Guest

Next-Generation Intrusion Prevention System (NGIPS)

Deep visibility. Preeminent intelligence. Superior protection.

Contact us

Network security for the threats you face

Get better protection against today’s sophisticated attacks. Stop more threats, gain more insight into your environment, and protect your digital business initiatives. Cisco Firepower Next-Generation IPS (NGIPS) threat appliances combine superior visibility, embedded security intelligence, automated analysis, and industry-leading threat effectiveness. 

  • data-graphics-100

    Leading breach detection

    NSS Labs
  • infographic2-156x135
  • infographic3-156x135

    Savings from security automation

    SANS Institute

NGIPS features and benefits

Real-time-contextual-awareness-600x338

Real-time contextual awareness

If you can’t see it, you can’t protect it. Gain deep insight into your network devices, applications, users, operating systems, files, and more. Use this information to better understand network behavior, identify out-of-compliance situations, and evaluate intrusion events.

Point-in-Time-Malware-Checking-600x338

Advanced threat protection

Address known and unknown threats through fully integrated advanced malware protection (AMP) and sandboxing solutions. Rapidly detect, block, contain, and remediate advanced threats. Our median time to detection (MTTD) is an industry-leading 13 hours.

Global-Threat-Intelligence-600x338

Global threat intelligence

Get up-to-the-minute threat protection through Cisco’s worldwide threat visibility and analysis organization. Their efforts result in more than 35,000 vulnerability-focused IPS rules, advanced malware detections, and embedded IP-based, URL-based, and DNS-based security intelligence.

Intelligent-security-automation-600x338

Intelligent security automation

Correlate threat events with the intended target’s vulnerabilities to prioritize the threats that matter most. Analyze your network vulnerabilities to identify needed security policies. Associate users with our intrusion events to speed investigations. Do more with less staff.

firepower-4100-600x338

High-performance appliances

Cisco Firepower (4100 Series and 9000 Series) and FirePOWER (7000 Series and 8000 Series) appliances are purpose-built to provide the right throughput, modular design, and carrier-class scalability. They incorporate a low-latency, single-pass design and include fail-to-wire interfaces.

View at-a-glance (PDF - 509 KB) | View data sheet

Find the best NGIPS for you

Cisco Firepower NGIPS is available on many appliance models and in both physical and virtual form factors. Choose the best option for your use case and throughput needs.

Firepower 4100 Series

Firepower 4100 Series

  • Designed for Internet-edge, high-performance environments
  • Threat inspection from 10 to 20 Gbps
  • Includes AVC, with AMP and URL options
  • Fail-to-wire interfaces available

FirePOWER 7000 Series

FirePOWER 7000 Series

  • Designed for sales and remote offices
  • Threat inspection from 50 Mbps to 1.25 Gbps
  • 8-12 monitoring interfaces
  • Small Form-Factor Pluggable (SFP): 2 models

Firepower 9000 Series

Firepower 9000 Series

  • Designed for service provider and data center deployments
  • Threat inspection up to 90 Gbps
  • Includes AVC, with AMP and URL options
  • Fail-to-wire interfaces available

NGIPSv for VMware

NGIPSv for VMware

  • Small branch offices and remote locations
  • Threat inspection up to 800 Mbps
  • East-west data center/PCI critical servers
  • Full NGIPS and options functionality

FirePOWER 8000 Series

FirePOWER 8000 Series

  • Designed for campus and enterprise deployments
  • Threat inspection up to 60 Gbps
  • Stackable scalability
  • Fail-to-wire interfaces available

Firepower Threat Defense for ISR

Firepower Threat Defense for ISR

  • Designed for branch and remote offices
  • Threat inspection up to 800 Mbps
  • Deployed on ISR G2 and 4000 Series routers
  • Increase security, reduce WAN costs

AS91226_720x480

Upgrade to Firepower NGIPS

If you have a Cisco IPS or Sourcefire NGIPS, find an upgrade path that’s best for you. (PDF - 328 KB)

Download the guide

Related products

firepower-management-600x338

Complete and unified management over Firepower NGIPS, Firepower NGFW, and Cisco AMP deployments.

amp-threat-grid-video-600x338

This integrated sandboxing technology produces both static and dynamic malware analysis.

amp-news-600x338

Get rapid malware detection, tracking, containment, and remediation for advanced threat protection.

next-generation-ise-600x338

Our access control policy platform is integrated with Firepower NGIPS to provide rapid threat containment.

Improve your results with our services

advisory-156x117

Work with our strategic and technical advisors to align security, compliance, and threat management with your business goals.

implementation-156x117

Reduce expenses and increase security with offerings that range from monitoring and management to managed threat solutions.

managed-156x117

Design the best technical architecture for your company, plus speed the adoption of and optimize your network security technologies.

support-156x117

Increase efficiency, lower support costs, and improve network availability with our award-winning product support services.

News and events

The case for NGIPS

The case for NGIPS

Get visibility, threat detection, and response where firewalls are off limits.

Gartner: Cisco is IPS leader

Gartner: Cisco is IPS leader

Cisco Next-Generation IPS (NGIPS) leads in the Magic Quadrant.

NSS Labs validates our NGIPS

NSS Labs validates our NGIPS

Cisco FirePOWER again leads in efficacy, throughput, and low TCO.

For partners

Are you a Cisco partner?  Log in to see additional resources.

Looking for a solution from a Cisco partner? Connect with our partner ecosystem.