Forcepoint > Case Studies > Fortune 100 Healthcare Firm Secures O365 with Next-Gen CASB

Fortune 100 Healthcare Firm Secures O365 with Next-Gen CASB

Forcepoint Logo
Company Size
1,000+
Region
  • America
Country
  • United States
Product
  • Bitglass CASB
Tech Stack
  • Office 365
  • Bluecoat
  • Symantec DLP
Implementation Scale
  • Enterprise-wide Deployment
Technology Category
  • Cybersecurity & Privacy - Cloud Security
Applicable Industries
  • Healthcare & Hospitals
Applicable Functions
  • Business Operation
Use Cases
  • Cybersecurity
Services
  • System Integration
About The Customer
The customer is a Fortune 100 healthcare firm based in the United States. The firm has a global workforce of 30,000 employees. The firm was in the process of transitioning its workforce to a SaaS productivity suite. The firm's IT team had already deployed Office 365 for email, but was hesitant to deploy file sharing and storage via OneDrive and SharePoint due to security concerns. The firm's existing security architecture included next-gen firewall appliances, along with secure web gateways from Bluecoat and Symantec DLP appliances. However, this network-level security architecture was inadequate for protecting data in the cloud and allowing for access on any device.
The Challenge
The healthcare firm was looking to transition its 30,000 global employees to a SaaS productivity suite. The firm’s IT team had already deployed Office 365 for email only, but without proper security controls it refused to deploy file sharing and storage via OneDrive and Sharepoint. The firm’s existing security architecture included next-gen firewall appliances, along with secure web gateways from Bluecoat and Symantec DLP appliances. This network-level security architecture was inadequate for protecting data in the cloud and allowing for access on any device. The firm’s internal Office 365 productivity suite initiative was set to rollout rapidly throughout the company, its enterprise security architecture team decided to deploy a cloud access security broker solution to enable secure cloud usage. Of particular concern was protecting PHI, PII, and corporate intellectual property in data flowing out of the cloud. The native Office 365 security controls did not provide an adequate level of data protection, especially in the case of data access by unmanaged and untrusted devices.
The Solution
The firm decided to deploy a cloud access security broker solution to enable secure cloud usage. The firm conducted trials of Bitglass and two other major CASB vendors. In these trials, the IT security team ran the CASB solutions through a gamut of use cases – access control, discovery, API, and managed/unmanaged device access. The firm ultimately chose Bitglass because of the distinctive ability of its solution to provide real time data protection. In its testing, the firm’s security architecture team concluded that API-only approaches were not sufficient for complete Office 365 data protection. The team favored the proactive real time, inline data security enabled by Bitglass’ hybrid architecture to the reactive, delayed security offered by API-only solutions. The limitations of the API solutions, which were only able to detect data leakage after the fact, were highly problematic. The ability of Bitglass’ unique technologies – reverse proxy and AJAX-VM as well as Activesync proxy – to secure sensitive data on unmanaged devices and BYOD was key. Additionally, the integrated DLP engine of Bitglass’ solution offered a clear system performance advantage over the external DLP via ICAP required by competing CASBs.
Operational Impact
  • The firm was able to securely transition its workforce to a SaaS productivity suite.
  • The firm was able to protect sensitive data on unmanaged devices and BYOD.
  • The firm was able to achieve real-time, inline data security.
  • The firm was able to avoid the limitations of API-only solutions, which were only able to detect data leakage after the fact.

Case Study missing?

Start adding your own!

Register with your work email and create a new case study profile for your business.

Add New Record

Related Case Studies.

Contact us

Let's talk!
* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.