Improving AWS Security Posture using MCASB
https://aka.ms/MCASCommunity
https://aka.ms/SecurityWebinars
Is there any roadmap to develop Cloud App Security as Secure Web Gateway (SWG) like Zscaler?
reply from Moderator
Moderator
5/25/2021 7:11 PM
Hi! We have an integration with Zscaler today. More details can be found here - https://docs.microsoft.com/en-us/cloud-app-security/zscaler-
integration Can you elaborate on what capabilities you are looking for specifically?
Does MCAS support CIS benchmarks?
reply from Moderator
Moderator
5/25/2021 7:18 PM
Yes, please see the security config overview where we state which recommendations are based on CIS benchmark here - https://docs.microsoft.com/en-
us/cloud-app-security/security-config
How can we integrate Azure Sentinal with MCAS?
reply from Moderator
Moderator
5/25/2021 7:21 PM
Hi, you can add MCAS as a source for Sentinel in the available data connectors today. If you would like more information, please
see https://docs.microsoft.com/en-us/azure/sentinel/connect-cloud-app-security
does MCASB come with DLP inbuilt?
reply from Moderator
Moderator
5/25/2021 7:26 PM
Hi, yes we have built -in and Data Classification (integration with AIP). More information can be found here on built-in content inspection
- https://docs.microsoft.com/en-us/cloud-app-security/content-inspection-built-in
Is there a better model for connecting MCAS to AWS with 300+ accounts, to model across all accounts?
reply from Moderator
Moderator
5/25/2021 7:29 PM
Hi! connecting to a master AWS account is in the road-map. With this feature, you will be able to connect to a master account and this master account can
be assign as a "parent account" to your other AWS instances.
Is there a data classification and malware scanning across public cloud storage?
reply from Moderator
Moderator
5/25/2021 7:31 PM
Azure Purview supports scanning files in AWS. Please see: https://azure.microsoft.com/en-us/services/purview/ or https://docs.microsoft.com/en-
us/azure/purview/register-scan-amazon-s3
How does this MCAS AWS integration differ from the Azure Security Center integration with AWS?
reply from Moderator
Moderator
5/25/2021 7:37 PM
MCAS uses ASC integration with AWS, and has its own capabilities (as threat detection, UEBA, etc.). You can see all MCAS AWS
capabilities: https://docs.microsoft.com/en-us/cloud-app-security/protect-aws
How long MCAS store data? Will there be separate charge for data store in MCAS?
reply from Moderator
Moderator
5/25/2021 7:38 PM
Hi, below are the data retention details -- • Activity log: 180 days • Discovery data: 90 days • Alerts: 180 days Governance log: 120 days
Ninja training for mcas https://techcommunity.microsoft.com/t5/security-compliance-and-
identity/the-microsoft-cloud-app-security-mcas-ninja-training-march-2021/ba-p/1877343