Isolation

Browse 24 isolation tools

SASE platform combining ZTNA, SD-WAN, SWG, and WAF for hybrid work security.

Continuously tests network isolation/segmentation by detecting unexpected leaks.

Formally verified secure OS/TEE for IoT and embedded devices.

Hardware-separated dual-workspace laptop for protecting sensitive org data.

Hardware appliance for remote, out-of-band physical network isolation.

Hardware-enforced browser isolation & cross-domain security solutions.

Confidential K8s platform using secure enclaves to protect containerized workloads.

Hardware-based confidential VMs for secure, isolated cloud workloads.

Sandboxed browser in a VM to block malware, keyloggers & Trojans.

Hardware microsegmentation platform isolating endpoints for defense/govt use.

Hardware SOM providing OS-independent microsegmentation for edge devices.

Zero Trust endpoint & server breach prevention via app isolation/containment.

Secure isolated browser app for protected online banking sessions.

Browser defense platform to detect, isolate, and block web-based threats.

Native browser isolation tool blocking phishing, malware, and account takeover.

Isolated communication platform for compartmentalized secure collaboration

Secure infrastructure for deploying and executing AI agent workloads.

Runtime container security platform providing workload isolation via microVMs

Remote browser isolation tech protecting against zero-day web threats

Secure workspace for BYOD/unmanaged devices without VDI or device takeover

Remote Browser Isolation solution that executes web content in isolated env.

Firejail is a Linux sandbox program that isolates untrusted applications using kernel namespaces, seccomp-bpf, and capabilities to reduce security breach risks.

gVisor is a Go-based application kernel that provides enhanced container isolation by implementing Linux system calls and limiting host kernel exposure through its runsc OCI runtime.

A setuid implementation of user namespaces that enables running unprivileged containers without root privileges as a secure alternative to traditional container runtimes.