• AU
  • magnifying glass search icon to open search field
  • Contact Us
  • Resources
  • Get support
  • Under Attack?
Palo Alto Networks logo
  • Products
  • Solutions
  • Services
  • Partners
  • Company
  • More
  • AU
    Language
  • Contact Us
  • Resources
  • Get support
  • Under Attack?
  • Unit 42 Threat Intelligence

Customer Case Study
Jan 31, 2014

STW Group

STW Group

Download
Download
asset thumbnail

Palo Alto Networks provides STW Group with greater network visibility and control, faster access to large downloads and more secure internet access

Background

STW Communications Group Limited is Australasia’s largest marketing content and communications services group, comprising more than 75 operating companies and 2,500 staff which focus on advertising, design, digital, public and government relations and specialist communications. STW Group works with local and global brands to devise strategies and campaigns that make an impact and has over 14 offices across Australia.

Business and context

With around 1,400 computer users across New South Wales and Victoria, many of whom have roles relying heavily on video and image content, STW Group’s employees require regular and continual access to tools such as YouTube and other video applications. This comes paired with the need for a reliable, high-speed Internet link to enable fast downloads of high-definition files on an ongoing basis.

STW Group prides itself on being a standout in its industry, with computing power and security that no competitor can match – a selling point its teams use when speaking with existing and prospective clients.

The problem

With more than 25 companies under one umbrella, STW Group’s IT department recently converged the disparate, legacy IT systems of all these businesses into one central IT environment.

“Our technology refresh was about providing consistency, availability and reliability to our users – all with complete transparency, so the only thing they noticed was better, faster access to information,” said Tom Ceglarek, Chief Information Officer for STW Group.

“As part of our technology refresh, we were planning to upgrade our Internet link from 50Mb to 300Mb, to ensure our system could handle the increasing amount of high definition video and large image files that are being transferred and downloaded across our network daily,” said Ceglarek. “The problem was that our legacy firewall was experiencing limitations with our old, lower-bandwidth link, so there was no way it was going to handle moving to a link that was six times the capacity.

In addition to finding a solution that could accommodate greater bandwidth, Ceglarek and team was also finding that the legacy firewall’s Intrusion Prevention System (IPS) capabilities were lacking.

“Whenever we switched it (IPS) on, there was a very noticeable impact on the network and it slowed key applications to a point where it was having a negative effect on the business,” said Ceglarek. “For example, when the IPS module was enabled on the legacy firewall, access to YouTube deteriorated so significantly that it damaged productivity. This meant we had to leave it turned off, which not only limited our visibility into user and application usage, but exposed our network to potential threats – a particularly real scenario in an environment with a high proportion of video uploads and downloads.”

The decision

Ceglarek and his team evaluated a range of high-end firewall solutions before deciding on the Palo Alto Networks PA-5020 next-generation firewall for STW Group.

The Palo Alto Networks PA-5000 Series next-generation firewalls provide granular visibility of threats and better control of Internet applications, with capabilities to isolate and protect data through security policies that are based on the user or group identity from within Active Directory. The user and group identity is then tied directly to a specific application, and the application can then be inspected for threats and unauthorized data transfer.

This level of granular control is unmatched by any firewall solution on the market. Palo Alto Networks next-generation firewalls are unique in their ability to identify and filter network traffic by user, instead of just by computer IP address. The PA-5000 Series enables businesses to accurately identify and control applications by user, scan content to stop threats, and prevent data leakage – all with a single network device.

“Palo Alto Networks solution was proxy-based and offered us content filtering functionality that we’ve tried to use in the past on our older system, unsuccessfully,” said Ceglarek. “On our Mac and Windows mixed-platform environment, the legacy solution rarely captured relevant information. What we love about the Palo Alto Networks next-generation firewall is the fact it integrates with our directory system and transparently gathers the intelligence we need, without users having to face downtime or move away from their computers.”

STW Group chose to team with local technology integrator, VMtech, to implement the Palo Alto Networks PA-5020.

Benefits

The business benefits to STW Group after working with VMtech to install the Palo Alto Networks next-generation firewall are clear and cover several areas of the business.

“The two key benefits we gained immediately after we plugged-in the new firewall were application and user visibility,” said Ceglarek. “We are now able to gain clear business intelligence and insights that we can use for planning and development of new systems and strategies thanks to the deep visibility the PA-5020 provides. This level of detail helps us in our reporting requirements back to the business and aids in building business cases for new tools, additional budget or alternative technologies.

