fermer
fermer
Le réseau de demain
Le réseau de demain
Planifiez votre chemin vers un réseau plus rapide, plus sûr et plus résilient, conçu pour les applications et les utilisateurs que vous prenez en charge.
          Essayez Netskope
          Get Hands-on With the Netskope Platform
          Here's your chance to experience the Netskope One single-cloud platform first-hand. Sign up for self-paced, hands-on labs, join us for monthly live product demos, take a free test drive of Netskope Private Access, or join us for a live, instructor-led workshops.
            Un leader sur SSE. Désormais leader en matière de SASE à fournisseur unique.
            Un leader sur SSE. Désormais leader en matière de SASE à fournisseur unique.
            Netskope fait ses débuts en tant que leader dans le Magic Quadrant™ de Gartner® pour le SASE à fournisseur unique.
              Sécuriser l’IA générative pour les nuls
              Sécuriser l’IA générative pour les nuls
              Learn how your organization can balance the innovative potential of generative AI with robust data security practices.
                Modern data loss prevention (DLP) for Dummies eBook
                La prévention moderne des pertes de données (DLP) pour les Nuls
                Get tips and tricks for transitioning to a cloud-delivered DLP.
                  Réseau SD-WAN moderne avec SASE pour les nuls
                  Modern SD-WAN for SASE Dummies
                  Cessez de rattraper votre retard en matière d'architecture de réseau
                    Identification des risques
                    Advanced Analytics transforms the way security operations teams apply data-driven insights to implement better policies. With Advanced Analytics, you can identify trends, zero in on areas of concern and use the data to take action.
                        Les 6 cas d'utilisation les plus convaincants pour le remplacement complet des anciens VPN
                        Les 6 cas d'utilisation les plus convaincants pour le remplacement complet des anciens VPN
                        Netskope One Private Access is the only solution that allows you to retire your VPN for good.
                          Colgate-Palmolive protège sa "propriété intellectuelle" "grâce à une protection des données intelligente et adaptable
                          Colgate-Palmolive protège sa "propriété intellectuelle" "grâce à une protection des données intelligente et adaptable
                            Netskope GovCloud
                            Netskope obtient l'autorisation FedRAMP High Authorization
                            Choisissez Netskope GovCloud pour accélérer la transformation de votre agence.
                              Let's Do Great Things Together
                              La stratégie de commercialisation de Netskope privilégie ses partenaires, ce qui leur permet de maximiser leur croissance et leur rentabilité, tout en transformant la sécurité des entreprises.
                                Solutions Netskope
                                Netskope Cloud Exchange
                                Netskope Cloud Exchange (CE) provides customers with powerful integration tools to leverage investments across their security posture.
                                  Support technique de Netskope
                                  Support technique de Netskope
                                  Nos ingénieurs d'assistance qualifiés sont répartis dans le monde entier et possèdent des expériences diverses dans les domaines de la sécurité du cloud, des réseaux, de la virtualisation, de la diffusion de contenu et du développement de logiciels, afin de garantir une assistance technique rapide et de qualité
                                    Vidéo Netskope
                                    Formation Netskope
                                    Grâce à Netskope, devenez un expert de la sécurité du cloud. Nous sommes là pour vous aider à achever votre transformation digitale en toute sécurité, pour que vous puissiez profiter pleinement de vos applications cloud, Web et privées.

                                      Telling the difference makes a difference with cloud app instances

                                      Aug 11 2015
                                      Tags
                                      Cloud Best Practices
                                      Cloud Security
                                      Cloud Visibility
                                      Dropbox Security
                                      SaaS Security
                                      Tools and Tips

                                      As part of the field team, I get to speak with customers across multiple industries, which is a great vantage point for observing common themes. A recent example is positive customer reactions over Netskope’s ability to differentiate between different instances of the same SaaS cloud app (i.e. telling the difference between whether a user logged into the “Coke” or “Pepsi” -or a personal- instance of Box). Not all cloud access brokers (CASBs) offer this ability, but judging by market response, it’s an important feature, especially as an organization decides to rollout a SaaS solution such as Box.

                                      So why is telling the difference between instances of the same cloud app so important? I’m seeing three use cases, as explained below.

                                      1. Pre-production and production rollout of SaaS solutions. A large Fortune 500 insurance company I’m working with has explicitly built their deployment plan to use separate instance IDs of Office 365. The goal is to validate security policies in the pre-production instance of O365 before applying the policies into the production instance. The early validation will ensure a smooth user experience for the majority of employees who are using the production instance and mitigate any disruptions to workflows and the regular use of the app. A secondary application of instance IDs during rollout enables IT to continue using the pre-production instance while setting a message to notify the employee who might still be accessing that instance to coach, or even redirect him or her to the production instance instead.
                                      2. Privacy and compliance concerns, including audit requirements. This is a big one. A good example of this is with regards to European Union privacy laws. By being able to tell the difference in corporate versus personal sessions of cloud apps such as Box, IT can specify to only monitor content and data exchanged between the user and corporate instances. Conversely, IT can also monitor corporate data being passed to shadow IT/non-sanctioned apps to ensure compliance – such as preventing users from uploading corporate PII data to an unsanctioned cloud storage service or non-corporate instance of a cloud storage app. Either way, differentiating instances of cloud apps provides for a clear audit trail of cloud activity and data across corporate and personal cloud app transactions. This is especially important for highly regulated industries, as I’ve seen these requirements in both financial services and healthcare customers and prospects.
                                      3. Granular access controls. The importance of context shines through when managing security and DLP controls. And by context, I mean things like user, group, device, location, app or category, activity, and more so you can contextualize policy and control. Being able to distinguish between personal and corporate sessions to a cloud app provides value, but the ability to apply mitigating controls around personal sessions separately and distinctly from corporate session is powerful. I have one customer that identifies the consumer-grade instances of a sanctioned cloud app and blocks access to that while only allowing access to their corporate instance of the cloud app from company-managed mobile devices. In the same vein, organizations could set a security policy such that data uploaded into a corporate instance of a cloud storage app be automatically encrypted while data uploaded into the personal instance be left alone.

                                      To summarize, instance differentiation can be an important part of any cloud app rollout within an organization, addressing privacy and/or compliance concerns. The key lies in managing policy control for both sides.

                                      Restez informé !

                                      Abonnez-vous pour recevoir les dernières nouvelles du blog de Netskope