Perimeter 81 Review Australia 2026: Zero Trust β Expert Review & Analysis Report 2026
Published: Mar 2026
Sections: 10
Format: Expert Review
Affiliate & General Advice Warning
SmartFinPro may receive commissions from financial product providers featured on this page. This is general information only and does not constitute personal financial advice. Before making any financial decisions, consider your personal circumstances and consult a licensed financial adviser. We do not guarantee product performance.
ASIC General Advice Warning | This information is not financial advice
An in-depth analysis of Perimeter 81's Zero Trust SASE platform for Australian finance teams. Complete analysis of APRA CPS 234 compliance,
What We Love
True Zero Trust Network Access (ZTNA) with APRA CPS 234 alignment
Rapid SASE deployment per vendor documentation β basic setup in hours, not weeks
SOC 2 Type II compliant, supports APRA CPS 234 and Privacy Act 1988
Integrates with identity providers (Okta, Azure AD, Google Workspace)
Automatic Wi-Fi security for mobile workers across Australian cities
Watch Out For
Higher per-user cost than traditional VPN solutions (A$12 vs A$8)
Smaller server network than consumer VPN providers (40+ vs 5,500+)
Some advanced features locked to Premium and Enterprise tiers
Learning curve for teams new to Zero Trust concepts
No dedicated Australian phone support β 24/7 chat and email only
X-Ray Scoreβ’
Not scored
Our Rating
Expert Score
4.6/5
Quick Navigation
Editorial Transparency
Published: January 22, 2026
Last updated: March 3, 2026
Reviewed by: SmartFinPro Research
Fact-checked: Oct 5, 2026
What changed since last update:
Pricing and fee information verified against provider website
Feature availability and regulatory status re-confirmed
Competitor comparison data refreshed
Frequently Asked Questions
Yes. Perimeter 81's Zero Trust architecture, encryption standards, and audit logging directly support APRA CPS 234 information security obligations. Its identity-based access controls, continuous monitoring, and detailed audit trails help APRA-regulated entities demonstrate compliance with the standard's requirements for information asset management and access controls.
Perimeter 81 supports several Essential Eight strategies including application control (through application-level access policies), restricting admin privileges (via role-based access), multi-factor authentication (integrated with IdPs), and network segmentation. It directly supports 4 of the 8 strategies and complements a broader security programme for the remaining four.
Perimeter 81 helps meet Australian Privacy Principles (APPs) under the Privacy Act by encrypting personal information in transit and at rest, restricting access to authorised personnel only, and maintaining audit logs of data access. It supports APP 11 obligations around securing personal information.
Perimeter 81 operates edge nodes in Sydney, providing low-latency connections for Australian users. However, management infrastructure is hosted globally. For organisations with strict data sovereignty requirements, discuss hosting options with their enterprise sales team.
Traditional VPNs grant broad network access once connected. Perimeter 81 provides granular, application-level access β users only reach specific resources they are authorised for. For Australian finance firms managing sensitive client data under APRA and the Privacy Act, this reduces breach risk significantly compared to castle-and-moat VPN architectures.
Basic deployment takes 2-4 hours for small teams. Full Zero Trust implementation with identity provider integration and APRA-aligned policies typically takes 1-3 days. This is significantly faster than traditional enterprise SASE solutions available in the AU market.
Perimeter 81 uses AES-256-GCM for data in transit, AES-256 for data at rest, RSA-4096 for key exchange, and supports WireGuard and OpenVPN protocols. These standards meet or exceed encryption requirements under APRA CPS 234 and the ACSC Essential Eight.
Yes. Perimeter 81 offers a 14-day free trial with full feature access, available to Australian businesses. No credit card is required to start. They also provide a 30-day money-back guarantee after purchase. Pricing is billed in USD but we list AUD equivalents for easy comparison.
Research Methodology & Disclosure
Last fact-check: Oct 5, 2026
Reviewed against provider disclosures and public regulator guidance.
Primary sources: AUSTRAC, ASIC, APRA, AFCA, and provider disclosures.
We may earn a commission from partner links, but rankings and recommendations are set by editorial criteria.
Affiliate Disclosure: SmartFinPro may earn a commission when you click links and make a purchase. This does not affect our editorial independence. Learn more
What is Perimeter 81?
