls could lead to downtime and cyberattacks
Firewalls is a staple for business cyber security and next to multifactor approval (MFA) and Endpoint Protection Solutions – Essentials in any safety -technical stack.
How many companies, however, run the wrong configurated firewall that gets in the way instead of helping?
A new report from Firemon found that 60% of Enterprise Firewalls fails with high difficulty observation control “immediately after evaluation”, with another third (34%) “Failing briefly at critical levels”.
How to remain safe?
For researchers, this is a sign of deeper government issues that can result in audit defects, operational downtime or increased threat exposure.
The problems are not included in a single environment – on -prem, cloud and hybrid, everyone suffering from the same evil – misunderstandings, obsolete rules and bloated policy leading to reduced performance, observance risks and more.
Firemon found that 95% of application objects and 82% of service objects show zero use, which means they are unnecessary overhead and just expand the attack surface.
A third (30%) of firewall rules are also completely unused, with 62.6%missing any owner or documentation, leading to audit holes and operational blind spots.
Finally, more than 10% of the rules are either superfluous or shady, reducing performance and hiding dangerous misunderstandings.
“Firewall complexity is not just a configuration problem, it is a threat to resilience and confidence,” said Jody Brazil, CEO and founder of Firemon. “Security teams are buried under policies they cannot explain, map business goals or rule in scale.



