Okta × Netskope cooperation coverage! Recommendation for dynamic control

Introduction

This time, we will explain the use case of cooperation between Okta, the leader product of IDaaS, and Netskope, the leader product of SSE.
We hope that this article has inspired you to consider how Okta and Netskope work together.

* This time, we will omit explanations such as the outline of each product.

Use Case

  • Simplified Netskope Client registration

One of the issues when introducing Netskope is setting up Netskope Client.
Specifically, for various controls in Netskope, it is necessary to register the Netskope Client, and in that case Netskope must manually send an e-mail to the user.

*There is no simultaneous transmission function

At that time, if you link with Okta, which is an IDaaS, you can acquire Okta's SAML authentication information and automatically register.
Also, by linking provisioning, it is possible to create users created on Okta on the Netskope side.
An image diagram is shown below.

Use Case
  • Dynamic control using UEBA functions

By working together with Okta and Netskope's UEBA capabilities, you can implement dynamic control, a key element of Zero Trust.
An image diagram is shown below.

Dynamic control using UEBA functions

In the above configuration, prepare a general group and a high-risk group in advance as groups on Okta. Also, it is necessary to define access policies in advance for each group.

  • General Group: Policy requiring ID/PW + Okta Verify
  • High Risk Group: Policy Denying Access

If Netskope's UEBA function determines that a user's behavior is dangerous, you can implement a scenario in which access is controlled for dangerous users by changing the Okta group from Netskope.

Summary

This time, I presented a scenario in which Okta and Netskope are linked and dynamic control is performed. Okta also has the advantage of being able to flexibly work with 3rd party products. By all means, we hope that you will also try the cooperation between Okta and other products.

Also, at our company Crowd Strike We also handle Okta x CrowdStrike We are also planning to create a blog in collaboration with, so please look forward to it!
Okta
If you are interested in this, please feel free to contact us.

Inquiry/Document request

In charge of Macnica Okta Co., Ltd.

Mon-Fri 8:45-17:30