Key Findings
Key Findings & Analysis
True Zero Trust Network Access (ZTNA) aligned with ACSC Essential Eight guidance
Unified SASE platform replaces VPN, firewall, SWG, and SDP tools
SOC 2 Type II compliant with direct APRA CPS 234 compliance support
Cloud-native deployment with Sydney edge nodes for low-latency access
Micro-segmentation isolates client data environments and reporting systems
Bottom line: Perimeter 81 delivers genuine Zero Trust network security for Australian financial services firms transitioning away from legacy VPN infrastructure, with strong regulatory alignment for APRA CPS 234 and ACSC Essential Eight requirements.
Perimeter 81 (now part of Check Point Software Technologies) is a cloud-native Zero Trust Network Access (ZTNA) and Secure Access Service Edge (SASE) platform that replaces traditional VPN appliances with a modern, identity-driven security architecture. For Australian financial services firms operating under APRA CPS 234, the Privacy Act 1988, and ACSC Essential Eight guidance, it provides the granular access control and continuous verification that traditional perimeter-based security cannot deliver. The platform converges multiple network security functions into a single unified console, eliminating the operational complexity of managing separate VPN concentrators, hardware firewalls, and cloud web gateways across distributed Australian offices.
The Check Point acquisition in 2023 brought additional threat intelligence capabilities and broader enterprise support, strengthening the platform's suitability for regulated financial services use cases. Australian firms benefit from Check Point's established ThreatCloud AI infrastructure, which provides real-time threat prevention informed by telemetry from millions of sensors worldwide. Perimeter 81 currently serves over 3,200 organisations globally, with growing adoption among Australian mid-market financial services firms managing between 10 and 500 employees across Sydney, Melbourne, Brisbane, and Perth offices.
Verified Platform Data
Source: SmartFinPro Research Β· ACSC Australia Β· G2
2018
Founded as Perimeter 81
Sept 2023
Acquired by Check Point
Ready
APRA CPS 234
4.6/5
G2 Rating
Which Australian firms benefit most from Perimeter 81?
The Australian Cyber Security Centre (ACSC) reported a 23 percent increase in cyber incidents targeting financial services in 2025, with credential theft and ransomware remaining the dominant attack vectors against APRA-regulated entities. APRA has intensified enforcement of CPS 234 since its introduction, issuing multiple supervisory letters to entities with inadequate information security frameworks. Australian finance firms now face a dual challenge: protecting sensitive client data and superannuation records while meeting increasingly stringent regulatory expectations that explicitly reference contemporary security architectures like Zero Trust.
Traditional VPNs operate on an implicit trust model that is fundamentally at odds with APRA's expectations. Once a user authenticates and connects, they receive broad network access to all resources. If credentials are compromised through phishing or social engineering, attackers gain lateral movement across client data repositories, payment processing systems, and regulatory reporting infrastructure. This represents a direct breach of CPS 234 obligations, which require controls commensurate with the criticality and sensitivity of information assets. The Australian Information Commissioner's 2025 enforcement actions confirm that regulators are holding organisations accountable for failing to implement adequate access controls.
How Zero Trust Changes the Game
Zero Trust operates on the principle of "never trust, always verify," evaluating every access request against multiple contextual signals before granting permission. Each connection attempt is authenticated and authorised individually, access is granted to specific applications rather than entire network segments, user behaviour is continuously monitored for anomalies, and access is revoked immediately when suspicious patterns are detected. Even if credentials are compromised through a targeted phishing attack, the attacker can only reach the single application the compromised user was authorised to access rather than your entire network infrastructure.
Perimeter 81's Zero Trust implementation evaluates five contextual dimensions for every access request: user identity verified through MFA and identity provider integration, device posture including operating system version and encryption status, geolocation blocking access from unusual or high-risk jurisdictions, time context restricting access outside business hours for sensitive systems, and behavioural patterns flagging anomalous access for security review. This multi-dimensional evaluation occurs in real time with minimal latency impact, typically adding only 7 milliseconds to connection establishment through the Sydney edge node.
