Launch Pad
Jun 8, 2021

Netskope Mimecast Integration

Enforce and manage email DLP policy from one place integrating Netskope with Mimecast...
QUOTE OF THE EPISODE:
About the episode

Protecting the data of an organization is a complex task. Data is the crown jewel of any organization which the adversaries continuously seek to put their hands on. Data is threatened both by external attackers and internal threats. Sometimes the threats are malicious, and in many cases, they are accidental. Both these cases have to be addressed by modern enterprise security departments.

Today, we will show you the new data leakage prevention (DLP) integration between two security solutions, Netskope and Mimecast, which enables security administrators to apply tight security controls to the outbound emails easily, and to stop multiple data exfiltration threats.

Data Leak Prevention has been a topic of interest of many companies.. Existing endpoint DLP was always resource intensive on the workstation and often disrupted the end user’s work. With the shift to the cloud, we have many other ways to detect insider threats and prevent the bad guys from exfiltrating sensitive data such as PII, CC, and PHI outside the organization's perimeter.

Netskope redefines the inspections providing multiple security controls helping the user to define and implement hardened policies that are managed from one central location. Netskope DLP is already doing a fantastic job with SaaS applications, inline Secure Web Gateway (SWG) inspection and HTTP-based protocols. However, many customers have to face the challenge of gaining control when it comes to email protocols, such as SMTP and getting the same level of DLP.

By enabling Netskope and Mimecast integration, users can now define one DLP policy for HTTP-based protocols and email, configuring it from a central place. Users also have one source of truth for email, web, and SaaS apps DLP-related alerts.

Netskope and Mimecast integration allows administrators to choose one of two routes. With the first route, email first goes through DLP inspection by Netskope using the existing Netskope policy, marked with the corresponding threat score, and then forwarded to Mimecast for additional email security inspections before being sent to the recipient or returned to the sender in case of violation.

With the second route, email is sent to Mimecast first, inspected for email security there and is then forwarded to Netskope for DLP policy inspection and marking. This flexibility allows administrators to choose the path most appropriate to their organization.

Netskope provides 99.999% SLA service to their customers, which with appropriate timeouts, retries and fallback mechanisms configured on both Netskope and Mimecast systems enables administrators to assure email delivery securely without interruptions.    

In the demo, we observe that an email that violated DLP policy has been rejected with the detailed explanatory message for the rejection reasoning. The configuration of the integration is straightforward, and you will see that there is no significant delay introduced in sending the email out to the recipient; the entire inspection flow takes around 20 to 30 seconds which is not significant for the vast majority of the organization’s emails.

During the demo you will also see how Netskope email DLP really shines in regard to their OCR capabilities. Netskope is capable of detecting DLP violation events based on image attachments of screenshot with PII data that was included in the sent email. In the demo, Netskope DLP immediately identified the incident, and the email bounced back with the warning and corresponding alert that appeared on the Netskope dashboard.

In order to enable the functionality, Netskope customers will need to add additional licenses. However, we have also seen the new CTI capabilities for IOC sharing between Netskope, Mimecast, and Crowdstrike, and these are included for any Netskope tenant as complementary features.

Netskope is working on extending the partnership with many other technology partners for the IOC exchange and email DLP capabilities.

CYBER DICTIONARY WORDS USED IN THIS EPISODE:
No items found.

