Icon Close country selection

Cato’s cloud-native security stack, SSE 360, is built using the Cato Single Pass Cloud Engine (SPACE) architecture and converges the following capabilities:

  • Secure Web Gateway (SWG),
  • Cloud Access Security Broker (CASB),
  • Data Loss Prevention (DLP),
  • Zero Trust Network Access (ZTNA/SDP), and
  • Firewall as a Service (FWaaS) with Advanced Threat Prevention (IPS, Next Generation Anti-malware).

SSE 360 scales to decrypt and inspect all enterprise traffic, without the need for sizing, patching, or upgrading of appliances and other point solutions. Security policies and events are centrally and uniformly managed using the self-service Cato Management Application.​

Cato can further secure your network with a comprehensive Managed Threat Detection and Response (MDR) service to detect compromised endpoints. ​

Cato SASE Cloud with SSE 360

Cato optimally and securely connects all enterprise locations, users, applications, and clouds, into a global and secure, cloud-native service. Cato can be gradually deployed to replace security point solutions and legacy network services. ​


Remote Access
Cato SASE Cloud provides users with zero trust network access (SDP/ZTNA) to on-premises and cloud applications using laptops, tablets, and smartphones. With a Cato Client or Clientless browser access, users securely connect to the nearest Cato PoP using strong Multi-Factor Authentication. Traffic flows only to applications authorized for the users based on identity, access policy, and user context. Throughout the session, traffic is fully inspected by Cato’s security stack to prevent malware propagation from compromised endpoints.


The Cato Socket SD-WAN device connects a physical location to the nearest Cato PoP via one or more last-mile connections. Customers can choose any mix of fiber, cable, xDSL, and 4G/LTE connections.

The Socket applies multiple traffic management capabilities such as active-active link usage, application- and user-aware QoS prioritization, dynamic path selection to work around link blackouts and brownouts, and packet duplication to overcome packet loss.

The Socket can also route site-to-site traffic over MPLS and the Internet to address regional and application-specific requirements.


Global Private Backbone
Cato SASE Cloud runs on a private global backbone of 75+ PoPs connected via multiple SLA-backed network providers. The PoPs software continuously monitors the providers for latency, packet loss, and jitter to determine, in real time, the best route for every packet.

Cato’s backbone design delivers end-to-end route optimization for WAN and cloud traffic, and a self-healing architecture for maximum service uptime. Our customers experience connectivity that is superior to the unpredictable public Internet and more affordable than global MPLS  and other legacy backbones.


Multi-cloud / Hybrid-cloud​
Cato integrates with major cloud providers, such as Amazon AWS, Microsoft Azure, and Google Cloud with secure IPSec tunnels or a Cato vSocket virtual appliance. Deployment is fast and simple and connecting a cloud data center to Cato takes minutes. All traffic to and from the cloud DC is subject to full security inspection by Cato’s built-in security stack, SSE 360, and is optimally routed from the edge to the cloud providers. With Cato, customers can eliminate the need for premium clouds connectivity solutions such as AWS DirectConnect and Microsoft Azure ExpressRoute


SaaS optimization​
Cato optimally routes traffic to public cloud applications, such as Office 365, Salesforce, Box, UCaaS, and Cloud ERP, from the enterprise edge to the doorstep of the cloud application’s data center. Cato accelerates end-to-end throughput up to 20x, boosting application performance for bandwidth-intensive operations like file upload and download.

All traffic and files exchanged with the cloud application are fully inspected by Cato’s security stack, SSE 360, to protect users from threats, attacks, and data loss.


Cato Management Application
Cato provides a cloud-based and self-service management application to control the entire service. It includes full network and security policy configuration, and detailed analytics on network traffic and security events.

Self-service management is a unique advantage of Cato over legacy-managed network service providers that require customers to submit tickets for any change to the network. If needed, Cato and its partners offer managed service options. In all cases, Cato maintains the underlying platform so customers do not need to upgrade, patch, or otherwise maintain the Cato SASE Cloud.


Test a product

On local martkets Bakotech Group operates through a well-established partner network, including over 1,000 active dealers. Key IT-integrators and are involved in the realization of large-scale projects concerning implementing solutions for end-customers from various segments of business. Bakotech's business strategy is True Value Added Distribution or in other words - project oriented distribution.

We are providing our partners with a wide range of services such as PR, co-marketing activities, pre post-sales support, trainings for partners and end-customers, PoC, PoV, solution consulting, implementation support and technical support.

Contact Us

Bakotech Sp. z o.o.

ul. Drukarska 18/5

30-348 Kraków


Dane firmy

VAT ID 6762466740

REGON 122894922

KRS 0000467615


ph. +48 12 340 90 30


Privacy policy

Subscribe to stay updated

Would you like to stay updated on the current IT and InfoSec news? About BAKOTECH events like webinars, trainings and conferences? Please, leave your e-mail:
Error occured. Please check the form fields and try again.
This address is already in our database.
The subscription has been added. Thank you!
© Bakotech - 2022. All rights reserved

The website uses cookies to deliver services in accordance with the Cookies Policy. You can define the conditions for storing or accessing the cookie mechanism in your browser.

I accept