KoelBerry

167-169 Great Portland Street, Fifth Floor

London, England, W1W 5PF

+44 (0)20 8819 4919

info@koelberry.com

Service Partners

An ecosystem, not a single vendor.

We stay independent of any single vendor so every recommendation is about what's right for your environment — backed by technology alliances across the categories that matter.

Alliance Categories

Where our partner ecosystem sits.

We work across the leading platforms in each category rather than pushing a single stack — so our advice stays vendor-neutral.

Cloud

Cloud Platforms

Alliances across the major hyperscale and regional cloud providers, so architecture decisions are led by your needs, not a licensing agreement.

IaaSPaaSHybrid Cloud
Security

Security Vendors

Relationships with leading endpoint, firewall, and identity security vendors, matched to your risk profile rather than a single preferred supplier.

EndpointFirewallIdentity
Networking

Networking Hardware

Certified partnerships across enterprise networking hardware and SD-WAN platforms for deployments of any scale.

SwitchingSD-WANWi-Fi
Compliance

Standards & Compliance

Our governance methodology is built around recognised standards bodies and frameworks, including ISO 27001.

ISO 27001GDPRCyber Essentials
Tufin Authorized Partner Program
Authorized Partner

Tufin — The Security Policy Company

KoelBerry is an Authorized Partner in the Tufin Partner Program, and our engineering team has hands-on, contracted experience deploying and running Tufin's network security policy platform for enterprise clients. We deliver Tufin consulting and firewall policy automation from our hubs in London, Frankfurt, and Auckland — and support clients wherever they operate.

Our Tufin work covers the full lifecycle of firewall and security policy management — from initial deployment through to day-to-day operation:

  • Firewall policy and object cleanup, and rule recertification projects
  • Automated rule review, redundant-rule analysis, and ticket tracking
  • Security assessments to remove unused rules and minimise excessive access
  • Continuous compliance and audit-readiness reporting

Selected enterprise engagements: Siemens Financial Services, Porsche, MAN Trucks, and Swisscom.

Ask About Our Tufin Work
REQUEST POLICY ENGINE DEPLOYED
AUTOMATION: RULE REQUEST → POLICY → DEPLOYMENT
How We Automate

Tufin automation, done properly.

Automation is at the centre of how we deliver Tufin services today. Manual firewall administration doesn't scale — a single enterprise network can carry thousands of rules across dozens of devices, and reviewing that estate by hand is slow and error-prone. We build automated workflows on top of Tufin's platform that handle the full lifecycle of a firewall change: a request comes in, it's automatically checked against the existing rule base for duplication or conflict, routed for the right approvals, and — once signed off — pushed to the affected devices without an engineer hand-writing the rule.

Where it matters most, we configure automated, policy-based rule generation. Instead of an engineer drafting a new firewall rule from a blank page, the system analyses the request against your network topology and existing security policy, and proposes the precise rule needed — scoped no wider than necessary. An engineer still reviews and approves every change, but the drafting itself is automated. In practice this cuts turnaround on routine access requests from days to hours, and it removes the overly broad "just in case" rules that tend to creep into hand-written firewall policies over time.

Automation doesn't stop once a rule is live. We also automate ongoing policy hygiene: scheduled detection of unused or expired rules, flagging of policy violations as they occur, and continuous compliance checks against frameworks like ISO 27001 and PCI DSS — so audit-readiness becomes a by-product of day-to-day operations rather than a scramble before an assessment.

Discuss Tufin Automation
Technology Platforms

Other platforms we deploy and manage.

Alongside Tufin, our security and network delivery is built around other proven, industry-leading platforms.

Network & Firewall Security

Fortinet

We design, deploy, and centrally manage Fortinet security infrastructure — including FortiGate, FortiManager, and FortiWifi — for clients across multiple regions.

KB
ALLIANCE_STATUS: VENDOR-NEUTRAL BY DESIGN
Why It Matters

Independence keeps our advice honest.

We're not tied to reselling one platform, so a recommendation to move to a particular cloud, firewall, or network vendor is based on fit for your environment — not a quota we need to hit.

Interested in becoming a technology or referral partner? We're always open to conversations with vendors and consultancies who share our standards.

Discuss a Partnership
Global Presence

Delivering from London, supported worldwide.

KoelBerry is headquartered in London, with regional delivery partners in Frankfurt and Auckland extending our reach across Europe and Australasia — so clients get local support wherever they operate.

HQ

London, United Kingdom

Head office — client engagement, project delivery, and 24/7 monitoring for clients across the UK and beyond.

Partner

Frankfurt, Germany

Regional delivery partner supporting clients across Frankfurt and the wider DACH region with local, on-the-ground expertise.

Partner

Auckland, New Zealand

Regional delivery partner supporting clients across Auckland and Australasia with matching standards of delivery.

Frequently Asked

Tufin & location questions.

Do you provide Tufin consulting in London?

Yes. London is our head office, and Tufin security policy consulting, firewall cleanup, and rule automation are among our core services delivered directly from here.

Do you support Tufin projects in Frankfurt or the DACH region?

Yes. Our Frankfurt-based delivery partner supports Tufin deployments and firewall policy work for clients across Germany, Switzerland, and Austria.

Can you deliver Tufin and security services in Auckland, New Zealand?

Yes. Our Auckland delivery partner extends the same Tufin and network security capability to clients across New Zealand and wider Australasia.

Do you work with clients outside London, Frankfurt, and Auckland?

Yes. Alongside these three hubs, we deliver remotely managed Tufin, Fortinet, and governance services to enterprise clients globally.

Do you offer Tufin security policy automation?

Yes. Automating firewall rule requests, approvals, and auto-generated policy is a core part of our Tufin practice — not an add-on. See "How We Automate" above for details.

Want the specifics behind a particular solution?

Explore Solutions