The Future of Zero Trust and SASE is Now! Register now

close
close
The platform of the future is Netskope

Intelligent Security Service Edge (SSE), Cloud Access Security Broker (CASB), Cloud Firewall, Next Generation Secure Web Gateway (SWG), and Private Access for ZTNA built natively into a single solution to help every business on its journey to Secure Access Service Edge (SASE) architecture.

Go to Products Overview
Netskope video
Next Gen SASE Branch is hybrid — connected, secured, and automated

Netskope Next Gen SASE Branch converges Context-Aware SASE Fabric, Zero-Trust Hybrid Security, and SkopeAI-powered Cloud Orchestrator into a unified cloud offering, ushering in a fully modernized branch experience for the borderless enterprise.

Learn about Next Gen SASE Branch
People at the open space office
Designing a SASE Architecture For Dummies

Get your complimentary copy of the only guide to SASE design you’ll ever need.

Get the eBook
Embrace a Secure Access Service Edge (SASE) architecture

Netskope NewEdge is the world’s largest, highest-performing security private cloud and provides customers with unparalleled service coverage, performance and resilience.

Learn about NewEdge
NewEdge
Your Network of Tomorrow

Plan your path toward a faster, more secure, and more resilient network designed for the applications and users that you support.

Get the white paper
Your Network of Tomorrow
Netskope Cloud Exchange

The Netskope Cloud Exchange (CE) provides customers with powerful integration tools to leverage investments across their security posture.

Learn about Cloud Exchange
Netskope video
Make the move to market-leading cloud security services with minimal latency and high reliability.

Learn about NewEdge
Lighted highway through mountainside switchbacks
Safely enable the use of generative AI applications with application access control, real-time user coaching, and best-in-class data protection.

Learn how we secure generative AI use
Safely Enable ChatGPT and Generative AI
Zero trust solutions for SSE and SASE deployments

Learn about Zero Trust
Boat driving through open sea
Netskope achieves FedRAMP High Authorization

Choose Netskope GovCloud to accelerate your agency’s transformation.

Learn about Netskope GovCloud
Netskope GovCloud
  • Resources chevron

    Learn more about how Netskope can help you secure your journey to the cloud.

  • Blog chevron

    Learn how Netskope enables security and networking transformation through security service edge (SSE).

  • Events & Workshops chevron

    Stay ahead of the latest security trends and connect with your peers.

  • Security Defined chevron

    Everything you need to know in our cybersecurity encyclopedia.

Security Visionaries Podcast

Cookies, Not Biscuits
Host Emily Wearmouthas sits down with experts David Fairman and Zohar Hod to discuss the past, present, and future of internet cookies.

Play the podcast
Podcast: Cookies, Not Biscuits
Latest Blogs

How Netskope can enable the Zero Trust and SASE journey through security service edge (SSE) capabilities.

Read the blog
Sunrise and cloudy sky
SASE Week 2023: Your SASE journey starts now!

Replay sessions from the fourth annual SASE Week.

Explore sessions
SASE Week 2023
What is Security Service Edge?

Explore the security side of SASE, the future of network and protection in the cloud.

Learn about Security Service Edge
Four-way roundabout
We help our customers to be Ready for Anything

See our Customers
Woman smiling with glasses looking out window
Netskope’s talented and experienced Professional Services team provides a prescriptive approach to your successful implementation.

Learn about Professional Services
Netskope Professional Services
The Netskope Community can help you and your team get more value out of products and practices.

Go to the Netskope Community
The Netskope Community
Secure your digital transformation journey and make the most of your cloud, web, and private applications with Netskope training.

Learn about Training and Certifications
Group of young professionals working
  • Company chevron

    We help you stay ahead of cloud, data, and network security challenges.

  • Why Netskope chevron

    Cloud transformation and work from anywhere have changed how security needs to work.

  • Leadership chevron

    Our leadership team is fiercely committed to doing everything it takes to make our customers successful.

  • Partners chevron

    We partner with security leaders to help you secure your journey to the cloud.

Supporting sustainability through data security

Netskope is proud to participate in Vision 2045: an initiative aimed to raise awareness on private industry’s role in sustainability.

Find out more
Supporting Sustainability Through Data Security
Highest in Execution. Furthest in Vision.

Netskope recognized as a Leader in the 2023 Gartner® Magic Quadrant™ for Security Service Edge.

