Blog
Updates in Data Access Security: Dropbox Connector
Author
TanyaB
SailPoint
The Dropbox connector enables admins, business users, and data owners to view where data resides and how it is organized within Dropbox throughout the organization. It also helps a user understand which data is critical, and who has access to that data, and analyzes permission models and access rights across multiple users, and shared folders as well as external account’s folders shared to the organizational user. With Dropbox, you can review granular access governance controls and certify access to comply with regulations.
What are the new capabilities?
This connector enables you to use Data Access Security to discover, assess, classify and categorize data, including from external folders shared internally, and analyze permission models and access rights in Dropbox and do the following:
- Analyze the structure of your stored data.
- Classify the data being stored.
- Verify user permissions on the resources, including internal users folders, shared folders, and folders shared by external user to the organizational user.
- Identity collector - collect Dropbox users, groups and roles and the connections between them.
- Resource Discovery: Discover users' folders, shared folders, and external resources shared with internal organizational user. Analyze the structure of your stored data. Gain visibility into Dropbox access in a simplified hierarchical format, making it easier to manage and organize your data.
- Data Classification: Classify the data being stored or shared from external users, define what is sensitive to your organization, automatically identify and label the data according to the data classifications policies you define.
- Permissions Analysis: Gain granular visibility into identities, internal and external, known and unknown accounts access to Dropbox resources. Analyze permissions file level with unique permissions - get visibility to the files with unique access rights in Dropbox.
- Automated Reports: Automated and scheduled out-of-the-box reports detailing access to data stored on Dropbox, and insights into data access paths.
- Data Access Certifications - Scope and execute certification campaigns to review and validate access to Dropbox data assets, and access rights granted through organizational policies or sharing links.
- Data Ownership Assignment - Assign data owners to Dropbox data assets to delegate governance responsibilities to the people closest to the data.
How do I configure the connection to Dropbox Connector in DAS?
Admins can configure it in DAS under Admin > Applications > Add New application.
For more information refer to the Dropbox Application Documentation documentation.
You could Test the Connection of the Dropbox Application
Admins might want to test connection of the new connected Dropbox application from Admin > Applications > Click on Actions in the row of your application > Test Connection
You could run the Resource Discovery
Admins might want to run a resource discovery task from Settings > Task Management to gain visibility into Dropbox access in a simplified hierarchical format, making it easier to manage and organize your data.
You could run the Permissions Analysis
Admins might want to run a resource discovery task from Settings > Task Management to gain granular visibility into identities, internal and external, known and unknown accounts access to Dropbox resources.
You could run the Data Classification Analysis
Admins might want to run a resource discovery task from Settings > Task Management to gain granular visibility into identities, internal and external, known and unknown accounts access to Dropbox resources.
You could use other DAS features for Dropbox
With the connection of the Dropbox application to the single pane of glass in DAS, admins, data owners, and compliance managers get an additional set of capabilities for visibility and control over access to unstructured data. This includes automated and scheduled out-of-the-box reports detailing access to data stored on Dropbox, and insights into data access paths.
In addition, you could run data access certification campaigns to review and validate access to Dropbox data assets.
You could assign data owners to Dropbox resources to delegate governance responsibilities to the people closest to the data.
What's Next on the Roadmap?
Admins will be able to gain more focus and control over access to unstructured data with:
- Monitoring and auditing data access activities on Dropbox data assets, and alerting on unauthorized access through rule-based access policies.
Submit Questions or Feedback
Submit questions or feedback, and we'll be in touch.