この記事は、環境内で使用されるサードパーティの接続アプリケーションを表示および分析し、セキュリティ状態を迅速に評価する方法を説明します。
概要
サードパーティのアプリケーション、拡張機能、およびプラグインは、企業のSaaS環境に重大なリスクをもたらす可能性があります。 これらの統合はしばしば広範な権限を要求し、安全性の確認を受けずにインストールされることが多く、可視性のギャップを生み出し、攻撃表面を拡大します。
SaaSプロバイダのAPIとの統合を用いて、「プラグイン」ページと「アプリケーション」ダッシュボードは、承認された重要なビジネスアプリケーションに接続されたサードパーティープラグインの包括的な可視性とリスクの洞察を提供します。 この可視性により、接続されたアプリケーションやプラグイン、それを使用したユーザーなどの最新の在庫を維持し、関連するリスクを評価し、許可されていない統合または過度に寛大な権限を持つ統合を識別することができます。 これにより、SaaS攻撃表面の効果的なガバナンスと管理を実現します。
重要なビジネスアプリケーションに接続されたサードパーティーアプリケーションの可視性を提供するには、コネクタが必要です。 サポートされているSaaSアプリケーションのリストと、コネクタを設定する方法についての説明は、接続されたアプリケーションを参照してください。
プラグインページには、CASBライセンスが必要です。 CASBライセンスの購入に関する詳細は、Catoの担当者にお問い合わせください。
Understanding SaaS Posture Checks, CASB, and Interconnected Apps
SaaS Posture checks, CASB, and Interconnected Apps each address different aspects of SaaS security and work together to provide comprehensive visibility into your SaaS environment.
SaaS Posture checks evaluate the security configuration of your SaaS applications. They identify misconfigurations and settings that don't follow security best practices, such as disabled multi-factor authentication, overly permissive sharing settings, or inactive administrator accounts. These checks help you harden your SaaS applications and reduce the risk of compromise.
CASB provides visibility into how users interact with SaaS applications. It monitors user activity, detects risky behavior, and helps enforce data security policies. For example, CASB can identify users downloading sensitive files, sharing data externally, or accessing applications from unusual locations.
Interconnected Apps focus on third-party applications that have been granted access to your SaaS environment through OAuth or similar authorization mechanisms. These applications can introduce additional risk even when the SaaS application itself is securely configured. Interconnected Apps help you identify connected applications, understand the permissions they have been granted, and assess the potential risk they introduce.
Together, these capabilities provide a layered approach to SaaS security.
For example, a Salesforce tenant might pass all SaaS Posture checks because it follows recommended security practices. However, a third-party application with broad permissions could still expose sensitive data if it is compromised. CASB might detect a user downloading an unusually large number of files, indicating potentially risky activity. Together, SaaS Posture checks, Interconnected Apps, and CASB provide visibility into the application's security configuration, the third-party applications that can access it, and how users interact with it.
ユースケース: 高リスクまたは承認されていないプラグインの識別
セキュリティアナリストは、承認されたサードパーティプラグインのみが、企業のSlackに接続されるようにする必要があります。 エンドユーザーはセキュリティレビューなしでプラグインをインストールし、過度な権限を付与し、セキュリティ上のリスクを引き起こす可能性があります。 プラグインインベントリを使用して、アナリストは、未承認の高リスクかつ過度に寛大な権限を持つプラグインを使用している30人のユーザーを特定しました。 アナリストはユーザーに連絡し、その危険なプラグインを削除して攻撃表面を縮小するよう依頼します。
プラグインページの始め方
プラグインページは、アプリケーションダッシュボードの一部であり、SaaSアプリケーションと統合されたアプリケーションのリストを表示します。

プラグインページにアクセスする方法
プラグインページにアクセスするには、セキュリティ > アプリケーションに移動します。 インベントリページで、プラグインをクリックします。
概要セクションの理解
このテーブルは、概要セクションにあるウィジェットを説明します。

名前 | 説明 |
|---|---|
プラグイン | SaaSアプリケーションと統合されたプラグインの数 |
リスクのあるプラグイン | SaaSアプリケーションと統合されたリスクのあるプラグインの数 |
プラグインユーザー | プラグインを使用しているユーザーの数 |
統合 | プラグインを監視するためにSaaSアプリケーションと作成された統合の数 |
プラグインテーブルの理解
プラグインテーブルは、各プラグインに関する情報を表示します。
プラグインの権限やインストールまたは使用したユーザーに関する詳細情報については、プラグイン名をクリックしてプラグインクイックビューパネルを開きます。
