Cloud access security brokers (CASBs): What you should know before you buy

Microsoft Defender for Cloud Apps: Microsoft Defender for Cloud Apps is a full-featured CASB focused on protecting SaaS applications. It includes IT security detection, visibility into cloud application usage, protection against application-based threats, information protection, and compliance testing. Advanced capabilities include SaaS security posture management (SSPM), which enables security teams to improve an organization’s security posture; enhanced threat protection as part of Microsoft’s extended detection and response (XDR) solution; and an application management feature that extends additional threat protection to critical data and resources.

Netskope: One of the first pure-play CASB vendors, Netskope is a leader in CASB and SSE. Forrester Research says, “Netskope has demonstrated innovation across its technology, including significant investments in an impressive global private network, artificial intelligence and AI-enabled security.” Netskope recently integrated SWG functionality into its CASB tool.

Palo Alto Networks: Palo Alto touts its CASB as “next generation,” based on the proposition that it’s less of a stand-alone product and more of a suite of integrated solutions such as line-connected security, SSPM, and enterprise DLP. Palo Alto CASB is designed to protect applications and data across clouds and hybrid environments, protecting data in transit between users and SaaS providers, complying with institutional regulations and mitigating risks from shadow IT.

Evidence: Proofpoint CASB focuses on extending DLP and threat protection from email to cloud applications. Proofpoint takes a people-centric approach; provides granular visibility into who is creating sensitive data and who owns, downloads, uploads, shares and edits that data. It identifies users who have been successfully tricked, as well as those who have been hit hard by hackers.


Source link