A secure web gateway, or SWG, is a security control that monitors and filters web traffic to enforce policy and reduce access to malicious or risky web content. It matters because the web remains one of the most common paths for phishing, malware delivery, and data policy violations.
What is a Secure Web Gateway (SWG)?
SWGs inspect outbound and sometimes inbound web traffic to apply security and acceptable-use policies. They may block malicious sites, restrict risky categories, inspect downloads, and help prevent users from reaching known harmful destinations.
What SWGs Commonly Do
Common capabilities include URL filtering, malware inspection, web policy enforcement, SSL inspection support, category controls, and logging for investigation.
SWG vs. CASB
SWGs focus more broadly on web traffic control. CASBs focus more specifically on cloud application visibility and policy enforcement.
Frequently Asked Questions
Why do organizations use SWGs?
Because web traffic is a major delivery path for threats and policy violations, especially in distributed work environments.
Does an SWG replace endpoint security?
No. It helps reduce web-borne risk, but endpoint, identity, and email protections still matter.
Related Cybersecurity Terms