Skip to main content

 

Looking to quickly pinpoint the security concerns in your environment? Take a look into our Security Health Check (Self-Service) Dashboard! 

 

This is a one-stop dashboard which allows you to perform self-service health checks and to locate security concerns/gaps in your environment. The dashboard is expanded from 2 dimensions: 1) How Netskope is protecting your environment; 2) What Netskope is protecting your environment from. 

 

The dashboard covers 9 major topics, which helps you identify & investigate:

 

NewEdge Network & Traffic Steering

  • POP utilization in restricted regions
  • Unexpected access methods

AD_4nXcJ8QuhL8SdXnJSSb6nTZ7fha630O2XdjK8kbZVLGEldca4DbWD4kxwHVatkqiJtMFEhmQY5MHDa2NskGa9Ki_IDNk6Tyjhg06fBMqrBD470M2gtKBQEpiZwph_GuSOmEiKT6mPJvSTXhZVnRtF5SaKOdZ9?key=vpLhgoUYt_C0kiN3VASVUQ

 

Device & Client Management

  • Users disabling Netskope Client
  • Old/unsupported Client versions being used

AD_4nXdTT2c-sAJ5p6ZK8ydAtuH_RJKmsv1Gpqoj-AGaxU82THRipVRMDKvkvzaD5UTNyzsXbDmXm4xRbWCNfjqjvtwrs6XXb5UreGJcc6K0LcdOZPq5NzR3yItAbFF0NboV5Jr4i9ZZcFv8YualSRxBaZzkHUs?key=vpLhgoUYt_C0kiN3VASVUQ

 

Alerts & Policies

  • Alerts, alert types, policies triggered
  • Top users triggering alerts (and the corresponding activities)

AD_4nXc5eQPwP5YumPGMUzOduTz651ulXDINTIdcnvtBlKpa22xI5KatxYLPQEuVf_fjImVeF-3YFMFXogG8Nw_3Qsz3iy6oPWkX3YRnOk0KgC0UImH2erD9rXoklK8T09TE9bogi4L3HkXpyPZLdR-jAadxKWY?key=vpLhgoUYt_C0kiN3VASVUQ

 

SSL/TLS Inspection

  • Low SSL inspection rate
  • Unexpected bypassed traffic

AD_4nXfFi8togVeJKa0w0P_wCoSIc8zUGJNrPcsQ7gdXg1kKM83ZLv0R9zsBx6qJRmxLxtiChiHKnTVMJ4IGBcj6Vu-ud4eG_pPxSvu6PLZnS0ios5JEbP55T2Pl8eere26vwswdewjYr-HSwrVc1w-ShKRuFFc?key=vpLhgoUYt_C0kiN3VASVUQ

 

Coaching Policies

  • Incorrect/unexpected coaching policies detected
  • Justification reasons for unknown business needs

AD_4nXeOhxFK9GuBcxoEtNZkZfUeyXSolixPaAc24ZmcajSYh1kDOTZQMkt4n5Phgg0ou5_dm3d9SR0CO4bUyDRmYjt6nyCfCcptmetmW4VBTjbIaVzHrU-A_vQ6b1zhAlY3lVpx48f59Y3GEpATS_qPfG0QU-Y?key=vpLhgoUYt_C0kiN3VASVUQ

 

Application Risk Management

  • Risky & unmanaged apps being used
  • Allowed data movement to risky & unmanaged apps

AD_4nXcwrBTnP11i4DyPiYs7O_KYisdceMXLgPjjR3kHtEVpzupjmr4WeInKmO7xUfUws4jA8YNGM7GpKMYA84EXKsl8KBc7pd9B1kkOYeUvCKtI7Fiw49NqTVu5grl99A3RBSLg7-GvqDYjTVCQwDZXJ2_ocb4?key=vpLhgoUYt_C0kiN3VASVUQ

 

Data Loss Prevention (DLP)

  • DLP alerts & policies triggered
  • Inappropriate actions taken by DLP policies
  • Publicly exposed files with DLP violations

AD_4nXe2fM0N2g-29elPQPOwfWm2M9pwarUyxXgIdyX2op8575ezCaFHh3VkuZa0S3gIkKM8sHXvyGR9IUM5OYDS_Ori0dRKm-QOvugbxLEFVefiiq_nORAk1eRqaL8QDMubGgrQKmYh-sGZVBzwLm3N-L7yElMv?key=vpLhgoUYt_C0kiN3VASVUQ

 

User Behavior Analytics (UBA)

  • UBA alerts & policies triggered
  • Top users triggering UBA alerts

AD_4nXfgca6YmzjmzJtZZZ_7mWXbS3RfMm_pzVcoezz-plErCS0Rv3Li_c3VCetQy8Pj1v_oHDqFURaWFyGyWbj1bX_FeduiX3hXpKCyBizRvM-sHw4Od7yDQUq0nDKf3yT4vXs9BbwMA5-7RMbQbJ3DNu3fA7f4?key=vpLhgoUYt_C0kiN3VASVUQ

 

Threat Protection

  • Malware blocks
    • Allowed inline malware & impacted users
    • Policies allowing malware
    • Top web malware domains & cloud malware sources
  • Malicious site blocks
    • Allowed malicious sites & impacted users
    • Policies allowing malicious sites
    • Top malicious site domains & URL filtering categories

AD_4nXcRCT-p2Y636kv-KDLCEP7HkW6Sz58kVxMYmPG8bi3xYWMr-08XLaHBTL0dNuJi6CVFwpob17RJfMe7mY3Uc_2f_AXt09-xqqrRCcpwRq9P3LTVCH_jVtLwtSQkTWDygwBgaoIC3DGVOgCwf5kx2nFk8aVd?key=vpLhgoUYt_C0kiN3VASVUQ

AD_4nXcuzhG5383wecgse296sYzyvD9J3y-pXFmsVQcArVS2VQKQhTlQF0n9rQMbWNRcQBADga0axPgvYzOZo0J-flEmOBlA5NOKV1GfvpArzrE7iYs6ScOI7pnYj_jpRtWI9qy1MytQuGP0NlXJsFcCMor2Ctye?key=vpLhgoUYt_C0kiN3VASVUQ

 

The dashboard is attached below. Feel free to import and view it in your own environment.

Found security concerns? Check out our CASB & NG-SWG Health Check Dashboards for recommendations and to-do.

This is awesome and will be very useful to dig into things … I like having everything all in one place (even if takes a while to load it all lol). Thanks!


I just tried to upload this to a tenant running R120.1 and the process threw the following error:
 

 


Hi @hjw ! This usually happens when the device data collection is not enabled for your tenant. To confirm this, you can expand the data collection list in the “Explore” page and see if “Device” shows up. Let me know if it’s not there and I can help you enable that.

 


Reply