New Features - SaaS Security - 2022
Backward scanning support for Bitbucket cloud app
Bitbucket cloud app on SaaS Security API now supports backward scanning for extended visibility and controls that protect your company’s sensitive data. Backward scanning looks back up to a period of 365 days from the date of onboarding. To get started, simply onboard the Bitbucket Cloud app.
Backward scanning support for Jira Cloud
Jira Cloud app on SaaS Security API now supports backward scanning for extended visibility and controls that protect your company’s sensitive data. Backward scanning looks back up to a period of 365 days from the date of onboarding. To get started, simply onboard the Jira app.
Bitbucket cloud app enhancements
Bitbucket on SaaS Security API now supports the following features.
- User Activities and Events:
- Repository Fork
- Repository Unshare
- Pull Request Created
- Admin Remediation:
- Change Sharing
- Notify File Owner
To get started, simply onboard the Bitbucket Cloud app.
Cortex XSOAR integration
SaaS Security API is now available on the Cortex XSOAR Marketplace. With this integration, Cortex XSOAR collects incidents from SaaS Security API for improved security orchestration and incident management and remediation of risks posed by data exfiltration on your organization’s Sanctioned SaaS applications.
Exact Data Matching (EDM) for SaaS Security API
Enterprise DLP offers EDM technology on SaaS Security for improved detection. EDM can detect sensitive and personally identifiable information in a structured data source such as databases, directory servers, or structured data files (CSV and TSV), with high accuracy.
To begin using this detection method to protect your most sensitive content, simply configure EDM, then add EDM profiles to asset rules.
Expanded SaaS App Dictionary on SaaS Security Inline
The SaaS Security Inline SaaS App Dictionary now supports 45K+ SaaS apps, and growing. If you haven’t already, purchase an add-on license, then get started to protect against cloud-based threats by blocking traffic for unsanctioned SaaS apps and risky user activity.
Extended support for Jira Cloud
Jira Cloud app on SaaS Security API now supports remediation and user activity monitoring capabilities for extended visibility and controls that protect your company’s sensitive data. To get started, simply onboard the Jira app.
SaaS policy enforcement with SaaS Security Inline for Cloud Managed Prisma Access
SaaS Security Inline for Cloud Managed Prisma Access now supports SaaS policy enforcement—so that your organization has the insight and integrated security controls to prevent data security risks of sanctioned and unsanctioned SaaS application usage on your network.
To gain visibility into and control of SaaS applications, SaaS Security administrators create SaaS policy rule recommendations with specific SaaS App-IDs provided by the App-ID Cloud Engine (ACE). Then, in Prisma Access Cloud Management, Web Security administrators review and choose to accept the rules that SaaS Security administrators recommend. SaaS rule recommendations are added to your web access policy.
You must have Web Security enabled on Prisma Access Cloud Management and a SaaS Security Inline add-on license to leverage SaaS policy rule recommendations.
SaaS policy enforcement with SaaS Security Inline for Panorama Managed Prisma Access
SaaS Security Inline for Panorama Managed Prisma Access now supports SaaS policy enforcement. SaaS Security Inline offers SaaS visibility and security controls— advanced analytics, reporting, and SaaS policy rule recommendations —so that your organization has the insight and integrated security controls to prevent data security risks of sanctioned and unsanctioned SaaS application usage on your network.
SaaS Security Inline Enhancements for Cloud Managed Prisma Access
SaaS Security Inline for Cloud Managed Prisma Access now includes Settings for a centralized view of network and CASB security from a single console. SaaS Security Inline offers SaaS visibility— advanced analytics and reporting —so that your organization has the insights to understand the data security risks of sanctioned and unsanctioned SaaS application usage on your network.
SaaS Security Posture Management (SSPM)
SSPM is a new product in the SaaS Security offering that helps find and fix misconfigured settings on supported SaaS apps along with other features to ensure proper posture security all from one unified cloud management console.
Scan support for Bitbucket Cloud
You can now connect a Bitbucket Cloud instance to SaaS Security API to scan for repository commits and repository assets to gain visibility into your company’s data and protect against data exfiltration. To get started, simply onboard the Bitbucket Cloud app.
Scan support for Jira Cloud
You can now connect a Jira Cloud instance to SaaS Security API to scan for issue descriptions, comments, and attachments to gain visibility into your company’s data and protect against data exfiltration. To get started, simply onboard the Jira app.
Scan support for Jira Data Center
You can now connect a Jira Data Center instance to SaaS Security API to scan for issue descriptions, comments, and attachments to gain visibility into your company’s data and protect against data exfiltration. To get started, simply onboard the Jira Data Center app.
Scan support for Slack Enterprise V2
Slack Enterprise V2 is the updated Slack Enterprise app with the following advantages:
- Faster asset discovery.
- Improved scalability—Optimised API calls and reports events as assets only upon a DLP match.
- Supports backward scanning up to 1 year.
You can now connect a Slack Enterprise V2 instance to SaaS Security API to scan for files and messages to gain visibility into your company’s data and protect against data exfiltration.
Delete any previously installed Slack Enterprise Grid app of the same instance before onboarding Slack Enterprise V2. If both versions are used at the same time, rate limits for Slack will be shared between the two and might impact asset discovery. To get started, simply onboard the Slack Enterprise V2 app.