Bitglass for Securing Popular Apps Employees Need Access to a Myriad of Cloud Apps Beyond Just Office 365
Total Page:16
File Type:pdf, Size:1020Kb
Bitglass for Securing Popular Apps Employees need access to a myriad of cloud apps beyond just Office 365. So how are enterprises securing these countless apps? Read on to learn how the Bitglass SASE platform addresses some popular use cases in different app categories. Messaging Project Management Enterprise messaging applications are now in use across countless organizations Apps in this category enable teams to plan, track, and manage various for rapid communication and file sharing. As users often upload sensitive projects, from PR initiatives to sales strategies. Project management apps documents, they are a prime candidate for leakage. frequently contain strategy details and other proprietary information. Use Cases Functionality Use Cases Functionality • Secure sensitive files at upload, at • Crawl previously shared files for • Deny unauthorized parties access • Require single sign-on and download, and at rest. regulated information and prevent to sensitive strategic information. MFA before granting access to • Identify and protect key data downloads. • Prevent the spread of malware by confidential data. patterns within users’ messages • Scan user messages and file blocking uploads of threats from • Leverage agentless ATP that themselves. uploads for sensitive data and personal devices. blocks zero-day malware uploads • Prevent access to unmanaged prevent sends as needed. • Prevent the incidence of data even for BYOD. messaging apps where visibility is • Coach users to authorized leakage by prohibiting risky • Achieve zero trust with access lacking. messaging apps and block access. control that considers user context shadow IT. and accessed content. Example Apps Example Apps Slack Telegram Smartsheet Wrike Glip WhatsApp Asana Zoho Sprints Microsoft Teams LINE Workfront monday.com Flock Facebook Workplace Pipefy Airtable Google Chat Bitglass for Securing Popular Apps ERP Product & Software Development Enterprise resource planning applications enable organizations to manage These apps are powerful work management tools that address use cases like business processes. Used across industries, they integrate organizations’ test case management and agile software development. Naturally, they end departments and coordinate activities throughout their supply chains. up housing extensive proprietary and product information. Use Cases Functionality Use Cases Functionality • Deny risky access to reports about • Block unauthorized access to • Safeguard mission-critical • Encrypt the files and fields that workflow, inventory, production, key files (e.g. quality reports only information like intellectual house IP and your most sensitive and quality control. accessible for QA). property. data. • Prevent threat actors and careless • Identify and remediate malware at • Maintain visibility over the • Comprehensive activity logs detail users from uploading malware into upload or download for any user data users are accessing and all file, user, and app activity in a the platform. on any device. downloading. single dashboard. • Identify and protect regulated • Scan at-rest or in-transit files • Deny access to users on unsafe • Prevent access for users on BYO information to achieve compliance. for regulated data in order to devices or in unsafe regions. devices and users outside of HQ’s quarantine or block. home country. Example Apps Example Apps SAP ERP Sage ERP Jira GitLab Oracle ERP Exact MAX ERP Confluence SourceForge Microsoft Dynamics Epicor ERP Trello ProjectLocker NetSuite ERP Syspro Bitbucket CloudForge GitHub Windchill Bitglass for Securing Popular Apps CRM & Ticketing File Sharing Customer relationship management apps allow companies to manage and File-sharing applications allow users to share and store files, sync them across analyze their interactions with past, present, and future customers. They are multiple devices, and collaborate on them with others. Due to the volume of filled with confidential and regulated data. data within them, they are regularly targeted by malicious actors. Use Cases Functionality Use Cases Functionality • Shield sensitive customer data like • File and field encryption obfuscate • Govern shares of files in order to • Sharing controls identify and SSNs or credit card details from sensitive data while preserving prevent threatening viewing and revoke risky shares with external insider threats. search and sort. downloading. or unauthorized parties. • Maintain regulatory compliance • Use DLP to identify and protect • Prevent sync clients from being • Enable sync clients on managed while handling PII and PIFI like regulated data with prebuilt used to exfiltrate company devices but block them on BYOD bank account