Learn more about licensing options with Umbrella through the Secure MSP Center.
Block threats at the DNS layer in minutes without added latency, plus benefit from more web security and threat insights to expedite investigations. Compare our package options.
| DNS – Essentials | DNS – Advantage | SIG – Essentials | SIG – Advantage | |
|---|---|---|---|---|
Recursive DNS-layer security | ||||
Block access to domains with malware, phishing, and other threats | ||||
Application discovery, monitoring, blocking, and risk scoring | ||||
Filtering by domain or category | ||||
Application and network access | ||||
SD-WAN integration and third-party support | ||||
Secure web gateway (SWG) | ||||
Custom block/allow lists of domains | ||||
Custom block/allow lists of URLs | Partial | |||
Proxy and inspect web traffic | Partial | |||
Secure Malware Analytics (sandbox/block suspicious files) | 500 samples/day | |||
Secure Malware Analytics: manual file submission, full glove box and full SMA console access | ||||
Roaming security and client support | ||||
Roaming user protection for DNS and web traffic (through SWG) with Cisco Secure Client (* = DNS traffic only) | * | * | ||
Cloud Access Security Broker (CASB) | ||||
Advanced visibility and control of cloud app usage (including gen AI, OAuth-approved apps, tenant controls) | Limited | Limited | ||
Scan and remove malware from cloud-based file storage apps | Up to 2 apps | |||
SaaS Security Posture Management (SSPM) plus advanced capability through partnership with AppOmni (+ = partnership) | + | + | + | + |
Data Loss Prevention (DLP) | ||||
Integrated inline/SaaS API (cloud) data inspection and blocking to protect against sensitive data loss | ||||
Firewall as a Service (FWaaS) | ||||
Layers 3 and 4 control of IPS, ports, and protocols | ||||
Layer 7 control | ||||
Intrusion Prevention System (IPS) with decryption | Limited no decryption | |||
Remote Browser Isolation (RBI) | ||||
Isolated browsing (virtual air gap) enables safe use of known/potentially risky sites | Add-on | Add-on | ||
Identity and threat intelligence | ||||
Continuously updated threat intelligence from Cisco Talos | ||||
Deep domain, IP, and autonomous system number (ASN) data for rapid investigations (through Investigate API) SIEM and XDR interoperability | ||||
Integrations with multiple tools, include Cisco Splunk and XDR | ||||
Management | ||||
Single-management interface | ||||
Customize block page and warn page options | ||||
Reporting and logging | ||||
Real-time activity search, plus API to extract key events | ||||
Choose North America or Europe log storage | ||||
Cisco-managed S3 buckets or customer AWS S3 buckets | ||||
Support | ||||
24/7 Enhanced Software Support Service through email and phone (Premium upgrade available) | Add-on | Add-on | Add-on | Add-on |