Overview: Microsoft Cloud App Security (CASB)

Поделиться
HTML-код
  • Опубликовано: 27 авг 2024

Комментарии • 49

  • @nortonxnorris
    @nortonxnorris 2 года назад +1

    Great video. What you will learn: What is Defender for Cloud App > How to get started > Use cases for conversations with your IT Sec team > Potential examples to automate
    Great flow to help you get started

  • @rajeshagooner
    @rajeshagooner 4 года назад +2

    All your Video's are great, simple for a beginner and get exited like about the whole M365, Intune, Defender, CAS MS products.
    Keep looking for more such videos, I almost viewed all your videos in couple of days.

    • @MattSoseman
      @MattSoseman  4 года назад +2

      That means a lot, thank you so much.

  • @armandkruger911
    @armandkruger911 4 года назад +1

    Microsoft CASB is by far the market leader!

  • @MrMoxter
    @MrMoxter 4 года назад +2

    Hi Matt, awesome presentation. You also have to commit the changes on the PA firewall ;)

  • @kinetic321
    @kinetic321 4 года назад +5

    Best 41:09 minutes I have spent in a long time

    • @MattSoseman
      @MattSoseman  4 года назад +1

      Thank you, that means a lot.

  • @DavidNogueraBuxeda
    @DavidNogueraBuxeda 4 года назад +2

    Just What I wanted. Thanks.

  • @Palmasyguitarras8761
    @Palmasyguitarras8761 3 года назад

    Thanks Matt. Great Video and kind of impacting way of centralizing security controls for the environment. Definitely something that I look into deeper.

  • @vidanaweer1662
    @vidanaweer1662 Год назад

    Hi Matt,
    Great video as always.Can you do App governance video as well, including how to sanction and inspection apps, best practice, etc.
    Thanks.

  • @IgorChernovHere
    @IgorChernovHere 4 года назад +1

    Thanks, Matt, we want more

  • @Shizdenn
    @Shizdenn 4 года назад +1

    Great video Matt, presentation and content are best in class!

  • @lexiewong85
    @lexiewong85 4 года назад +2

    Great video, thanks for producing it!

  • @cosmicdreams7739
    @cosmicdreams7739 3 года назад +4

    great video!! also, if this is for teaching.. can you please use the acronyms for things that are not so know and then say it out. like example. SIEM - security information and even management. some acronyms are not well known to noobs. thx

    • @MattSoseman
      @MattSoseman  3 года назад +1

      Really appreciate the feedback, will def make that change!

  • @jacquelineakinbobola2033
    @jacquelineakinbobola2033 4 года назад +1

    Thanks Matt, found this really useful. Easy to follow and bite sized.
    Is it only on palo alto firewalls that you can automate setting up rules?

  • @lynn9133
    @lynn9133 2 года назад +1

    Hey Matt, awesome content, thank you! I am thinking of taking this route as a career path, any advice regarding what courses to take for beginners?

  • @larryogunbanjo4170
    @larryogunbanjo4170 3 года назад +1

    03 5.59 DIscovering and Assessing the Risk of Shadow IT
    05 20:37 Threat Detection
    06 28.35 Threat protection in the cloud

  • @barunmathur9597
    @barunmathur9597 4 года назад +1

    Thanks for a very informative video. One question I had, firewall logs doesn't have usernames, in this case can we do Active Directory integration to retrieve usernames querying AD against discovered IP's ? Also if an enterprise is sending usernames to MCAS via internet are we encrypting them before storing ?

  • @HasnainKhattak
    @HasnainKhattak 4 года назад

    You are the rockstar! Thanks for producing

  • @TechSimplifiedAI
    @TechSimplifiedAI 4 года назад

    This is an awesome video! Thanks for sharing Matt!

  • @flymoracer
    @flymoracer 3 года назад

    so when MCAS scans files stored within a cloud app storage, what governs the extent to which MCAS can see? Presumably a scan can't just trawl all of Box for example. Is it limited to storage allocated to corporate Box accounts?

  • @MrJsysco
    @MrJsysco 2 года назад

    MCAS working with PAN and in a lose way with IronPort is very powerful stuff. Is MCAS an API based solution? I see that it works with ATP which looks very powerful. This is a cool example of MCAS! Do you have anything that explains the caveats for what else needs to be done to enable MCAS? Thanks you!

