
Today, we're releasing the integration of Fortinet FortiGate Next-Generation Firewalls (NGFW) and Stream.Security’s CDR (Cloud Detection and Response) platform.
The goal? To connect what’s happening at the perimeter with what’s actually happening in your cloud.
Security teams are spending far too much time untangling conflicting signals in the cloud, leading to unnecessary escalations, wasted effort, and missed threats. That’s why we built an integration between Fortinet FortiGate Next-Generation Firewalls (NGFW) and Stream.Security’s CDR (Cloud Detection and Response) platform.
The goal? To connect what’s happening at the perimeter with what’s actually happening in your cloud.
Firewalls are designed to keep attackers out. But in the cloud, where resources spin up and down constantly and the perimeter is more of a concept than a location, it’s easy for visibility to fall apart. Security teams are often forced to operate on assumptions, especially when firewall logs and cloud infrastructure tell two different stories.
With this integration, Fortinet’s FortiGate NGFWs feed critical topology and enforcement data into Stream, including:
Stream’s CloudTwin™ engine then maps that data into a real-time model of your cloud environment, creating an accurate, always-updated view of which resources are actually reachable from the outside - and which ones aren’t.
Imagine your team receives an alert from your EDR about a suspicious command executed on an EC2 instance. Typically, determining whether that host is truly exploitable requires manual cross-tooling and coordination across teams—especially when third-party firewalls are involved.
But with FortiGate NGFW data flowing into Stream, your team can instantly see whether the affected instance is reachable from the internet—eliminating guesswork and accelerating response.
This integration is part of our broader mission: to help SOC and SecOps teams investigate, prioritize, and respond to cloud-native threats with real-time precision rather than static alerts or stitched-together logs.
By unifying firewall and cloud context, we give your team the clarity needed to:
Ready to bring perimeter awareness into your cloud response strategy?
Reach out to our team and we’ll show you how Fortinet NGFW + Stream.Security keeps your team one step ahead.
Stream.Security delivers the only cloud detection and response solution that SecOps teams can trust. Born in the cloud, Stream’s Cloud Twin solution enables real-time cloud threat and exposure modeling to accelerate response in today’s highly dynamic cloud enterprise environments. By using the Stream Security platform, SecOps teams gain unparalleled visibility and can pinpoint exposures and threats by understanding the past, present, and future of their cloud infrastructure. The AI-assisted platform helps to determine attack paths and blast radius across all elements of the cloud infrastructure to eliminate gaps accelerate MTTR by streamlining investigations, reducing knowledge gaps while maximizing team productivity and limiting burnout.