Cisco CloudLock is there to shield the most sensitive business database and activities, for instance, the [customer's] credit cards, the code keys, the login details, among others. More so, Cisco CloudLock protects and monitors some information in various software or systems, like that of G-suit, making the entire system reliable and convenient. Finally, Cisco CloudLock determines the response of the activity be conducted to control some of the activities that [put] a company in threat.
The feature that helps us in detecting the sensitive information being shared has been very useful. In addition, the feature that allows [Microsoft Cloud App Security] to apply policies with SharePoint, Teams, and OneDrive is being used predominantly. It is a kind of unified solution. As compared to other solutions such as Netskope, Symantec, or McAfee, it provides a more unified reporting structure. It also integrates with other technologies. We have Azure Information Protection, and it goes well with the solutions that we are already using.
Data Loss Prevention - files accessed from outside of the organization can be audited or blocked based on content, file type, and regex
Policy Management - policy options are sophisticated and give great control over the actions to be taken and when the policy should be triggered
Behavioral Analysis - cloudlock is usually the first place we learn about suspicious activity in our SaaS applications, such as login attempts from outside the country
The interface is pretty simple and easy to use; however, you will need to do a lot of investigative research on your own to get comfortable with it. Originally, many of the Microsoft security tools had their own seperate consoles. Overtime, they have blended into one interface which is the ideal state. In some cases it is clear Microsoft had to pick which console a certain feature or setting was going to reside in and this leads to some confusion. For example, DLP is managed through Defender for Cloud Apps but you will also need to jump into Purview. For things like reverse proxy on your M365 tenant, you will need to go into Azure and setup conditional access rules. Not a big problem and I can understand why the settings are located where they are but for someone just starting out with Defender for Cloud Apps, it will take some time to figure out.
They are very quick to respond and go the extra mile to help address our issues. That said, we've only needed them at the early stages of implementation for support help and occasionally when we want to do a full re-scan of our site. They are very flexible in working with us on the timing of such scans.
I have not utilized actual support but the Sales and Product teams have been super helpful in moving our implementation forward and showing us the best practices.
We have not used other cloud security products. While choosing a product a large factor was the current and future integrations with other Cisco security stack products. While this product is not the most affordable, the security provided to the organization and client data is well worth the investment. We use SecureX to integrate and perform automated responses.
More flexible and more features with easy integration with cloud services like Microsoft Azure and other cloud services. Overall both gives similar features but we prefer Microsoft cloud app security due to its high threat detection rate. mostly we have been able to stop the threat in very very less time.
Cloud App Security saves us thousands of dollars finding and rectifying apps security issues
Identity Security Posture helps the organization identity stay in shape, saving thousands of dollars on security consultations
The cost of suffering a breach cannot be quantified, CAS helps minimize the chances of the attackers succeeding, with excellent historical logging for most operations