Overview: Microsoft Cloud App Security (CASB)

Поділитися
Вставка
  • Опубліковано 28 лип 2024
  • This is an overview presentation of Microsoft's Cloud Access Security Broker (CASB): Microsoft Cloud App Security (MCAS). Please feel free to read more on my blog at www.mattsoseman.com and if you have questions let me know in the comments below!
    Note: The views and expressions on my videos do not represent those of my employer and are strictly my own.
    All content provided on this channel is for informational purposes only. The owner of this channel makes no representations as to the accuracy or completeness of any information on this site or found by following any link on this channel.
    The owner of this channel will not be liable for any errors or omissions in this information nor for the availability of this information. The owner will not be liable for any losses, injuries, or damages from the display or use of this information.
    These terms and conditions is subject to change at anytime with or without notice.
  • Наука та технологія

КОМЕНТАРІ • 49

  • @nortonxnorris
    @nortonxnorris Рік тому +1

    Great video. What you will learn: What is Defender for Cloud App > How to get started > Use cases for conversations with your IT Sec team > Potential examples to automate
    Great flow to help you get started

  • @Palmasyguitarras8761
    @Palmasyguitarras8761 3 роки тому

    Thanks Matt. Great Video and kind of impacting way of centralizing security controls for the environment. Definitely something that I look into deeper.

  • @Shizdenn
    @Shizdenn 4 роки тому +1

    Great video Matt, presentation and content are best in class!

  • @lexiewong85
    @lexiewong85 4 роки тому +2

    Great video, thanks for producing it!

  • @TechSimplifiedAI
    @TechSimplifiedAI 4 роки тому

    This is an awesome video! Thanks for sharing Matt!

  • @MrMoxter
    @MrMoxter 4 роки тому +2

    Hi Matt, awesome presentation. You also have to commit the changes on the PA firewall ;)

  • @davestube
    @davestube 4 роки тому

    Great information, thanks Matt!

  • @rajeshagooner
    @rajeshagooner 4 роки тому +2

    All your Video's are great, simple for a beginner and get exited like about the whole M365, Intune, Defender, CAS MS products.
    Keep looking for more such videos, I almost viewed all your videos in couple of days.

    • @MattSoseman
      @MattSoseman  4 роки тому +2

      That means a lot, thank you so much.

  • @mysterioentize
    @mysterioentize 4 роки тому

    Awesome Video Matt.. Cheers 👍👍

  • @DavidNogueraBuxeda
    @DavidNogueraBuxeda 4 роки тому +2

    Just What I wanted. Thanks.

  • @IgorChernovHere
    @IgorChernovHere 4 роки тому +1

    Thanks, Matt, we want more

  • @HasnainKhattak
    @HasnainKhattak 4 роки тому

    You are the rockstar! Thanks for producing

  • @jayfloramusic
    @jayfloramusic 4 роки тому +1

    Thanks Matt!

  • @jacquelineakinbobola2033
    @jacquelineakinbobola2033 4 роки тому +1

    Thanks Matt, found this really useful. Easy to follow and bite sized.
    Is it only on palo alto firewalls that you can automate setting up rules?

  • @kinetic321
    @kinetic321 4 роки тому +5

    Best 41:09 minutes I have spent in a long time

    • @MattSoseman
      @MattSoseman  4 роки тому +1

      Thank you, that means a lot.

  • @armandkruger911
    @armandkruger911 4 роки тому +1

    Microsoft CASB is by far the market leader!

  • @barunmathur9597
    @barunmathur9597 4 роки тому +1

    Thanks for a very informative video. One question I had, firewall logs doesn't have usernames, in this case can we do Active Directory integration to retrieve usernames querying AD against discovered IP's ? Also if an enterprise is sending usernames to MCAS via internet are we encrypting them before storing ?

  • @kaysi768
    @kaysi768 4 роки тому

    this is amazing thank you

  • @lynn9133
    @lynn9133 2 роки тому +1

    Hey Matt, awesome content, thank you! I am thinking of taking this route as a career path, any advice regarding what courses to take for beginners?

  • @vidanaweer1662
    @vidanaweer1662 Рік тому

    Hi Matt,
    Great video as always.Can you do App governance video as well, including how to sanction and inspection apps, best practice, etc.
    Thanks.

  • @broli123
    @broli123 3 роки тому

    Is there a place where we can find this slidedeck to show potential clients?

  • @js8900a
    @js8900a 3 роки тому

    This was very helpful. I'm curious... What tool did you use to present your content on the left side and the CASB options on the right? Going back and forth, zooming in/out. Thank you for sharing!

