Get the report: How to Achieve CIO-CEO Alignment in the Era of AI
As the core IT company of the JAL Group, JAL Digital Co.,Ltd. manages system development, operation, and maintenance essential to aviation. Its expertise extends beyond the JAL Group to airport management and other industries. To address the challenge of visualizing data in cloud environments, the company implemented Netskope, enhancing security and gaining greater visibility.
Now, JAL Digital aims to further strengthen its security posture by expanding its use of Netskope.
JAL Digital’s main business is the development, operation, and maintenance of systems for airline operations within the JAL Group. Since IT is used in all airline operations, including customer reservations, air cargo handling, aircraft maintenance and operation, and cabin crew scheduling, the company plays a very important role. The expertise cultivated within the JAL Group is also being applied to business systems for airport management companies, call center systems, and IT asset management software.
For JAL Digital, which performs a wide range of IT-related work both inside and outside the Group, the use of cloud computing and the security issues it raises are inevitable. Yoshinori Hachiya, who is in charge of formulating cybersecurity strategies, talks about the problems the company has faced.
“Until now, we have operated a security system based on perimeter defense. However, when Gmail and Microsoft 365 were introduced and data was sent to the cloud, the question became how to protect the data that was leaving the company.”
Hachiya had become aware of the existence of CASB through discussions with other companies facing the same issue. However, there was another reason behind the decision to actually implement CASB. Kazuya Koizumi, who was in charge of cybersecurity strategy at the time, recalls the situation as follows.
“The trigger was the coronavirus. We tried to strengthen our VPNs and continue with perimeter-type security, but the sudden shift to working from home resulted in more traffic than we had anticipated, such as videoconferencing, and the VPN and Internet connection became bottlenecks. We realized that expanding the use of the cloud itself was impossible with security measures that relied on VPNs, and we decided to accelerate the deployment of CASB.”
We realized that expanding the use of the cloud itself was impossible with security measures that relied on VPNs, and we decided to accelerate the deployment of CASB.
JAL Digital began working towards the introduction of CASB in 2020. Although the move was partly spurred on by the COVID-19 pandemic, Hachiya says that “we had originally planned to develop a security strategy at this time.” However, as the number of staff in charge of security was limited, they decided to prioritize and implement it on an annual basis.
“In the first year, we started by setting up EDR. We wanted to strengthen endpoint security because data is delivered to endpoints via email. We decided to introduce CASB the following year.”
When selecting a CASB product, Hachiya referred to the Gartner’s Magic Quadrant. From the security products listed, he looked for a solution that met the following requirements:
After searching for a solution that met these requirements, they came across Netskope. They then proceeded with their investigation by comparing other companies’ products with Netskope as the benchmark.
Although Hachiya felt from the beginning that Netskope would be the one to choose, the deciding factor in their selection was tenant visualization.
“For example, with Gmail, no matter how many URLs you try to pull up, you can only tell that it’s Gmail. But with Netskope, you can tell whether it’s a private Gmail account or whether it’s your company or another company’s, and you can even identify the tenant. We evaluated it based on the fact that you can see the tenant for each cloud service, not just Gmail.”
In addition, Hachiya says that they also highly evaluated the fact that, by combining decoded SSL communication with DLP, it is possible to detect information that should not be handled after looking at the contents of the data.
For example, with Gmail, no matter how many URLs you try to pull up, you can only tell that it’s Gmail. But with Netskope, you can tell whether it’s a private Gmail account or whether it’s your company or another company’s, and you can even identify the tenant.
JAL Digital introduced Netskope in May 2022. They had already conducted a simple PoC internally the previous year and a full-scale PoC with the help of a sales agent, and they were confident that it met the specifications they were looking for. “Immediately after the full-scale introduction, there were frequent inquiries about certificates, but there have been no problems caused by Netskope,” says Hachiya.
During the PoC, we confirmed that the results of SSL decoding were being properly visualized, and that sites with security risks were being blocked in real time within SWG. We also confirmed that Netskope’s client would work in a VDI environment.
Hachiya says that even after the full-scale introduction, the performance was the same as that confirmed during the PoC. He says that even when users access sites with security risks, they can be tracked and blocked properly.
“We were aware that it would be difficult to evaluate false positives and false negatives without operating SWG in a real environment, so we were a little worried about putting it into production, but our concerns turned out to be unfounded. We also operate competing products within the group, and we obtain information on individual malicious URLs, etc., but when we check them, they are already registered in Netskope’s security risk categories, so we have a great sense of security in the fact that we can automatically control connections.
In addition, even when data moves between cloud services, for example when data is passed from the storage service that JAL Digital has contracted with to the client’s storage, it is possible to visualize things like which user is sending what data, who (which tenant) is receiving the data, so Hachiya says that “as the administrator, I can still feel secure.”
We also operate competing products within the group, and we obtain information on individual malicious URLs, etc., but when we check them, they are already registered in Netskope’s security risk categories, so we have a great sense of security in the fact that we can automatically control connections.
JAL Digital has succeeded in visualizing tenants and the flow of data in the cloud. However, security measures are not yet complete. Hachiya says, “I feel that security measures for IaaS/Paas/SaaS are necessary in the future. The key is how we will tackle the configuration management side, such as the introduction of CSPM/SSPM.”
In the future, we would like to build an optimized security environment for the cloud era through system restructuring and parameter tuning, including further utilization of Netskope.