ACSC Essential Eight consideration: Zero Trust is a security model, not a single product. Perimeter 81 provides the network access layer of Zero Trust, but achieving Maturity Level 2 or higher on all Essential Eight strategies also requires identity management (Azure AD, Okta), endpoint security (CrowdStrike, SentinelOne), application patching, and operating system hardening. Budget for a 3-6 month phased rollout across all layers to build a comprehensive security posture that satisfies both APRA examinations and ACSC guidance.
Key Features for Australian Finance Teams
1. Software-Defined Perimeter and SASE Integration
Perimeter 81 operates as a converged SASE platform, combining ZTNA, Secure Web Gateway (SWG), Cloud Firewall, and DNS Filtering into a single management console. This convergence eliminates the operational overhead of managing multiple security vendors and reduces total cost of network security by consolidating licensing, support contracts, and administrative training requirements. For Australian firms that previously maintained separate VPN appliances, on-premises firewalls, and cloud security gateways, this consolidation can reduce management time by approximately 80 percent based on deployment benchmarks.
SASE Component
Capability
ZTNA
Identity-based per-resource access with MFA enforcement
Secure Web Gateway
URL filtering, SSL inspection, shadow IT prevention
Cloud Firewall
East-west and north-south traffic filtering
DNS Filtering
Malicious domain blocking, DNS tunnelling prevention
SDP
Application cloaking, dynamic access policies
The SDP creates a micro-perimeter around each application, eliminating lateral movement entirely. Unlike traditional VPN where a connected user reaches all applications, Perimeter 81's SDP ensures that each user only sees and accesses the specific resources they are authorised for. This architecture directly supports APRA CPS 234's requirement for controls commensurate with the criticality of information assets.
2. Identity Provider Integration
Perimeter 81 integrates with your existing identity infrastructure to enforce consistent access policies across all applications and network segments. When you offboard an employee in Azure AD or Okta, their Perimeter 81 access is immediately revoked, which is critical for meeting APRA's requirements around timely access removal and the Privacy Act's obligations for controlling access to personal information.
Supported Identity Providers6
Show detailsHide details
Okta β Full SCIM provisioning and deprovisioning with group sync
Azure Active Directory β Conditional Access integration with device compliance
Google Workspace β SSO with organisational unit policy mapping
OneLogin β Automated lifecycle management for user access
JumpCloud β Cloud directory integration for hybrid environments
SAML 2.0 β Any compatible identity provider with standards-based federation
3. Automatic Wi-Fi Security
Critical protection for Australian finance professionals working from co-working spaces, client offices, or travelling between Sydney, Melbourne, Brisbane, and Perth. The automatic Wi-Fi security feature detects untrusted networks and activates encrypted connections without requiring any user intervention, per Perimeter 81's published documentation.
Feature
Protection Level
Untrusted Wi-Fi detection
Automatic VPN activation
Man-in-the-middle defence
Certificate validation
DNS protection
Encrypted DNS resolution
Kill switch
Traffic blocked on disconnect
Always-on option
Continuous protection for sensitive roles
For the best performance in Australia, configure Perimeter 81 to route through the Sydney edge node for domestic resources and Xero, MYOB, and CommSec access. Use automatic routing for international SaaS applications like Microsoft 365, Salesforce, and AWS workloads. This dual-routing approach keeps domestic latency under 20ms while optimising international connectivity.
4. Web Filtering and DNS Security
Perimeter 81 includes built-in web security that operates at the DNS and application layer, providing an additional defence against phishing, malware, and social engineering attacks targeting Australian financial services firms. This is a core protection layer for finance teams handling sensitive client and trading data, since phishing β including convincing replicas of ANZ, Westpac, and CommBank login pages β remains one of the most common initial-access vectors targeting Australian financial services portals.
Feature
Protection
Malware blocking
Known malicious domains blocked in real time
Phishing protection
Fake banking and financial services sites blocked
Category filtering
Block gambling, adult content, and high-risk categories
Custom rules
Block or allow specific domains per team or role
DNS tunnelling prevention
Detects data exfiltration via DNS queries
5. Network Micro-Segmentation
Micro-segmentation is where Perimeter 81 delivers its most significant security advantage over traditional VPN solutions. Rather than granting broad network access upon successful authentication, the platform isolates critical financial systems into granular network segments with individually defined access policies. When a phishing attack compromises an employee's credentials, the attacker gains access only to the specific resources that employee was authorised to use rather than the entire corporate network. For APRA-regulated institutions, this capability directly supports CPS 234 expectations around limiting the blast radius of security incidents.