“With our throughput moving from 50Mb to 300Mb, high-performance threat prevention is also a clear benefit, helping us to maintain strong security procedures and policies,” he continued. “The ease of policy creation and detailed logging functionality integrated with the Palo Alto Networks next-generation firewall have been a great help in locking down the policies required for our business.

“The PA-5020 next-generation firewall is simply a more fully featured platform than anything else available. The critical security functionality of identifying potentially exploitable network weaknesses and vulnerabilities is a huge factor for us, operating in such a highly competitive industry.

In addition, the ability to set application policy based on user has also proven beneficial to the STW Group.

”Palo Alto Networks solution offered us content filtering functionality that we’ve unsuccessfully tried to use in the past on our older proxy-based system. On our Mac and Windows mixed-platform environment, the legacy solution rarely captured relevant information. What we love about the Palo Alto Networks next-generation firewall is the fact it integrates with our directory system and transparently gathers the intelligence we need, without users having to face downtime or move away from their computers,” said Ceglarek.

Conclusion

STW Group’s next step with the PA-5020 is to use its reporting functionality to provide monthly business intelligence to the company’s leaders, to better illustrate how the Internet and network is being utilized.

“Working with VMtech to implement the Palo Alto Networks PA-5020 next-generation firewall has been a huge positive for our business,” concluded Ceglarek. “The solution has been very easy to implement and it has definitely fulfilled our needs. We know we can gain relevant, reliable information on the business and use that to greater benefit in the longer term – all while secure in the knowledge that we’re are continually protected.”

Share page on facebook Share page on linkedin Share page by an email
Related Resources

Access a wealth of educational materials, such as datasheets, whitepapers, critical threat reports, informative cybersecurity topics, and top research analyst reports

See all resources

Get the latest news, invites to events, and threat alerts

By submitting this form, you agree to our Terms of Use and acknowledge our Privacy Statement.

Products and Services

  • AI-Powered Network Security Platform
  • Secure AI by Design
  • Prisma AIRS
  • AI Access Security
  • Cloud Delivered Security Services
  • Advanced Threat Prevention
  • Advanced URL Filtering
  • Advanced WildFire
  • Advanced DNS Security
  • Enterprise Data Loss Prevention
  • Enterprise IoT Security
  • Medical IoT Security
  • Industrial OT Security
  • SaaS Security
  • Next-Generation Firewalls
  • Hardware Firewalls
  • Software Firewalls
  • Strata Cloud Manager
  • SD-WAN for NGFW
  • PAN-OS
  • Panorama
  • Secure Access Service Edge
  • Prisma SASE
  • Application Acceleration
  • Autonomous Digital Experience Management
  • Enterprise DLP
  • Prisma Access
  • Prisma Access Browser
  • Prisma SD-WAN
  • Remote Browser Isolation
  • SaaS Security
  • AI-Driven Security Operations Platform
  • Cloud Security
  • Cortex Cloud
  • Application Security
  • Cloud Posture Security
  • Cloud Runtime Security
  • Prisma Cloud
  • AI-Driven SOC
  • Cortex XSIAM
  • Cortex XDR
  • Cortex XSOAR
  • Cortex Xpanse
  • Unit 42 Managed Detection & Response
  • Managed XSIAM
  • Threat Intel and Incident Response Services
  • Proactive Assessments
  • Incident Response
  • Transform Your Security Strategy
  • Discover Threat Intelligence

Company

  • About Us
  • Careers
  • Contact Us
  • Corporate Responsibility
  • Customers
  • Investor Relations
  • Location
  • Newsroom

Popular Links

  • Blog
  • Communities
  • Content Library
  • Cyberpedia
  • Event Center
  • Manage Email Preferences
  • Products A-Z
  • Product Certifications
  • Report a Vulnerability
  • Sitemap
  • Tech Docs
  • Unit 42
  • Do Not Sell or Share My Personal Information
PAN logo
  • Privacy
  • Trust Center
  • Terms of Use
  • Documents

Copyright © 2025 Palo Alto Networks. All Rights Reserved

  • Youtube
  • Podcast
  • Facebook
  • LinkedIn
  • Twitter
  • Select your language