numbers. patterns or Exact Match. documents. and mobile. • Prevent unauthorized access to • Verify user identity with • Defend against malware stemming • Use agentless ATP to block the CRM platform. authentication options like from infected file uploads. malware at rest and at upload or SSO and MFA. download for any device. Example Apps Example Apps ServiceNow Nimble Box Google Drive Zendesk Insightly Dropbox Hightail Zoho Bitrix24 OneDrive Amazon Drive Salesforce Agile CRM Citrix ShareFile Tresorit Freshworks Bitglass for Securing Popular Apps HR Payroll HR apps automate numerous HR job duties and enable employees to manage Payroll applications streamline needed employee activities such as managing their own profiles directly, granting access to their payroll, tax, and health sick leave, absences, and overtime, and provide self-service for items like information. They contain extensive amounts of PII. viewing paystubs and changing 401(k) contributions. Use Cases Functionality Use Cases Functionality • Safeguard personally identifiable • Use Exact Match to find and • Ensure proper authentication • Leverage single sign-on (SSO) information from prying eyes. protect specific data with actions as users attempt to access and reenforce identity verification • Securely allow BYOD access to like encrypt on download. the application. with MFA. managed apps for self-service. • Allow uploads from personal • Safeguard private employee • Protect employee data with full • Defend against the spread of devices but limit downloads of information (like W-2 forms) at rest. strength cloud encryption that malware on countless personal sensitive personnel files. • Deny access to critical data preserves search and sort. devices. • Use agentless ATP to block like employee PII for users with • Use contextual access control to malware at rest and at upload risky contexts. govern access by variables like or download on any device. user device or location. Example Apps Example Apps Workday Justworks Paychex Gusto UltiPro ClearCompany Square Payroll Patriot Software WorkBright Optimum HRIS SurePayroll Expensify Namely Benefits Connect QuickBooks Concur Zenefits Everyday HR ADP Bill.com Halogen TalentSpace Axiom HRS Bitglass for Securing Popular Apps FP&A EHS Apps Financial planning and analysis apps provide automated functionality and Environment, health, and safety applications enable organizations to implement generate reports as needed on the fly. They contain sensitive financial data practical steps to achieve environmental workplace safety. Naturally, the like invoices and bank account information. organizational and employee data therein needs to be secured. Use Cases Functionality Use Cases Functionality • Prevent the leakage of PII • Encrypt file and field level data • Prevent the leakage of incident • Use DLP to find and quarantine like SSNs and other financial with full-strength encryption that and risk reports as well as audit sensitive or HIPAA-regulated data. information at rest. enables search and sort. details. • Access control blocks BYOD • Secure access to key documents • Prevent access to certain files for • Block application access for and mobile but grants access for like accounts payable files. unauthorized or risky users and unauthorized or risky endpoints. managed computers. • Ensure regulatory compliance with log all activity. • Defend against the spread of • Agentless ATP blocks malware at frameworks like PCI DSS, SOX, • Automatically detect regulated malware within the EHS platform. rest as well as threats in transit for and others. data and apply DLP policies like any app or device. DRM and quarantine. Example Apps Example Apps QuickBooks GoDaddy Intelex Cority Xero Wave Accounting Vera EHS BasicSafe Zoho Books FreeAgent EHS Insight LifeSaver ZipBooks Adaptive Insights SiteDocs Pro-Sapien Hiveage Bitglass for Securing Popular Apps EMR Apps Electronic medical records are filled with PII and PHI like patient treatment details and medical history. As these EMR apps are a top target for malicious actors, healthcare organizations must prioritize their security. Your organization will need to secure countless applications in order to protect your sensitive and regulated data. These apps cross a variety of categories and all require granular security. At Bitglass, we are committed to securing any Use Cases Functionality interaction between any device, app, web destination, on-premises resource, or infrastructure. Want to see how • Identifying and defending • Use prebuilt identifiers to protect protected health information (PHI). PHI and PII with DLP actions like we can help your enterprise? • Preventing data leakage on DRM and redact. unmanaged devices like personal • Block sensitive file downloads Request a free trial. phones. for BYOD while allowing them on • Ensuring that users are properly managed