Segmentation Use Cases for AU Finance5
Show detailsHide details
Client data repositories: Restricted to authorised advisors and compliance officers, with full audit logging for Privacy Act 1988 compliance
Regulatory reporting systems: Limited to compliance officers with time-bound access windows during APRA and ASIC reporting periods
Payment processing environments: PCI-DSS aligned segmentation isolating cardholder data from general business networks
Third-party vendor access: Time-limited, fully audited connections with automatic revocation upon session expiry
Development and staging environments: Completely separated from production infrastructure with no cross-segment routing
For PCI-DSS compliance in Australia: Network segmentation is required for cardholder data environments under PCI-DSS Requirement 1.3. Perimeter 81's micro-segmentation capabilities support this requirement, but PCI-DSS compliance also requires regular penetration testing, vulnerability scanning, and a formal security policy. Organisations processing card payments should engage a QSA (Qualified Security Assessor) to validate the full scope of their cardholder data environment.
Australian Compliance
APRA CPS 234 Alignment
APRA CPS 234 requires APRA-regulated entities to maintain information security capability commensurate with the size and extent of threats to their information assets. The standard applies to all APRA-regulated entities including banks, insurers, and superannuation funds, and extends to material service providers handling sensitive data on their behalf. Perimeter 81's Zero Trust architecture provides strong alignment with CPS 234's core requirements, particularly around access controls, incident detection, and audit logging.
CPS 234 Requirement
Perimeter 81 Capability
Information asset identification
Application-level access policies per asset
Access controls
Identity-based, role-based access with MFA
Incident detection
Real-time monitoring, anomaly detection
Audit logging
365-day log retention, SIEM export
Third-party management
Granular third-party access controls with time limits
Notification obligations
Automated incident alerts within required timeframes
APRA Note: Perimeter 81 supports CPS 234 compliance but does not guarantee it. Entities must implement a comprehensive information security framework encompassing people, processes, and technology. We recommend engaging an APRA-experienced auditor to validate your full compliance posture, particularly for superannuation funds and insurers subject to heightened APRA scrutiny since the 2024 supervisory intensification.
ACSC Essential Eight Mapping
The Australian Cyber Security Centre's Essential Eight provides a baseline security framework that APRA-regulated entities increasingly adopt as part of their CPS 234 compliance strategy. Perimeter 81 directly supports four of the eight strategies and complements a broader security programme for the remaining four. Achieving Maturity Level 2 or higher across all strategies requires additional tooling beyond network security, but Perimeter 81 provides the foundational access control layer.
Essential Eight Strategy
Perimeter 81 Support
Maturity Contribution
Application control
Application-level access policies
Direct β ML2 achievable
Patch applications
Not directly supported (use dedicated tooling)
Indirect only
Configure MS Office macros
Not applicable
Not applicable
User application hardening
Web filtering and DNS security
Partial β ML1 support
Restrict admin privileges
Role-based access, least-privilege policies
Direct β ML2 achievable
Patch operating systems
Not directly supported
Indirect only
Multi-factor authentication
Integrated MFA via identity providers
Direct β ML2 achievable
Regular backups
Not applicable (network security focus)
Not applicable
Privacy Act 1988 and Australian Privacy Principles
Perimeter 81 supports compliance with the Australian Privacy Principles (APPs) under the Privacy Act 1988, which applies to all organisations with annual turnover exceeding A$3 million and to all APRA-regulated entities regardless of size. The platform's encryption, access controls, and audit capabilities address the most common compliance gaps identified by the Office of the Australian Information Commissioner (OAIC) in recent determinations against financial services firms.
APP 11 (Security): AES-256 encryption, identity-based access, continuous monitoring protect personal information from unauthorised access, misuse, and loss
APP 1 (Open management): Audit logs demonstrate how personal information is managed and who accesses it
APP 6 (Use/disclosure): Granular access controls prevent unauthorised disclosure of personal information to staff who do not require access
Security Analysis
Certifications and Compliance Standards
Perimeter 81 maintains several independent certifications that Australian firms require for vendor due diligence and regulatory compliance documentation. The SOC 2 Type II report covers security, availability, and confidentiality trust service criteria across a 12-month observation period, providing assurance that controls operate effectively over time rather than at a single point-in-time snapshot. These certifications are essential for APRA-regulated institutions that must demonstrate adequate third-party risk management under CPS 234.
