| Where Can I Use This? | What Do I Need? |
| Strata Cloud Manager |
- Data Security license
Enterprise DLP license
Or any of the following licenses that include the Enterprise DLP and Data Security licenses
- Prisma Access CASB license
- Next-Generation
CASB for Prisma Access and NGFW (CASB-X) license
- Data Security license
|
Contact Palo Alto Networks to enable Shadow Data Discovery on your
tenant.
The Shadow Data Discovery process enables Enterprise Data Loss Prevention (E-DLP) to analyze
documents at rest in apps you onboarded to Data Security. Enterprise DLP uses machine learning to analyze the documents and automatically discover and
categorize these documents into natural groupings based on the contents contained
within each document. Through hierarchical clustering, Enterprise DLP creates
meaningful categories and subcategories that reflect how your organization actually
structures its documents and information rather than relying on predefined
templates.After analysis completes, Enterprise DLP gives visibility into your
shadow data landscape through an interactive dashboard that shows clusters of
documents organized by the AI-discovered categories.
Shadow Data Discovery scan reruns every time Data Security reruns scans of
onboarded apps. This enables Enterprise DLP to continuously learn and
categorizing new documents as they enter your environment and gives your data
security administrators continuous visibility to help them maintain comprehensive
protection for sensitive information that traditional pattern-matching approaches
might miss. Analyzing your shadow data enables your data security administrators to
understand not just what sensitive shadow data exists, but also how your
organization's is naturally stores and organizes its documents and what protection
gaps might exist.