The rapid adoption of cloud services and the proliferation of devices used to access them have created major security and compliance challenges. Employees can use personal cloud tools for work without employer oversight, and business units may procure cloud services without formal risk assessment, pushing IT to approve services quickly and sometimes overlook key security issues. Prominent concerns include where data is stored and processed, whether a Cloud Service Provider (CSP) or its staff can access that data, how governments can legally compel access without customer permission, and the impact of GDPR (effective May 2018) on organizations handling European personal data.
A governance-led approach is presented as essential, but it must be supported by technology that provides visibility and enforceable controls. Cloud Access Security Brokers (CASBs) are positioned as the enabling toolset, expected to detect unassessed cloud usage (shadow IT), control access so regulated and critical data flows only into approved services, protect against threats and data leakage, and support compliance via built-in regulatory-aligned capabilities and evidence of real-world compliance outcomes.
Skyhigh Networks’ Cloud Security Platform is described as closely matching these CASB requirements through visibility, control, data security, compliance, and broad integration. It offers a continuously updated registry of over 20,000 cloud services with trust ratings based on 50+ risk attributes, workflows for access requests and service approval, and usage analytics to expose policy gaps. For cyber risk protection it combines proxy-based interception and API integrations, captures detailed audit trails, and applies anomaly detection with tunable machine-learning sensitivity and resolution workflows. For data security and compliance it audits cloud configurations, provides DLP and policy templates, and encrypts data (including retroactive encryption) while keeping encryption keys on-premises and within the customer’s jurisdiction. A key challenge is dependence on CSP APIs and traffic methods, which can change and disrupt integrations.
See All Locations
See All Locations