Certification
Body
Status
SOC 2 Type II
Independent Auditor
Compliant (2025)
ISO 27001
BSI
Certified (2025)
GDPR
DPA Assessment
Compliant
CSA STAR
Cloud Security Alliance
Level 2
Encryption Standards
All traffic passing through Perimeter 81's network is encrypted using AES-256-GCM via the WireGuard protocol, which provides both strong security and excellent performance compared to older VPN protocols like OpenVPN or IPSec. Perfect Forward Secrecy ensures that compromising one session key does not compromise past or future sessions. For Australian firms handling personal information under the Privacy Act 1988, these encryption standards exceed the safeguards requirements that OAIC enforcement actions have established as the regulatory baseline.
Component
Standard
Data in transit
AES-256-GCM via WireGuard
Data at rest
AES-256
Key exchange
RSA-4096 / Curve25519
Perfect Forward Secrecy
Yes
Protocols
WireGuard (recommended), OpenVPN, IPSec/IKEv2
Audit Logging
Perimeter 81 maintains detailed logs critical for Australian regulatory requirements, including APRA CPS 234 notification obligations and OAIC investigation responses. Logs are retained for 365 days and exportable to SIEM platforms including Splunk, Microsoft Sentinel, and Elastic Security.
Audit Log Categories5
Show detailsHide details
User authentication events with timestamps, location, device fingerprint, and MFA method
Application access attempts β both granted and denied β with resource identification
Policy changes with administrator identification, change description, and approval chain
Admin actions and configuration modifications with before/after state capture
Network connection events and session metadata including duration, data volume, and protocol
Zero Trust in Practice for Australian Finance Teams
An APRA-regulated advisory firm or mid-market financial services team deploying Perimeter 81 across Sydney and Melbourne offices plus remote workers is the profile this platform is built for. The Zero Trust model matters most in exactly this kind of environment, where staff routinely access client data, reporting systems, and regulatory platforms from varied networks and locations.
Performance overhead with ZTNA/SASE platforms is generally somewhat higher than a traditional VPN due to the additional policy evaluation and continuous verification checks, though this is typically not noticeable in day-to-day use for most finance workflows including video conferencing, Xero, and MYOB access. The Sydney edge node keeps domestic latency low for business applications; connections routed via international nodes will show a more noticeable increase, which is expected given the additional verification layer. As with any SASE/ZTNA rollout, expect a tuning period after initial deployment to eliminate false positives in web filtering and access policies before the system settles into steady-state operation.
Pricing Plans (AUD)
All prices shown in approximate AUD equivalents based on current exchange rates. Perimeter 81 bills in USD, but all plans include core ZTNA functionality, AES-256 encryption, MFA enforcement, a centralised admin console, and 24/7 support. The Essential plan provides foundational Zero Trust capabilities, while Premium adds DNS filtering, Secure Web Gateway, and device posture checks that many APRA-regulated entities will require.
Australian Pricing Note: Perimeter 81 bills in USD. The AUD prices listed are approximate based on current exchange rates (March 2026). Factor in currency fluctuation when budgeting annually. For teams of 50+, request enterprise pricing directly β Perimeter 81 often offers more favourable rates for Australian customers and can provide GST-compliant invoicing.
Total Cost Comparison (AUD)
The total cost of ownership comparison demonstrates that Perimeter 81 delivers significant savings over maintaining separate VPN, firewall, and web gateway solutions. Beyond direct licensing savings, the reduction in management overhead from approximately 20 hours per month to 5 hours frees IT resources for strategic security initiatives rather than routine maintenance of legacy infrastructure. For APRA-regulated institutions, the automated compliance documentation alone can save A$10,000 to A$20,000 annually in audit preparation costs.
