What is a CASB (Cloud Access Security Broker)?
D3 ยท Architecture ยท CompTIA Security+ SY0-701A CASB (Cloud Access Security Broker) is a security enforcement point โ on-premises or cloud-hosted โ that sits between cloud service users and cloud applications to monitor activity, enforce security policies, and protect data.
CASB capabilities: visibility (shadow IT discovery), data security (DLP for cloud), threat protection (malware detection), compliance (enforce policies for GDPR, HIPAA).
Deployment: API-based (post-session, uses cloud APIs) or proxy-based (inline, real-time).
CASB capabilities: visibility (shadow IT discovery), data security (DLP for cloud), threat protection (malware detection), compliance (enforce policies for GDPR, HIPAA).
Deployment: API-based (post-session, uses cloud APIs) or proxy-based (inline, real-time).
CASB solves the problem of employees using unsanctioned cloud apps (shadow IT). It provides DLP for cloud data, enforces access policies, and detects compromised accounts. Think of it as a firewall/DLP for cloud services. Key for GDPR/HIPAA cloud compliance.