Get the report
Netskope recognized as a Leader in the 2023 Gartner® Magic Quadrant™ for Security Service Edge.
Thinkers, builders, dreamers, innovators. Together, we deliver cutting-edge cloud security solutions to help our customers protect their data and people.

Meet our team
Group of hikers scaling a snowy mountain
Netskope’s partner-centric go-to-market strategy enables our partners to maximize their growth and profitability while transforming enterprise security.

Learn about Netskope Partners
Group of diverse young professionals smiling

Netskope and Google Chrome Enterprise: Driving Better Context for Securing Data

May 26 2022

When defining security policies, it is critical to know who the user is and what their privileges should be based on their role, and whether the device itself or the state of the device at the time of connection is in a known good state. Providing controls around what the user can perform once they are sending traffic to the internet is critical, but it’s easier said than done with traditional security solutions, as it is difficult to implement contextual controls with the desired granularity without introducing massive complexity. 

In a previous blog, I wrote about an “out-of-the-box” experience for users, using the Netskope integration with Chrome, that was minimally invasive, yet provided deep contextual control to the administrator. The latest Netskope integration with Google Chrome Enterprise and Verified Access helps take this a step further. 

To start, let’s examine what the “out-of-the-box” experience looks like here. First, the security administrator would set up an API connection between the Netskope Security Cloud and Google’s Verified Access. This only needs to be done once. This is transparent to the user, as the Google Admin will manage the users, as well as the deployment of the Netskope Chrome Extension on managed Chromebook devices. Now, when a student is given a Chromebook with an account on Google, they simply need to connect it to the network and log in with their Google credentials. At this point, the device is brought under management, the user is identified, the Netskope Extension is pushed to Chrome, and the state of the device is determined going forward. From the user’s perspective, they did nothing else but log into the Chromebook.

Let’s look at a general use case that might be seen in a typical organization. One user is on the Finance team and is constantly working with partners and customers on financial matters. This role requires a potentially significant amount of risky behavior that should be allowed, but needs to be closely monitored at minimum. A second user is a software developer that has access to significant intellectual property but that information should only be shared inside the organization. By using Chrome on an issued Chromebook and leveraging integration with Verified Access, the security administrator can now define deeply rich contextual policies. 

From an enforcement point of view, the Netskope Security Administrator can now define policies based on users or groups, proper use, and state of the device. When the finance user logs in, they require access to multiple file sharing services with the ability to log into those services with multiple private accounts and have relative open access to the Internet. The action of downloading content from a corporate instance of Google Drive and then uploading it to a different file sharing service with a different account is highly risky activity. In this example, this action needs to be allowed based on the role, but it needs to be closely monitored. In the case of the developer user, their work product should only reside inside the organization. This user should not be allowed to upload content to any unsanctioned corporate resource as part of their job function. Both of these requirements are easily met with Netskope Security Cloud and Google Chrome Enterprise.

Since the user and device is being managed by the Google Administrator, those identities and roles are then leveraged for policy definition. Is this a known user, using a known good device that has passed boot verification? These questions are answered before any traffic is sent. Once the user starts to send traffic, it is forwarded to the Netskope Security Cloud that verifies the state of the device and role of the user with Verified Access. Once this has passed, traffic is allowed or denied based on policies defined in Netskope. These policies could be as simple as a block or the user could be presented with a coaching screen as to why the activity was blocked, or that it is considered dangerous but give them the option to proceed. 

Netskope is excited to be an inaugural member and is now Google Chrome Enterprise recommended, and part of the Security and Trust solution track. This latest integration with Netskope and Google Chrome Enterprise, with Verified Access, goes a long way toward making the process of defining and applying these contextual controls simple for security leaders, and a hassle-free experience for users working “out-of-the-box” on their Chromebook, so their data is not at risk. Working together, Netskope and Google Chrome Enterprise are continuing the journey to make sure Chromebook users and their data are protected.

Click here to learn more about the Netskope integration with Chrome OS and Chromebook. If you’re interested in other Netskope integrations with Google, check out our pages on Netskope for GCP and Netskope for Google Workspace.

author image
Rolf O’Grady
Rolf has over 20 years of experience in Data Networking and Security. Rolf’s experience has been built in pre-dominantly customer-facing engineering roles in both pre-sales and post-sales capacities.

Stay informed!

Subscribe for the latest from the Netskope Blog