{"id":8131,"date":"2025-11-19T10:00:13","date_gmt":"2025-11-19T16:00:13","guid":{"rendered":"https:\/\/blogs.infoblox.com\/?p=12578"},"modified":"2025-11-19T10:00:13","modified_gmt":"2025-11-19T16:00:13","slug":"bringing-predictive-security-to-the-aws-network-perimeter","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2025\/11\/19\/bringing-predictive-security-to-the-aws-network-perimeter\/","title":{"rendered":"Bringing Predictive Security to the AWS Network Perimeter"},"content":{"rendered":"<p>Building on our collaboration with AWS, we\u2019re announcing the availability of Infoblox managed rules on AWS Marketplace, part of AWS Marketplace managed rules for AWS Network Firewall. This integration delivers predictive, DNS-based threat intelligence directly within AWS Network Firewall, enabling organizations to strengthen their AWS Cloud network perimeter and stop threats before they impact workloads. <\/p>\n<p><strong><a href=\"https:\/\/www.infoblox.com\/news\/news-events\/press-releases\/infoblox-launches-predictive-dns-based-threat-protection-solution-on-aws\/\" target=\"_blank\">This launch<\/a><\/strong> represents more than new functionality; it marks a major step toward advancing preemptive protection for AWS customers. By combining Infoblox\u2019s predictive <strong><a href=\"https:\/\/www.infoblox.com\/threat-intel\/\" target=\"_blank\">Threat Intel<\/a><\/strong> intelligence with AWS Network Firewall\u2019s native policy enforcement, organizations can block malicious domains earlier in the attack chain, reduce operational complexity and accelerate their journey toward proactive, automated cloud protection.<\/p>\n<p><img data-recalc-dims=\"1\" fetchpriority=\"high\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2025\/11\/bringing-predictive-security-to-the-aws-network-perimeter.png?resize=640%2C269&#038;ssl=1\" alt=\"Figure 1. AWS Network Firewall console showing Infoblox managed rules subscription activation\" width=\"640\" height=\"269\" class=\"alignnone size-full wp-image-12581\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/11\/bringing-predictive-security-to-the-aws-network-perimeter.png 1180w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/11\/bringing-predictive-security-to-the-aws-network-perimeter-2.png 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/11\/bringing-predictive-security-to-the-aws-network-perimeter-3.png 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2025\/11\/bringing-predictive-security-to-the-aws-network-perimeter-4.png 768w\" sizes=\"(max-width: 1180px) 100vw, 1180px\"><\/p>\n<p class=\"image-caption\">Figure 1. AWS Network Firewall console showing Infoblox managed rules subscription activation<\/p>\n<h3>From Reactive to Predictive: A Shift in Mindset<\/h3>\n<p>For too long, security has been defined by reaction, where organizations wait for alerts, chase incidents and remediate after compromise. But attackers have changed the game. <\/p>\n<p>They use automation, AI and rapidly shifting infrastructure to stay ahead of static defenses. In this new era, waiting for patient zero to detect an attack or breach is a losing game and no longer an option in the modern cloud environment. Security must become predictive, powered by intelligence that identifies malicious domains and infrastructure before they are weaponized to be blocked. <\/p>\n<p>Infoblox Threat Intelligence detects and blocks threat actor infrastructure an average of <strong>68.4 days earlier<\/strong> than traditional detection and response tools, helping organizations move from reacting to predicting and from predicting to preempting. <\/p>\n<p>This shift from reactive to proactive security is not just a change in philosophy; it delivers practical benefits for AWS users and security teams today.<\/p>\n<h3>Why It Matters for Cloud Engineers and Security Teams<\/h3>\n<p><strong>For AWS Cloud Engineers <\/strong><br \/>Infoblox managed rules let you activate predictive, DNS-based threat protection directly from AWS Network Firewall, with no additional infrastructure, agents or manual rule writing required. This gives engineers a fast, native way to secure Amazon Virtual Private Cloud (VPC) traffic and cloud workloads against domain-based threats while maintaining full AWS-native control and visibility. <\/p>\n<p><strong>For Security Teams <\/strong><br \/>The Infoblox integration delivers earlier visibility into DNS-layer threats, fewer false positives and stronger alignment with Zero Trust principles. Its predictive intelligence maintains a false-positive rate as low as 0.0002 percent, ensuring protection doesn\u2019t come at the expense of performance or accuracy. This preemptive protection integrates naturally into existing AWS workflows, allowing teams to enforce consistent policy across on-prem and cloud environments with the same predictive intelligence. <\/p>\n<h3>How the Integration Works<\/h3>\n<p><strong>Infoblox managed rules available on AWS Marketplace<\/strong> allow customers to easily subscribe to curated, DNS-based threat intelligence directly from the <strong>AWS Network Firewall console<\/strong>.<\/p>\n<p>Each rule group, built on Infoblox\u2019s predictive intelligence, helps firewalls block connections to malicious domains used for phishing, command-and-control (C2) communication, data exfiltration and other attacks. <\/p>\n<p>These rules receive <strong>automated feed updates<\/strong>, keeping protections current without manual maintenance and ensuring continuous defense against emerging threat actor infrastructure.<\/p>\n<h3>Defense-in-Depth for AWS Environments<\/h3>\n<p>The <strong><a href=\"https:\/\/docs.aws.amazon.com\/wellarchitected\/latest\/security-pillar\/welcome.html\" target=\"_blank\"><em>AWS Well-Architected Framework Security Pillar<\/em><\/a><\/strong> emphasizes defense-in-depth and multiple reinforcing layers of protection across workloads. Infoblox\u2019s managed rules integration strengthens that strategy by adding the domain layer, a high-leverage control that can disrupt an attacker\u2019s infrastructure before it reaches workloads. <\/p>\n<p>When DNS-based intelligence blocks a domain, it prevents connections at every level: applications, endpoints and workloads. The result is fewer alerts downstream and greater resilience upstream. According to IBM\u2019s Cost of a Data Breach Report 2025,<sup>1<\/sup> the average global cost of a data breach is <strong>$4.44 million<\/strong>, and <strong>$10.22 million<\/strong> in the United States\u2014proof that early prevention delivers measurable savings when it matters most.