  • @smitharameshgirigoswami8535
    @smitharameshgirigoswami8535 3 года назад

    Indeed great presentation & demonstration Matt. Thanks a lot. Anyway you can share the presentation deck with us? I would like to us it of course with your permission. :) Thanks in advance.

  • @js8900a
    @js8900a 3 года назад

    This was very helpful. I'm curious... What tool did you use to present your content on the left side and the CASB options on the right? Going back and forth, zooming in/out. Thank you for sharing!

  • @ZeroInDaHouse
    @ZeroInDaHouse 3 года назад

    Is there a place where we can find this slidedeck to show potential clients?

  • @jayfloramusic
    @jayfloramusic 4 года назад +1

    Thanks Matt!

  • @simranjit473
    @simranjit473 3 года назад

    Hi - While publishing 3rd party apps via MCAS, how to restrict direct access. Say FB eg. in the video; what if BYOD user doesn't opt to go via reverse proxy URL and goes directly to FB?

  • @mysterioentize
    @mysterioentize 4 года назад

    Awesome Video Matt.. Cheers 👍👍

  • @davestube
    @davestube 4 года назад

    Great information, thanks Matt!

  • @pacmanh22
    @pacmanh22 3 года назад

    So CASB can locate cloud apps users signed into them via their AAD creds. What if they use their own personal email address to Dropbox but are still using the app for business use. Will CASB still be able to detect?

    • @MattSoseman
      @MattSoseman  3 года назад +2

      It actually doesn’t use AAD at all to discover. It uses firewall logs or logs from defender for endpoint to discover saas apps - regardless if it’s personal or business version of the app

    • @pacmanh22
      @pacmanh22 3 года назад

      @@MattSoseman thanks so much for clarifying!

  • @engshad
    @engshad 3 года назад

    Lovely but what about do deep dive series for MCAS/ATP/AIP/Defender

    • @MattSoseman
      @MattSoseman  3 года назад

      Check out the playlists on this channel. I have many deep dives on these products.

  • @chruesch7
    @chruesch7 4 года назад

    Is the MC CAS upload method via Microsoft Defender ATP also working for non windows clients (e.g. Mac)?

    • @MattSoseman
      @MattSoseman  4 года назад

      Only Win10 at this time. For Mac you would need firewall or proxy logs.

  • @kaysi768
    @kaysi768 4 года назад

    this is amazing thank you

  • @lwa.dev74
    @lwa.dev74 3 года назад

    Hi Matt! Just came across your channel and I am thinking of going down this route as a career path, I’m taking MD 100,101 & Ms 500 365 security…. Would adding this into long term view be a good fit? any advice would be amazing… thanks for your content 🙂

    • @MattSoseman
      @MattSoseman  3 года назад +1

      For security I would look at ms500,az500,sc900,sc300,sc200,sc400

    • @lwa.dev74
      @lwa.dev74 3 года назад

      @@MattSoseman Hi Matt, thanks for the recommendations... i will take this on-board and add this to my career scope... thanks again :-)

  • @socbrian
    @socbrian 4 года назад +1

    How do you pipe the data to powerBI?

    • @MattSoseman
      @MattSoseman  4 года назад

      www.aka.ms/rsa2019mcas

    • @boriskacevich
      @boriskacevich 4 года назад

      Adding on Matt's comment, you route the data to powerBI via Azure Sentinel:
      docs.microsoft.com/en-us/cloud-app-security/siem-sentinel

  • @owenjeremy5384
    @owenjeremy5384 4 года назад +1

    Wow, no reason to have Digital Guardian or Any other DLP solution this is amazing. Great things with your EDR and Sentinel One build-in...

    • @MattSoseman
      @MattSoseman  4 года назад +4

      Just wait, in June I’ll be releasing about 20-30. Videos on MCAS - this and MDATP are by far my favorite products!

  • @mohamedk5377
    @mohamedk5377 3 года назад

    could you please share this PPT with me

  • @ToTCaMbIu
    @ToTCaMbIu 4 года назад

    Subbed.