Services
Partners
Use cases
Clients
Company
Contact
FRENDE
Technology partner

Fortinet integrator in Switzerland

We design, deploy and operate complete Fortinet architectures — from the perimeter firewall to the management plane. Eight NSE certifications in the team, across the networking and security operations tracks.

Why this ecosystem

Stacking well-built products does not make a defence. Every console has its own logic, its own object database, its own log format. The integrator spends the time translating between tools, and the operator eventually stops correlating: the firewall alert and the endpoint alert describe the same incident without ever meeting.

Fortinet's proposition fits in one sentence: a single management plane. FortiManager pushes configuration and keeps the change history, FortiAnalyzer collects and correlates, and the devices share one object database. The value is not in any product taken alone — it is in the fact that they speak to each other natively.

Our independence from vendors remains a principle: we are not a single-brand reseller and we do not recommend Fortinet by default. But when consolidation is the right call — a heterogeneous estate to bring back under control, a small team, a traceability requirement — this is the ecosystem we know best.

Our work covers the whole cycle: audit of the existing estate, target architecture, proof of concept, migration in waves, then operations or a handover to your teams.

Fortinet
What we bring
  • Eight NSE certifications, from NSE 1 to NSE 7
  • Secure Networking and Security Operations tracks
  • Architecture, deployment, migration and operations
  • Taking over existing estates and configuration debt
  • Fortinet when it fits — never by default
Vendor website
Diagram

The ecosystem, seen from the architecture

Fortinet Security Fabric architecture: central management plane and six domains Perimeter andremote accessFortiGateFortiProxyFortiSASEFortiPAMLAN networkand Wi-FiFortiSwitchFortiAPFortiNACFortiAuthenticatorEndpointand dataFortiClientFortiEndpointFortiEDRFortiDLPApplicationsand cloudFortiWebFortiADCFortiCNAPPEmail andcollaborationFortiMailFortiMail WorkspaceAdvanceddetectionFortiSandboxFortiNDRFortiDeceptorManagement planeconfiguration and correlationFortiManagerFortiAnalyzer
The management plane at the centre: FortiManager and FortiAnalyzer are not two products among others, they are what holds the whole together.

The products we integrate

Twenty-two references, grouped by their role in the architecture. Not all of them are justified on the same project — sorting them is part of the work.

Perimeter and remote access

The firewall remains the compulsory crossing point, but it no longer works alone. FortiGate handles filtering, TLS inspection, segmentation and SD-WAN between sites. FortiProxy takes over outbound web filtering when the volume or the granularity justify it. FortiSASE applies the same rule set to endpoints working outside the walls, without backhauling all the traffic to headquarters. FortiPAM frames administrative access: secrets vault, session recording, temporary elevation.

FortiGateFortiProxyFortiSASEFortiPAM

LAN network and Wi-Fi

FortiSwitch and FortiAP are managed from the FortiGate: one VLAN database, one policy, and segmentation stops being a document and becomes a configuration. FortiNAC identifies whatever connects — including what carries no agent, cameras, controllers, printers — and places each device in the right segment. FortiAuthenticator carries 802.1X, multi-factor authentication and session identity.

FortiSwitchFortiAPFortiNACFortiAuthenticator

Endpoint and data

FortiClient carries the tunnel and the posture check before access is granted. FortiEndpoint and FortiEDR cover behavioural detection and remediation on the endpoint, with containment that does not wait for human analysis. FortiDLP handles the data loss side: what leaves through email, the web or removable media.

FortiClientFortiEndpointFortiEDRFortiDLP

Applications and cloud

FortiWeb protects exposed applications — web application firewall, API protection, bot mitigation — where the network firewall sees nothing but legitimate HTTPS. FortiADC balances the load, terminates TLS and keeps published services available. FortiCNAPP covers cloud posture: drifting configurations, excessive permissions, vulnerable images.

FortiWebFortiADCFortiCNAPP

Email and collaboration

FortiMail filters inbound and outbound, authenticates the domain (SPF, DKIM, DMARC) and addresses sender spoofing, which remains the most profitable vector for an attacker. FortiMail Workspace Security extends the protection to collaboration suites: shares, workspaces, hosted attachments.

FortiMailFortiMail Workspace Security

Advanced detection

FortiSandbox detonates in a controlled environment what no signature recognises. FortiNDR analyses internal traffic and spots lateral movement, which crosses no perimeter firewall. FortiDeceptor plants decoys: assets that have no reason to be touched, and where the slightest contact is a signal with no false positive.

FortiSandboxFortiNDRFortiDeceptor
The management plane

FortiManager centralises the configuration of the whole estate: policy templates, batch deployment, change history and rollback. FortiAnalyzer collects logs from every device, correlates events and produces compliance reports. This pair is what turns a collection of appliances into an operable architecture — and it is where we start on any estate takeover.

FortiManagerFortiAnalyzer

Our Fortinet certifications

Eight badges held within the team, from the fundamentals to the expert tracks. These are verifiable facts, not a commercial partnership tier.

NSE 1 — Network Security Expert 1
NSE 1Network Security Expert 1
NSE 2 — Network Security Expert 2
NSE 2Network Security Expert 2
NSE 3 — Network Security Expert 3
NSE 3Network Security Expert 3
NSE 4 — Network Security Expert 4
NSE 4Network Security Expert 4
NSE 5 — Secure Networking
NSE 5Secure Networking
NSE 5 — SASE & SD-WAN
NSE 5SASE & SD-WAN
NSE 7 — Secure Networking
NSE 7Secure Networking
NSE 7 — Security Operations
NSE 7Security Operations
Our approach

How we proceed

Taking over an existing estate is not handled like a greenfield deployment. In both cases the migration runs in reversible waves — never as a single cutover.

Fortinet integration approach, from audit to operations ScopingImplementationDuration01Audit ofthe estate02Targetarchitecture03Proof ofconcept04Migrationin waves05Hardeningand testingOperationsor handover
Every wave is reversible: no site is switched over until the previous one has stabilised.
Frequently asked questions

Frequently asked questions

Both. We supply the hardware and the licences, but our trade is architecture, deployment and operations. A quote for equipment without prior design makes little sense: it is the sizing and the policy that determine the outcome, not the model number of the box.

No. The value of consolidation comes from the shared management plane, not from exclusivity. Many of our clients pair a Fortinet foundation with other building blocks — email, privileged access management, monitoring. We design the interface between the two worlds rather than impose a wholesale switch.

That is the most common case. We begin with a configuration audit: rules that have become useless, orphaned objects, policies that contradict each other, versions out of alignment. Configuration debt accumulates silently and eventually makes any change risky — clearing it is often the first gain.

Eight NSE badges. The fundamentals NSE 1 to 4, then NSE 5 on the Secure Networking and SASE / SD-WAN tracks, and NSE 7 on Secure Networking and Security Operations. The detail is on our Certifications page, alongside every certification held in the team.

Yes, in two ways. Either through our support and managed service offering: we take on day-to-day operations, upgrades, policy changes and incident handling. Or through a handover: we train your teams, document the architecture and remain available for structural changes.

A Fortinet estate to design or to take over?

Describe your situation — we always start by looking at what is already there before proposing anything.