Yes, ASA 7.0 or higher has similar virtual firewall concept, just like in FWSM.
For ASA, it is referred as security context.
In ASA, you can have multiple virtual devices (security contexts). Each of them operates as independent device, with dedicated security policy, interfaces, and administrators. Multiple contexts are similar to having multiple standalone firewall devices. Many features are supported in multiple context mode, including routing tables, firewall features, IPS, and management. Some features are not supported, including VPN and dynamic routing protocols.
Like FWSM, you can specify numbers of security context as required. This feature only available for ASA 5520 & ASA5540:
- ASA5520 : 2 default security contexts, add-on license upgrade to 5 or 10 security context.
- ASA5540 : 2 default security contexts, add-on license upgrade to 5, 10, 20 & 50 security contexts add-on license.
Refer to the following URLs for more details:
http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a0080636f9b.html#wp1035807
http://www.cisco.com/en/US/products/ps6120/products_configuration_guide_chapter09186a00806b1c1c.html
HTH
AK