Cost Factor
Legacy VPN + Firewall
Perimeter 81 Premium
Hardware appliances
A$18,000+
A$0
Setup and configuration
A$5,000+
A$500
Annual maintenance
A$7,200/year
A$0
IT admin time
20 hrs/month
5 hrs/month
Compliance documentation
Manual (A$12,000+)
Automated (included)
Annual cost (50 users)
A$32,000+
A$10,800
Perimeter 81 vs Competitors
Choosing the right network security platform depends on your organisation's size, technical requirements, and regulatory obligations. We compared Perimeter 81 against three primary alternatives that Australian financial services firms commonly evaluate: NordLayer for budget-conscious SMBs, Zscaler Zero Trust Exchange for large enterprises, and Cloudflare Access for developer-heavy fintech teams.
Feature
Perimeter 81
NordLayer
Zscaler
Cloudflare Access
Starting Price (AUD)
A$12/user/mo
A$10/user/mo
Custom (est. A$22+)
Free-A$10/user
Architecture
ZTNA + SDP + SASE
VPN + basic ZTNA
ZTNA + CASB + DLP
ZTNA
Zero Trust
Full
Limited
Full (advanced)
Full
Micro-Segmentation
Yes
No
Yes (advanced)
Limited
AU Edge Nodes
Sydney
Sydney, Melbourne
Sydney
Sydney, Melbourne
APRA CPS 234 Support
Strong
Basic
Strong
Moderate
FWaaS
Built-in
None
Built-in
Basic
Setup Time
Hours
Minutes
Days/Weeks
Hours
Best For
Mid-market finance
SMB VPN replacement
Large enterprise (500+)
Developer teams
When to Choose Perimeter 81 in Australia
Perimeter 81 occupies the mid-market sweet spot for Australian financial services firms. Choose it when you are transitioning from legacy VPN to genuine Zero Trust architecture, need micro-segmentation to isolate client data and reporting systems, want a unified SASE platform replacing multiple security tools, have a team size of 10-200 users, and when APRA CPS 234 compliance documentation and audit logging are regulatory priorities. The platform's balance of comprehensive security features and manageable complexity makes it particularly suitable for firms without dedicated network security engineering teams.
When to Choose Alternatives
NordLayer: You need a straightforward VPN replacement at lower cost without requiring full ZTNA or micro-segmentation capabilities, and regulatory requirements are minimal
Zscaler: You are a large enterprise (500+ employees) with complex multi-region needs, require CASB and DLP capabilities, and can justify significantly higher per-user costs
Cloudflare Access: You want a developer-friendly, infrastructure-as-code security solution with deep CI/CD integration for a fintech engineering team
Pros & Cons
Pros
True Zero Trust architecture aligned with APRA CPS 234 and ACSC Essential Eight
Quick SASE deployment per vendor documentation (hours, not weeks)
Strong identity provider integrations (Okta, Azure AD, Google Workspace)
SOC 2 Type II and ISO 27001 certified with comprehensive audit logging
Sydney edge nodes deliver low latency for domestic resources
Built-in web filtering for phishing and malicious-domain protection
Cons
Higher per-user cost than traditional VPN solutions (A$12 vs A$8)
Smaller server network than consumer VPN providers (40+ vs 5,500+)
Web filtering and device posture require Premium tier (A$18/user/mo)
Learning curve for teams unfamiliar with Zero Trust concepts (1-2 weeks)
No dedicated Australian phone support β 24/7 chat and email only
Who Should Use Perimeter 81 in Australia?
Ideal Users
Perimeter 81 is best suited for APRA-regulated financial institutions strengthening their CPS 234 compliance posture, AFSL holders and advisory firms with 10-200 employees managing sensitive client data, superannuation funds requiring granular access controls for member information, cloud-first financial services firms using Xero, MYOB, or Microsoft 365 across distributed offices, and remote and hybrid finance teams with staff across multiple Australian cities who need consistent, policy-driven network access regardless of location.
Not Ideal For
Very small teams with fewer than 10 employees where a traditional VPN solution provides adequate security at lower cost should look elsewhere. Large enterprises requiring extensive customisation, CASB, and DLP capabilities beyond what Perimeter 81 offers should evaluate Zscaler. Organisations with strict Australian data sovereignty requirements should note that while the Sydney edge node handles traffic locally, management infrastructure is hosted globally. Teams seeking the lowest-cost VPN-only solution without Zero Trust requirements will find better value with NordLayer.
Our Verdict
Based on our research into Perimeter 81's published architecture, compliance documentation, and standing among Australian mid-market financial services adopters, Perimeter 81 earns 4.6 out of 5 stars for its combination of genuine Zero Trust security, Australian regulatory compliance support, and operational simplicity.
