As security perimeters disappear and organizations’ work is carried out by more people, attackers are taking advantage of a variety of things, including stolen credentials, insecure devices, and uncontrolled access. In this context, it is critical to protect digital environments against increasingly sophisticated threats.

In this sense, Zero Trust replaces default trust with continuous verification, confirming identities, checking device health, assessing risks, and enforcing least privilege access to protect critical resources. By verifying that all sessions are secure before authorizing them, organizations eliminate guesswork, block unauthorized access, and prevent lateral movement. The result is a more powerful, resilient security posture that scales with changing threats and better protects the business.

The WatchGuard company has announced Zero Trust Bundle, an optimized solution that brings zero trust technology to organizations of any size, including SMEs, with the aim of protecting identities, devices and access. For years, enterprises have struggled to integrate identity, endpoint, access, and network tools, resulting in high costs, operational friction, and daily disruptions. The WatchGuard Zero Trust Bundle solves this problem by unifying these capabilities into a simple, continuously validated, cloud-delivered framework to consistently protect your entire environment.

Objectives: identities and endpoints

The release comes at a time when attackers are increasingly targeting both identities and endpoints. WatchGuard’s latest Internet Security Report shows that evasive malware has increased 40% quarter over quarter and that 70% of malware is already delivered over encrypted channels, making traditional controls less effective in protecting organizations. These trends highlight the need for continuous identity checks, device validation, and session-level policy enforcement to work together, rather than as standalone tools.

Organizations have been pursuing zero trust for more than a decade, but it has remained difficult to implement and is often disruptive to business. Building on WatchGuard’s recent release of FireCloud Total Access, which modernizes secure access through a cloud-delivered approach, the Zero Trust Bundle offers a practical and easy path to deploying zero trust without the complexity and overhead of traditional enterprise solutions, helping to secure hybrid environments.

“This is our first critical step toward unifying zero trust and modernizing network security,” said Andrew Young, chief product officer and senior vice president of product at WatchGuard. “Zero Trust works when tools work together. Our Zero Trust Bundle unifies identity, device, access and XDR so our partners can offer stronger security and scalable services to protect their customers. Over time, our zero trust proposition will be integrated directly into the network layer itself, creating a continuous, adaptive and unified security model.”

Zero Trust, simplified

WatchGuard Zero Trust Bundle delivers identity security, device integrity, and secure access in a single cloud-delivered architecture that can be deployed with minimal overhead. With a single purchase, you get the complete zero trust solution, and a single agent deploys it consistently across your entire environment to protect users, applications, and data. Key components include:

  • Total Identity Security: Adaptive MFA, SSO, risk scoring, and dark web credential monitoring to early identify exposed credentials.
  • EPDR (Endpoint Protection, Detection and Response): Continuous device health checks, automated prevention and control of Zero Trust applications.
  • FireCloud Total Access: FWaaS, SWG and ZTNA delivered from the cloud, replacing VPNs with fast, context-sensitive access.

These solutions are powered by WatchGuard Cloud and ThreatSync

A key improvement to WatchGuard’s identity foundation is dark web credential monitoring. Integrated into AuthPoint Total Identity Security, this functionality extends the Zero Trust approach from an earlier stage in the authentication process by proactively checking whether credentials have been compromised before attackers can use them.

“WatchGuard’s architecture stands out because its identity, device trust, and session-level controls enforcement capabilities work natively through a single, consolidated dashboard,” said Pete Finalle, research manager for IDC’s Security and Trust practice. “This level of cohesion creates a ‘better together’ proposition not typically available to the SME and MSP segments, and is a significant step forward in protecting a wider audience.”

Clear and immediate value for organizations and MSPs

Zero Trust Bundle delivers enterprise-grade results without the complexity of enterprise solutions:

  • Accurate, risk-based access decisions
  • Hardened devices, maintained in a known safe state
  • Secure access without VPN bottlenecks
  • Faster containment thanks to unified signals
  • A profitable and repeatable service model for MSPs

“By integrating identity protection, device validation and access control into a single framework, WatchGuard makes zero trust something we can deploy quickly,” said Felicia King, vCTO/vCISO at QPC Security. “It strengthens the security outcomes we deliver to customers without adding complexity.”

The Zero Trust Bundle replaces the previous Passport offering and provides a modern, scalable alternative to advance zero trust maturity with minimal friction.