SaaS Security
Add a New Data Asset Policy
Table of Contents
Expand All
|
Collapse All
SaaS Security Docs
Add a New Data Asset Policy
Learn how to create a new data asset policy.
Data Security enables you to add new policies for scanning assets (content) stored on
your sanctioned SaaS applications. For example, you can create a policy that
triggers an alert based on match criteria (for example, an asset's exposure is set
to Public) needed to protect a specific asset. An exclamation point for your cloud
app denotes no active rules.
When you create a new data asset policy, you have the option to automatically remediate incidents
that violate that policy. Automatic remediation is a powerful tool and can modify a
large number of assets in a short amount of time: before you include these
remediation actions in additional policies, perform a test using one policy and a
small set of assets.
- Log in to Strata Cloud Manager.Select ManageConfigurationSaaS SecurityData SecurityPolicies.Four types of policies are listed:
- Data Asset Policies
- User Activity Policies
- Security Control Policies
- Email DLP Policies
Select Data Asset Policies and Add Policy.Enter a Policy Name and an optional Description.Select a Severity (building blocks in asset rules) for the policy.Verify that the Status is Enabled.Specify Match Criteria, including the exposure levels.Specify Auto Remediation Actions and automatically remediate for change sharingwhen there are policy violations.Configure Other Actions for your policy:- Send Slack Alert
- Apply Data Label: Microsoft Labeling for Office 365 and Google Drive Labeling
- Create IncidentAssign the incident to a user and send an administrator email alert.
Save Policy to create your new data asset policy.Data Security starts scanning files against the data asset policy as soon as you save the changes. After the scan starts, you can start to assess new incidents and fine-tune your new policy.