About our guest

Michael Koyfman
Head of Global Solution Architecture
Netskope
Episodes
Michael Koyfman is the Head of Global Solution Architecture at Netskope. He and his team advise Netskope customers on best practices around Netskope deployments and integrating Netskope solutions within customer environment by leveraging integration with customer technology ecosystem. Michael also actively participates in helping drive and adopt new Netskope products, such as Netskope Private Access and Next-Generation Secure Web Gateway within Netskope customer base. Prior to Netskope, Michael spent almost 13 years at F5 Networks as Senior Global Solution Architect, where he was focused on the entire portfolio of F5 security products, and has been a key contributor to implementation, strategy, and evolution of F5 security solutions and portfolio. Michael helped architect, develop, and demonstrate various unique solutions and integration with various technology and players such as Microsoft, Citrix, Vmware, Okta, Ping, IBM, CrowdStrike, AWS, Azure.
More from
No items found.
No items found.
Transcript
"Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum."Section 1.10.32 of "de Finibus Bonorum et Malorum", written by Cicero in 45 BC"Sed ut perspiciatis unde omnis iste natus error sit voluptatem accusantium doloremque laudantium, totam rem aperiam, eaque ipsa quae ab illo inventore veritatis et quasi architecto beatae vitae dicta sunt explicabo. Nemo enim ipsam voluptatem quia voluptas sit aspernatur aut odit aut fugit, sed quia consequuntur magni dolores eos qui ratione voluptatem sequi nesciunt. Neque porro quisquam est, qui dolorem ipsum quia dolor sit amet, consectetur, adipisci velit, sed quia non numquam eius modi tempora incidunt ut labore et dolore magnam aliquam quaerat voluptatem. Ut enim ad minima veniam, quis nostrum exercitationem ullam corporis suscipit laboriosam, nisi ut aliquid ex ea commodi consequatur? Quis autem vel eum iure reprehenderit qui in ea voluptate velit esse quam nihil molestiae consequatur, vel illum qui dolorem eum fugiat quo voluptas nulla pariatur?"1914 translation by H. Rackham"But I must explain to you how all this mistaken idea of denouncing pleasure and praising pain was born and I will give you a complete account of the system, and expound the actual teachings of the great explorer of the truth, the master-builder of human happiness. No one rejects, dislikes, or avoids pleasure itself, because it is pleasure, but because those who do not know how to pursue pleasure rationally encounter consequences that are extremely painful. Nor again is there anyone who loves or pursues or desires to obtain pain of itself, because it is pain, but because occasionally circumstances occur in which toil and pain can procure him some great pleasure. To take a trivial example, which of us ever undertakes laborious physical exercise, except to obtain some advantage from it? But who has any right to find fault with a man who chooses to enjoy a pleasure that has no annoying consequences, or one who avoids a pain that produces no resultant pleasure?"Section 1.10.33 of "de Finibus Bonorum et Malorum", written by Cicero in 45 BC"At vero eos et accusamus et iusto odio dignissimos ducimus qui blanditiis praesentium voluptatum deleniti atque corrupti quos dolores et quas molestias excepturi sint occaecati cupiditate non provident, similique sunt in culpa qui officia deserunt mollitia animi, id est laborum et dolorum fuga. Et harum quidem rerum facilis est et expedita distinctio. Nam libero tempore, cum soluta nobis est eligendi optio cumque nihil impedit quo minus id quod maxime placeat facere possimus, omnis voluptas assumenda est, omnis dolor repellendus. Temporibus autem quibusdam et aut officiis debitis aut rerum necessitatibus saepe eveniet ut et voluptates repudiandae sint et molestiae non recusandae. Itaque earum rerum hic tenetur a sapiente delectus, ut aut reiciendis voluptatibus maiores alias consequatur aut perferendis doloribus asperiores repellat."1914 translation by H. Rackham"On the other hand, we denounce with righteous indignation and dislike men who are so beguiled and demoralized by the charms of pleasure of the moment, so blinded by desire, that they cannot foresee the pain and trouble that are bound to ensue; and equal blame belongs to those who fail in their duty through weakness of will, which is the same as saying through shrinking from toil and pain. These cases are perfectly simple and easy to distinguish. In a free hour, when our power of choice is untrammelled and when nothing prevents our being able to do what we like best, every pleasure is to be welcomed and every pain avoided. But in certain circumstances and owing to the claims of duty or the obligations of business it will frequently occur that pleasures have to be repudiated and annoyances accepted. The wise man therefore always holds in these matters to this principle of selection: he rejects pleasures to secure other greater pleasures, or else he endures pains to avoid worse pains."