Provider evidence
Forcepoint
Forcepoint’s identity traces back to Websense, founded in 1994, and its whole platform is built around a data-first philosophy rather than a network- or device-first one - the pitch is that policy should follow the data itself, not the network path or the device it happens to be on. That heritage shows up as real, credible analyst recognition specifically for data loss prevention: Frost & Sullivan’s Global DLP Company of the Year for two consecutive years, an IDC MarketScape Leader placement for worldwide DLP in 2025, and a Forrester Wave Strong Performer placement for data security platforms in Q1 2025.
Technology vendor · UK entity not yet reviewed
Evidence profile: Sector evidence not yet reviewed; platform
Research only
https://www.forcepoint.com/product/secure-sd-wanThese capabilities use the same evidence as the provider shortlist and matching. A missing finding is not evidence that a provider lacks the capability.
Capability evidence
| Capability | Finding | Evidence and qualification |
|---|---|---|
| Fully managed service | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| DIY / self-managed model | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Co-managed service | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Multi-tenant MSP / white-label support | Partial | Forcepoint Administrative Domain License enables multiple customer environments to be managed through a single management server. The SD-WAN Manager datasheet evidences tenant isolation and delegated administration: it also states 'Allows division of the environment into isolated configuration domains' and names MSSPs directly. Graded partial rather than yes because no evidence of branded or white-label portals was found on any page reviewed, and the partner programme page contains no MSP, MSSP, white label or multi-tenant terms. Source · Evidence dated 2026-07-29 |
| Professional services and migration support | Partial | Resources and deliverables aligned to your deployment needs and timeline Packaged implementation services and consulting are published, and the Cybersecurity Services page lists 'Implementation Packages for our award-winning products' and 'Data Security Consulting customized to your organization's needs'. Graded partial because the pages reviewed do not describe discovery, pilots, staging, migration runbooks or rollback plans. Source · Evidence dated 2026-07-29 |
| Last-mile circuit management | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Lifecycle management | Partial | Next Generation Firewall (NGFW) appliances (both N and S-series) now have RMA support included Hardware replacement is included in the support contract, with an option to 'upgrade to next business day or same day RMA service'. The SD-WAN Manager datasheet adds 'Upgrades and dynamic update packages for managed devices can be automatically downloaded' and 'Remote Upgrades One-click fail-safe remote upgrade of the managed engines'. Graded partial because upgrades and patching are customer-executed platform features rather than work performed for the customer as part of a service, and no end-of-life planning service was found. Source · Evidence dated 2026-07-29 |
| Flexible commercial model | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Encrypted overlay fabric | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Dynamic path selection | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Active-active link utilisation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Application-aware routing | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| QoS and traffic shaping | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Packet loss remediation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Local internet breakout | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| MPLS coexistence and migration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Cellular and 5G support | Yes | For LTE without Wi-Fi, Forcepoint offers the 120L model with LTE support and 125L model with LTE/5G support. The 120 Series datasheet also states 'Optional Wi-Fi and LTE/5G connectivity' and lists supported LTE and 5G NR band tables, so integrated cellular is a shipped hardware capability. SIM management and signal monitoring specifics were not located in the pages reviewed. Source · Evidence dated 2026-07-29 |
| Cloud on-ramp | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Public cloud gateways | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Private PoPs / dedicated PoPs | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Private global backbone | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Regional breakout and data residency | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Multi-cloud transit fabric | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Flexible edge form factors | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| High availability design | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| SLA-backed service fabric | Partial | 24/7 availability for your most critical issues. The Technical Support Offerings datasheet publishes tiered severity response targets ('Severity 1 1 hour' for Essential, 'Severity 1 45 minutes' for Enhanced, 'Severity 1 30 minutes' for Enterprise) and states 'Severity 1 issues use a follow-the-sun approach; Forcepoint technicians are always available'. Graded partial because these are support response commitments only: no uptime percentage, and no latency, jitter, loss or change handling commitments were found in the pages reviewed. Source · Evidence dated 2026-07-29 |
| Integrated next-generation firewall | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Full SASE platform | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| SSE ecosystem integration | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Zero Trust Network Access | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Secure web gateway | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| CASB capability | Yes | Native, confirmed explicitly alongside inline modes [10] Source · Evidence dated 2026-07-22 |
| Data loss prevention | Yes | Native, confirmed - Forcepoint DLP provides 'continuous monitoring' across data at rest, in use, and in transit, per Forcepoint's own materials and independent analyst recognition [36] Source · Evidence dated 2026-07-22 |
| Remote user access | Yes | Native, confirmed via the CASB/SWG gateway architecture supporting unmanaged devices without requiring an agent [10] Source · Evidence dated 2026-07-22 |
| SOC/SIEM/SOAR integration | Yes | See the published provider record for source context; confirm the scope for your deployment. |
| Centralised orchestration | Yes | Confirmed as part of ARIA's function - assists in 'creating, refining, and enforcing data protection policies' [25] Same as above Source · Evidence dated 2026-07-22 |
| Customer portal and RBAC | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Observability and digital experience monitoring | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| APIs and automation | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |
| Managed service assurance | Not confirmed | See the published provider record for source context; confirm the scope for your deployment. |