Technology Partner · ZTNA Backbone

Cloudflare Zero Trust,
deployed by TruPoint.

Cloudflare is the backbone of TruWorkspace Zero Trust. We deploy, configure, and manage ZTNA, Secure Web Gateway, CASB, and Data Loss Prevention as one Zero Trust fabric — built to your policy.

Partner TierAuthorized MSP
ModulesZTNA · SWG · CASB · DLP
Deployed forTruWorkspace Zero Trust
HostingCloudflare global edge
IdentityMicrosoft Entra ID
01 · What it does

The Zero Trust fabric, four ways.

Cloudflare Zero Trust is not one product — it's a coordinated set of services that replace legacy VPN, web filtering, and SaaS visibility tools.

Engineers reviewing Zero Trust policy on a monitor
ZERO TRUST POLICY · TRUPOINT MANAGED
/ZTNA

Zero Trust Network Access

Per-app access policy keyed to user, device posture, and identity claims. Replaces always-on VPN with conditional, audited access to internal apps.

/SWG

Secure Web Gateway

DNS and HTTP filtering on every endpoint. Blocks phishing, malware C2, and unauthorized SaaS — with logs you can hand to your auditor.

/CASB

Cloud Access Security Broker

Visibility and policy across Microsoft 365, Google Workspace, and 200+ SaaS apps. Detect risky shares, third-party OAuth grants, and shadow IT.

/DLP

Data Loss Prevention

Inline content inspection on uploads, downloads, and email. Pre-built detectors for PII, PHI, payment data, and Canadian-specific identifiers.

02 · How TruPoint deploys it

From licensing to live policy in four phases.

A repeatable rollout pattern we've run across 80+ TruWorkspace deployments — each one tuned to your environment.

01

Discover

Inventory users, devices, apps, and existing VPN. Map identity sources to Entra. Define risk tiers.

02

Design

Per-app policy matrix. Device-posture signals via Intune. SWG categories, DLP rule set, CASB SaaS allowlist.

03

Deploy

WARP client to managed endpoints via Intune. Tunnel to internal apps. Pilot with low-risk cohort, then phased rollout.

04

Operate

SOC monitors blocks, anomalies, and data events. Quarterly policy review. Annual pen test against the access surface.

03 · Why it matters for SMBs

Enterprise-grade Zero Trust at SMB scale.

Cloudflare's pricing model and TruPoint's MSP delivery make ZTNA economically realistic for 25–250 user companies — the segment most exposed to ransomware and most often denied cyber insurance.

  • Replaces VPN — no more split-tunnel failures
  • Cuts the lateral-movement blast radius
  • Audit trail your insurer will actually accept
  • Survives a stolen credential — device + posture required
  • Scales without hardware refresh cycles
"

Cloudflare gave us VPN-replacement we could explain to the board, and an audit log our cyber insurer signed off on the same week.

IT DirectorFINANCIAL SERVICES · 140 USERS · TORONTO
See it live

A 30-min Cloudflare Zero Trust walkthrough.

We'll show you the policy console, a live block, and the audit log your insurer cares about.

Book a Discovery Call See TruWorkspace ZT