Cato SASE Cloud Platform
Cato Networks · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
Cato SASE Cloud optimally connects all enterprise network resources, including branch locations, the hybrid workforce, and physical and cloud datacenters, into a global and secure, cloud-native service. Cato SASE Cloud uses its cloud-native security service edge, Cato SSE 360, to fully enforce granular corporate access policies on all applications, on-premises and in the cloud, protecting users against threats, and preventing sensitive data loss.
Built on a global private backbone of 80+ Points of Presence (PoPs), Cato SASE Cloud enables predictable and optimized global connectivity between all enterprise resources. Cato Edge SD-WAN extends the Cato SASE Cloud to provide prioritized and resilient connectivity over multiple last mile links in physical locations. Cato SDP Client and Clientless access enable secure and optimized application access for users everywhere.
Show the rest of the publisher’s description (1 more line)
Cato SSE 360 converges the following capabilities: Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), Data Loss Prevention (DLP), Zero Trust Network Access (ZTNA), and Firewall as a Service (FWaaS) with Advanced Threat Prevention (IPS and Next Generation Anti-Malware). Built on Cato Single Pass Cloud Engine architecture, all capabilities leverage the scalability, resiliency, global footprint, and self-maintenance of the Cato SASE Cloud to deliver the highest level of security to all enterprise resources everywhere.
Highlights
Highlighted by the publisher on AWS Marketplace.
Gradually migrate to the cloud with seamless integration of physical and cloud datacenters, and public cloud apps by plugging all datacenter edges into the Cato SASE Cloud and using smart egress to move traffic close to the cloud datacenters and the public cloud applications. With Cato, customers can complement premium cloud connectivity solutions like AWS DirectConnect.
Migrate legacy MPLS and network security appliances to a modern cloud-native architecture to improve agility, cut costs, and boost capacity using Cato SD-WAN, Internet last-mile, and end-to-end network optimization. Improve performance between global locations by using the Cato Networks affordable, global, private backbone vs the unpredictable Internet or costly global MPLS.
Leverage a future-proof platform that is self-maintaining, self-evolving and self-healing without the need to manually patch, upgrade, or replace point solutions.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Compliance
- FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27
Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.
Vendor
External enrichment
Plans and pricing as listed
3 listed- Units
- Units
- Units
Refund terms
As stated by the publisher on AWS Marketplace.
As described in the Cato Networks MSA: https://www.catonetworks.com/msa/
Sources
Publisher resources
2 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