  • @larryogunbanjo4170
    @larryogunbanjo4170 3 роки тому +1

    03 5.59 DIscovering and Assessing the Risk of Shadow IT
    05 20:37 Threat Detection
    06 28.35 Threat protection in the cloud

  • @cosmicdreams7739
    @cosmicdreams7739 3 роки тому +4

    great video!! also, if this is for teaching.. can you please use the acronyms for things that are not so know and then say it out. like example. SIEM - security information and even management. some acronyms are not well known to noobs. thx

    • @MattSoseman
      @MattSoseman  3 роки тому +1

      Really appreciate the feedback, will def make that change!

  • @flymoracer
    @flymoracer 2 роки тому

    so when MCAS scans files stored within a cloud app storage, what governs the extent to which MCAS can see? Presumably a scan can't just trawl all of Box for example. Is it limited to storage allocated to corporate Box accounts?

  • @simranjit473
    @simranjit473 3 роки тому

    Hi - While publishing 3rd party apps via MCAS, how to restrict direct access. Say FB eg. in the video; what if BYOD user doesn't opt to go via reverse proxy URL and goes directly to FB?

  • @smitharameshgirigoswami8535
    @smitharameshgirigoswami8535 3 роки тому

    Indeed great presentation & demonstration Matt. Thanks a lot. Anyway you can share the presentation deck with us? I would like to us it of course with your permission. :) Thanks in advance.

  • @MrJsysco
    @MrJsysco 2 роки тому

    MCAS working with PAN and in a lose way with IronPort is very powerful stuff. Is MCAS an API based solution? I see that it works with ATP which looks very powerful. This is a cool example of MCAS! Do you have anything that explains the caveats for what else needs to be done to enable MCAS? Thanks you!

  • @chruesch7
    @chruesch7 4 роки тому

    Is the MC CAS upload method via Microsoft Defender ATP also working for non windows clients (e.g. Mac)?

    • @MattSoseman
      @MattSoseman  4 роки тому

      Only Win10 at this time. For Mac you would need firewall or proxy logs.

  • @lwa.dev74
    @lwa.dev74 3 роки тому

    Hi Matt! Just came across your channel and I am thinking of going down this route as a career path, I’m taking MD 100,101 & Ms 500 365 security…. Would adding this into long term view be a good fit? any advice would be amazing… thanks for your content 🙂

    • @MattSoseman
      @MattSoseman  3 роки тому +1

      For security I would look at ms500,az500,sc900,sc300,sc200,sc400

    • @lwa.dev74
      @lwa.dev74 3 роки тому

      @@MattSoseman Hi Matt, thanks for the recommendations... i will take this on-board and add this to my career scope... thanks again :-)

  • @pacmanh22
    @pacmanh22 3 роки тому

    So CASB can locate cloud apps users signed into them via their AAD creds. What if they use their own personal email address to Dropbox but are still using the app for business use. Will CASB still be able to detect?

    • @MattSoseman
      @MattSoseman  3 роки тому +2

      It actually doesn’t use AAD at all to discover. It uses firewall logs or logs from defender for endpoint to discover saas apps - regardless if it’s personal or business version of the app

    • @pacmanh22
      @pacmanh22 3 роки тому

      @@MattSoseman thanks so much for clarifying!

  • @socbrian
    @socbrian 4 роки тому +1

    How do you pipe the data to powerBI?

    • @MattSoseman
      @MattSoseman  4 роки тому

      www.aka.ms/rsa2019mcas

    • @boriskacevich
      @boriskacevich 4 роки тому

      Adding on Matt's comment, you route the data to powerBI via Azure Sentinel:
      docs.microsoft.com/en-us/cloud-app-security/siem-sentinel

  • @engshad
    @engshad 3 роки тому

    Lovely but what about do deep dive series for MCAS/ATP/AIP/Defender

    • @MattSoseman
      @MattSoseman  3 роки тому

      Check out the playlists on this channel. I have many deep dives on these products.

  • @ToTCaMbIu
    @ToTCaMbIu 4 роки тому

    Subbed.

  • @mohamedk5377
    @mohamedk5377 3 роки тому

    could you please share this PPT with me

  • @owenjeremy5384
    @owenjeremy5384 4 роки тому +1

    Wow, no reason to have Digital Guardian or Any other DLP solution this is amazing. Great things with your EDR and Sentinel One build-in...

    • @MattSoseman
      @MattSoseman  4 роки тому +4

      Just wait, in June I’ll be releasing about 20-30. Videos on MCAS - this and MDATP are by far my favorite products!