<\/p>\n<h3>Part of a Broader Vision: Preemptive Security Everywhere<\/h3>\n<p>At Infoblox, we believe DNS is more than a network utility; it\u2019s a strategic control point for modern cybersecurity. <\/p>\n<p>Our innovations in <strong>Infoblox Threat Defense\u2122<\/strong> and now this collaboration with <strong>AWS<\/strong> enable us to help organizations implement a consistent, predictive layer of protection across both on-premises and cloud environments. <\/p>\n<p>This is another step in our mission to make <strong>preemptive protection<\/strong> accessible wherever your workloads live, from the edge to the core to the cloud. <\/p>\n<h3>Get Started<\/h3>\n<p>Infoblox managed rules for AWS Network Firewall are now available in the AWS Marketplace for public preview. The Limited Preview version allows customers to quickly enable the capability and provide feedback, and it has a subset of Infoblox threat intelligence signals optimized for the AWS Network Firewall. A full set of Infoblox threat intelligence signals for AWS Network Firewall is planned for availability at GA.<\/p>\n<p>Activate <strong>Infoblox\u2019s Protective DNS intelligence<\/strong> directly in <strong>AWS Network Firewall<\/strong> to strengthen your cloud perimeter protection today. Learn more at our AWS Marketplace listing for <strong><a href=\"https:\/\/aws.amazon.com\/marketplace\/pp\/prodview-m7vgh7okmokzm?sr=0-9&amp;ref_=beagle&amp;applicationId=AWSMPContessa\" target=\"_blank\">Infoblox\u2019s managed rules<\/a><\/strong>. <\/p>\n<h3>Footnotes<\/h3>\n<ol>\n<li><em>Cost of a Data Breach Report 2025, IBM, 2025.<\/em> <strong><a href=\"https:\/\/www.ibm.com\/reports\/data-breach\" target=\"_blank\">https:\/\/www.ibm.com\/reports\/data-breach<\/a><\/strong> <\/li>\n<\/ol>\n<style>\n.code-format { font-family: 'Courier New';\n}\n.image-caption { font-size: 12px;\n}\n.list-spacing li{margin-bottom:20px}\nol.list-spacing > li::marker { font-weight: 700;\n}\n.entry-content ul.list-spacing ul > li { list-style-type: square;\n}\n.list-spacing li { margin-bottom: 20px;\n}\n.single-post .carousel-cell article { height: 400px; }\n<\/style>\n<p> <a href=\"https:\/\/blogs.infoblox.com\/security\/bringing-predictive-security-to-the-aws-network-perimeter\/\">Infoblox Original<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Building on our collaboration with AWS, we\u2019re announcing the availability<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[5373,5374,5364,5365,5369,76,5371,5367,5370,5363,5375,5372,5366,5368,42],"tags":[5386,5387,5377,5378,5382,84,5384,5380,5383,5376,5388,5385,5379,5381,50],"class_list":["post-8131","post","type-post","status-publish","format-standard","hentry","category-automated-feed-updates","category-aws-cloud-workloads","category-aws-marketplace-managed-rules","category-aws-network-firewall","category-cloud-perimeter-security","category-defense-in-depth","category-dns-based-protection","category-dns-based-threat-intelligence","category-infoblox-aws-integration","category-infoblox-managed-rules","category-network-layer-security","category-predictive-cybersecurity","category-predictive-security","category-preemptive-protection","category-security","tag-automated-feed-updates","tag-aws-cloud-workloads","tag-aws-marketplace-managed-rules","tag-aws-network-firewall","tag-cloud-perimeter-security","tag-defense-in-depth","tag-dns-based-protection","tag-dns-based-threat-intelligence","tag-infoblox-aws-integration","tag-infoblox-managed-rules","tag-network-layer-security","tag-predictive-cybersecurity","tag-predictive-security","tag-preemptive-protection","tag-security"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Infoblox","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/infoblox\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/automated-feed-updates\/\" rel=\"category tag\">automated feed updates<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/aws-cloud-workloads\/\" rel=\"category tag\">AWS cloud workloads<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/aws-marketplace-managed-rules\/\" rel=\"category tag\">AWS Marketplace managed rules<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/aws-network-firewall\/\" rel=\"category tag\">AWS Network Firewall<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cloud-perimeter-security\/\" rel=\"category tag\">cloud perimeter security<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/defense-in-depth\/\" rel=\"category tag\">Defense-in-Depth<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/dns-based-protection\/\" rel=\"category tag\">DNS-based protection<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/dns-based-threat-intelligence\/\" rel=\"category tag\">DNS-based threat intelligence<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/infoblox-aws-integration\/\" rel=\"category tag\">Infoblox AWS integration<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/infoblox-managed-rules\/\" rel=\"category tag\">Infoblox managed rules<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/network-layer-security\/\" rel=\"category tag\">network-layer security<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/predictive-cybersecurity\/\" rel=\"category tag\">predictive cybersecurity<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/predictive-security\/\" rel=\"category tag\">predictive security<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/preemptive-protection\/\" rel=\"category tag\">preemptive protection<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/security\/\" rel=\"category tag\">Security<\/a>","tag_info":"Security","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/8131","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=8131"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/8131\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=8131"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=8131"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=8131"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}