SASE is a cloud-based product through which Internet traffic is routed to provide firewall-like functionality to endpoints (workstations) regardless of where they connect. With the SASE agent/software running on your endpoints, all Internet traffic is encrypted, and the source IP is obfuscated, similar to how a traditional VPN service works.
Then, the cloud gateway through which Internet traffic is routed will enforce network security rules like a conventional on-premise firewall. The SASE service also provides a single IP gateway through which your authorized network traffic is routed, and you can use this IP gateway to create conditional access rules for your most critical browser-based/SaaS workloads.
For example, Go West IT can limit access to your Microsoft 365 or QuickBooks Online from only your private dedicated IP gateway, making it exponentially more difficult for a threat actor to access your SaaS applications even if an identity (username, password, MFA) is compromised. Go West IT can also configure your SASE connection to allow simple and secure access to a company network or servers from any remote location without the use of a traditional SSLVPN connection.
SASE is a great replacement for traditional (and inadequate) VPN services, SSLVPN connections to corporate networks, and a great added layer of network protection for your remote users and devices. This is the missing security puzzle piece for most businesses.