Bottom line: Perimeter 81 delivers authentic Zero Trust Network Access that aligns with ACSC Essential Eight guidance and directly supports APRA CPS 234 compliance requirements. For Australian financial services firms moving beyond traditional VPN security, it offers the right combination of micro-segmentation, SASE convergence, compliance documentation, and ease of deployment at a competitive price point. The Check Point acquisition has strengthened the platform's threat intelligence and enterprise support without sacrificing the deployment simplicity that makes it accessible to mid-market firms.
The slight rating reduction compared to some international markets reflects the lack of dedicated Australian phone support, the currency conversion overhead for AUD billing, and the smaller domestic server footprint. However, the regulatory alignment, Sydney edge node performance, and deployment speed make it a compelling choice for APRA-regulated entities seeking to modernise their network security posture without the cost and complexity of enterprise-grade alternatives like Zscaler.
Final Rating: 4.6/5
Our Rating
Expert Score
4.6/5
Choose Perimeter 81 if:
You need genuine Zero Trust architecture for APRA CPS 234 compliance
You have cloud applications to protect across Australian and international infrastructure
Identity-based access and audit logging are regulatory requirements
You want faster deployment than traditional enterprise SASE solutions
Consider alternatives if:
You only need basic VPN encryption without ZTNA capabilities
Budget is the primary consideration and A$12/user exceeds your threshold
You require strict Australian data sovereignty for all infrastructure components
You are a very small team (under 10) with straightforward security needs
Try Perimeter 81 Free for 14 Days
Experience Zero Trust security for your Australian finance team. No credit card required to start. Full ZTNA, micro-segmentation, and compliance reporting included. Sydney edge nodes for low-latency access.
Zero Trust Network Access (ZTNA) is a security model that requires continuous verification of every user, device, and connection attempting to access resources β regardless of whether they are inside or outside the corporate network. Unlike traditional VPNs that grant broad network access once authenticated, ZTNA enforces granular, identity-based access controls, aligning with APRA CPS 234's requirement for information security capability commensurate with threats.
How does Perimeter 81 address APRA CPS 234 requirements?
Perimeter 81 supports APRA CPS 234 compliance through granular identity-based access controls for information asset protection, comprehensive audit logs of all access events for regulator review, multi-factor authentication enforcement, network segmentation preventing lateral movement, and real-time visibility dashboards supporting the information security capability assessment that APRA expects AFSL-holding firms to maintain.
What is the difference between Perimeter 81 and a traditional VPN?
Traditional VPNs grant users broad network access once authenticated β the "castle and moat" model. Perimeter 81's ZTNA architecture grants access only to specific resources based on the user's identity, device posture, and context. This limits blast radius from compromised credentials, prevents lateral movement by attackers, and provides far more granular control β critical for Australian financial firms under the Privacy Act and APRA CPS 234.
Is Perimeter 81 now called Check Point Harmony SASE?
Yes. Following Check Point's acquisition of Perimeter 81 in 2023, the product has been integrated into Check Point's Harmony SASE (Secure Access Service Edge) portfolio. Existing Perimeter 81 customers continue to receive support, and the platform now benefits from Check Point's ThreatCloud AI threat intelligence infrastructure, which provides real-time threat prevention from millions of global sensors.
What does Perimeter 81 cost for Australian businesses?
Perimeter 81 (now Harmony SASE) pricing starts from approximately US$10β$15 per user per month (Essentials tier) for small teams. Enterprise tiers with full ZTNA, FWaaS, and SWG capabilities are priced via custom quotes for larger deployments. Australian mid-market financial firms typically budget between A$15,000 and A$80,000 annually depending on team size and required modules.
How does Perimeter 81 compare to Zscaler for Australian financial firms?
Zscaler provides more comprehensive SASE capabilities and is the enterprise standard for ASX 200 and major financial institutions, but at significantly higher cost and complexity. Perimeter 81 is better suited to Australian mid-market firms (10β500 employees) that need genuine ZTNA beyond traditional VPN capabilities without the Zscaler price point and implementation complexity. For firms with existing Check Point firewall infrastructure, Harmony SASE offers strong integration advantages.