Beyond the Firewall: Securing the cloud with a CASB (in partnership with CSA)
CASB Cases: How Your Peers are Securing the Cloud
-
Upload
bitglass -
Category
Technology
-
view
135 -
download
1
Transcript of CASB Cases: How Your Peers are Securing the Cloud
![Page 1: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/1.jpg)
webinarsept 21
2016
CASB cases: how your peers are
securing the cloud
![Page 2: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/2.jpg)
STORYBOARDS
enterprise(CASB)
end-user devicesvisibility & analytics
data protectionidentity & access control
applicationstorageserversnetwork
enterprise vs app vendor security responsibilitiesthe data blind spot
app vendor
![Page 3: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/3.jpg)
STORYBOARDS
security must evolve to
protect data outside the
firewall
ungoverned access to
corporate data in the cloud
hidden Shadow IT threats
sensitive cloud data on
unmanaged devices
![Page 4: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/4.jpg)
STORYBOARDS
CASB: a better approach to cloud security
identity
discovery
data-centric security
mobile
![Page 5: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/5.jpg)
STORYBOARDS
casb securitya data-centric approach
the new data reality requires a new security architecture
■ cross-device, cross-platform agentless data protection
■ granular DLP for data at rest and in motion
■ contextual access control
■ detailed logging for compliance and audit
![Page 6: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/6.jpg)
STORYBOARDS
managed devices
application access access control data protection
unmanaged devices /
byod
in the cloud
Forward ProxyActiveSync Proxy
Device Profile: Pass● Email● Browser● OneDrive Sync
● Full Access
Reverse Proxy + AJAX VMActiveSync Proxy
● DLP/DRM/encryption ● Device controls
API Control External Sharing Blocked
● Block external shares● Alert on DLP events
Device Profile: Fail● Mobile Email● Browser● Contextual multi-factor auth
typical use casereal-time data protection on any device
![Page 7: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/7.jpg)
STORYBOARDS
use case 1: real-time saas data protection
■ real-time inline data protection
■ leverage proxies to control access to any app on unmanaged devices
■ external sharing control via API
■ integrated data leakage prevention
![Page 8: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/8.jpg)
STORYBOARDS
client:■ 15,000 employees in 190+
locations globallychallenge:
■ Mitigate risks of Google Apps adoption
■ Prevent sensitive data from being stored in the cloud
■ Limit data access based on device risk level
■ Govern external sharingsolution:
■ Inline data protection for unmanaged devices/BYOD
■ Bidirectional DLP■ Real-time sharing control
secure google apps +
byod
business data
giant
![Page 9: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/9.jpg)
STORYBOARDS
use case 2: achieve regulatory compliance
■ upload + download dlp and encryption
■ protect regulated cloud data on byod
■ control over external share & sync
■ leverage integrated identity management to ensure secure auth
![Page 10: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/10.jpg)
STORYBOARDS
secure office 365 + byod
client:
■ 35,000 employees globally
challenge: ■ Inadequate native O365 security■ Controlled access from any device■ Limit external sharing■ Interoperable with existing
infrastructure, e.g. Bluecoat, ADFS
solution: ■ Real-time data visibility and control ■ DLP policy enforcement at upload
or download■ Quarantine externally-shared
sensitive files in cloud ■ Controlled unmanaged device
access
fortune 50 healthcar
efirm
![Page 11: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/11.jpg)
STORYBOARDS
client:
■ 180,000 employeeschallenge:
■ HIPAA Compliant cloud and mobile■ Control access to Office 365 from managed
& unmanaged devices■ Control external sharing■ No agents on devices
solution:
■ Real-time inline protection on any device■ Contextual access control on managed &
unmanaged devices (Omni)■ API control in the cloud■ Agentless BYOD with selective wipe■ Enterprise-wide for all SaaS apps
HIPAA compliant
o365 + byod
majorhospital
system
![Page 12: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/12.jpg)
STORYBOARDS
use case 3: agentless byod security
■ secure devices without invasive profiles or certificates
■ protect “unwrappable” cloud and native apps
■ selectively wipe corporate data■ enforce device security policies■ full data control and visibility for IT
![Page 13: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/13.jpg)
STORYBOARDS
client:
■ 8000 employees
■ s&p 500
challenge: ■ Lack of adherence to BYOD security
measures■ Failed MobileIron and SAP Afaria
deploymentssolution:
■ Bitglass Agentless – device / OS independent
■ Fast deployment■ Logging for compliance with
internal data security policies■ Seamless integration with
ActiveDirectory
fortune 500
beverage co.
byod security
![Page 14: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/14.jpg)
STORYBOARDS
use case 4: cloud encryption
■ Key for financial services organizations migrating to the cloud
■ Separation of systems provides an additional layer of security
■ Control your own encryption keys■ Full-strength, 256-bit AES
![Page 15: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/15.jpg)
STORYBOARDS
secure salesforce
+ office 365
15
challenge■ Needed complete CASB for enterprise-wide
migration to SaaS■ Encryption of data-at-rest in Salesforce ■ Office 365 security
solution■ Searchable encryption of data in
Salesforce■ Preserve existing API integrations■ Full control of encryption keys■ Real-time inline DLP on any device
(Citadel)■ Contextual access control on managed &
unmanaged devices (Omni)■ API control in the cloud■ Discover breach & Shadow IT
financial services
giant
![Page 16: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/16.jpg)
STORYBOARDS
our mission
total data
protection est. jan
2013
100+ custome
rs
tier 1 VCs
![Page 17: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/17.jpg)
STORYBOARDS
our solutions
cloud mobile breach
17
![Page 18: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/18.jpg)
resources:more info about cloud security
■ bitglass report: cloud adoption by industry
■ case study: financial services firm encrypts SFDC
■ case study: fortune 100 healthcare firm secure O365
![Page 19: CASB Cases: How Your Peers are Securing the Cloud](https://reader036.fdocuments.net/reader036/viewer/2022062820/58a811201a28ab3d6e8b68d7/html5/thumbnails/19.jpg)
STORYBOARDS
bitglass.com@bitglass