SaaS security posture management (SSPM) provider DoControl announced that its DoControl platform integrates with the SAP SuccessFactors HR information system.
DoControl allows organizations to stay in control of their SaaS user identity – and potentially risky behavior – with an identity security system that analyzes user behavior, detects anomalies and assigns risk scores. The ability to use HRIS metadata for enrichment takes behavior analysis to a higher level, providing the critical business context needed to evaluate data exposure, data access and asset sharing, distinguishing between critical and non-critical security risks. Relevant HR information available to use for data enrichment includes work and personal email, role, department name, ID, manager and employment status, along with start and end dates.
This HR information enhances the granularity and accuracy of the actions taken by DoControl’s automated remediation workflows, allowing DoControl to proactively identify and respond to potential anomalies or insider threats.
SAP SuccessFactors joins DoControl’s other built-in HRIS integrations, including Workday, HiBob and Bamboo HR.
“Effective ITDR requires ongoing monitoring of a user identity’s behavioral data along with analysis of the behavior in context,” explains Adam Gavish, CEO, DoControl. “Context includes behavioral benchmarks for that user, role and department. It also includes HR data that could cast the user’s behavior in a different light, such as information about if and when the user is departing the company. These details are critical when deciding whether a given SaaS asset interaction is suspicious, or risky, or simply standard business practice.”
When a departing user shares company assets to a personal email account, there is potential for corporate data exfiltration. The user may intend to steal the data and use it in their new position, or set up a way of maintaining illegitimate access to company data.
For DoControl’s and SAP’s channel partner programs, respectively, click here and here.