Automating Branch-to-Cloud Connectivity and Security: Versa Secure SD-WAN Integration with Zscaler Internet Access 

Rajesh Kari
By Rajesh Kari
Director, Product Marketing
March 20, 2026
in
Share
Follow

We’re excited to introduce an automated integration between Versa Secure SD-WAN and Zscaler that makes dual-vendor SASE faster, secure and resilient. This integration helps you secure local internet breakout, improve user experience and simplify operations 

The integration simplifies your SASE strategy with the following:  

Faster and more secure connectivity:  

This integration eliminates the need to backhaul application traffic to datacenters and allows IT leaders to leverage broadband or direct internet links to access applications including SaaS and Cloud through secure tunnels between Versa Secure SD-WAN and Zscaler Internet Access (ZIA). This also improves the performance of these applications by reducing latency introduced by datacenter backhauls.  

Reduced operational complexity: 

Versa automatically identifies Zscaler PoPs and allows customers to choose the closest-proximity PoP based on geolocations, improving user experience for all applications forwarded to Zscaler for inspection. With automated workflows, customers can onboard ZIA across thousands of sites faster. This further eliminates configuration errors and policy gaps often seen in manual integrations with ZIA. 

Improved resilience: 

Versa ensures high availability across branches with redundant SD-WAN appliances that maintain tunnels to both primary and secondary PoPs. These tunnels can operate in active/active mode for load sharing or active/standby for failover. A cross connection between appliances enables seamless traffic handoff, ensuring sub-second recovery in case of a failure. 

Better security enforcement: 

Zscaler Internet Access enables enterprises to implement advanced security capabilities such as CASB, DLP, SWG, Threat Prevention, and URL filtering without the need for additional hardware through Zscaler’s cloud-delivered security services.  ​​​​​​Traffic from branch sites and remote networks is automatically forwarded to the nearest ZIA Point of Presence (PoP) for inspection, ensuring consistent security enforcement across all SaaS and cloud applications.  

Build intelligent, resilient, and self-healing networks:  

Empowers enterprises to build a high-performance, resilient, and self-healing network by combining application-aware routing, AI-driven analytics, and WAN optimization with Versa Secure SD-WAN. This ensures consistent user experience, improved connectivity, and simplified operations across your branch, while IT teams gain full visibility, operational efficiency, and reduced operational overhead. 

Why Versa and Zscaler Together – Delivers simplicity, security and resiliency at scale 

Versa has significantly simplified deployment with Zscaler with few easy steps: 

  1. A simple workflow template based guided configuration to automate IPSec based traffic forwarding between Versa Secure SDWAN and Zscaler Internet Access (ZIA).  
  1. With templatized workflow​s​, you can now provision a Zscaler connector on Versa SD-WAN Orchestrator  
  1. You can now create the Zscaler tunnel configuration to the Versa SD-WAN device workflow and provision these tunnels at scale. The connectivity is now established, and traffic can be forwarded for all application access to Zscaler for security.  
  1. This integration also enables traffic steering over links based on priority of the links. The tunnels are created to closest proximity Zscaler locations for low latency routing.  
  1. With this integration, customers can easily monitor traffic forwarding and performance both on the Versa Secure SD-WAN and Zscaler console  

Conclusion 

Recent Posts













Gartner Research Report

2025 Gartner® Magic Quadrant™ for SASE Platforms

Versa has for the third consecutive year been recognized in the Gartner Magic Quadrant for SASE Platforms and is one of 11 vendors included in this year's report.