<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Here’s why you need CASB, SASE, DLP, Data Lifecycle Management(Including classification), UEBA, in Cloud Security</title>
    <link>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/68011#M399</link>
    <description>&lt;P&gt;With the right kit and integrations this kind of behaviour is detectable at outset in real time and straight up preventable.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The attacker took critical company data and sent it to his personal Google account, just with a CASB there are at least five vendors that can detect and prevent that out of the box.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Add in the rest of the controls and send them to a good SIEM, and do anomaly detection and properly staff it. Well, probably you’re looking at a 10-20 million dollar investment for a company the size of Google with its assets, however this was not a skilled attacker so you could have been aware from the moment he tried to take the first file, and very likely before. Just a policy preventing transfer of documents to a personal Google Google account would have detected and prevented this.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;However as a very good salesman once said:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;”No one want’s back-up, everyone wants recovery…”&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 07 Mar 2024 23:55:07 GMT</pubDate>
    <dc:creator>Early_Adopter</dc:creator>
    <dc:date>2024-03-07T23:55:07Z</dc:date>
    <item>
      <title>Here’s why you need CASB, SASE, DLP, Data Lifecycle Management(Including classification), UEBA, PAM!</title>
      <link>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/67976#M396</link>
      <description>… and a whole lot of analytics!&lt;BR /&gt;&lt;BR /&gt;Maybe Google will “Chronicle” this… &lt;span class="lia-unicode-emoji" title=":face_with_tongue:"&gt;😛&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://www.bbc.com/news/world-us-canada-68497508" target="_blank"&gt;https://www.bbc.com/news/world-us-canada-68497508&lt;/A&gt;</description>
      <pubDate>Thu, 07 Mar 2024 04:04:11 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/67976#M396</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2024-03-07T04:04:11Z</dc:date>
    </item>
    <item>
      <title>Re: Here’s why you need CASB, SASE, DLP, Data Lifecycle Management(Including classification), UEBA,</title>
      <link>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/68005#M398</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/797288093"&gt;@Early_Adopter&lt;/a&gt;Security the AI models from the outset, would have reduced some of these issues.&amp;nbsp; But without it being built in from the outset, we are all in experimentation land and catch up mode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This issue should have been detected a lot earlier on.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Mar 2024 21:18:41 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/68005#M398</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2024-03-07T21:18:41Z</dc:date>
    </item>
    <item>
      <title>Re: Here’s why you need CASB, SASE, DLP, Data Lifecycle Management(Including classification), UEBA,</title>
      <link>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/68011#M399</link>
      <description>&lt;P&gt;With the right kit and integrations this kind of behaviour is detectable at outset in real time and straight up preventable.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The attacker took critical company data and sent it to his personal Google account, just with a CASB there are at least five vendors that can detect and prevent that out of the box.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Add in the rest of the controls and send them to a good SIEM, and do anomaly detection and properly staff it. Well, probably you’re looking at a 10-20 million dollar investment for a company the size of Google with its assets, however this was not a skilled attacker so you could have been aware from the moment he tried to take the first file, and very likely before. Just a policy preventing transfer of documents to a personal Google Google account would have detected and prevented this.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;However as a very good salesman once said:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;”No one want’s back-up, everyone wants recovery…”&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Mar 2024 23:55:07 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Cloud-Security/Here-s-why-you-need-CASB-SASE-DLP-Data-Lifecycle-Management/m-p/68011#M399</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2024-03-07T23:55:07Z</dc:date>
    </item>
  </channel>
</rss>

