Zscaler Inc.

12/02/2024 | News release | Distributed by Public on 12/02/2024 10:13

Secure Shadow Data in the Cloud with New Innovations on Zscaler DSPM

Introducing new AI-powered innovations in Zscaler Data Security Posture Management (DSPM)

Figure 1: Zscaler DSPM

To combat today's threats against shadow data in the cloud, we are excited to announce new AI-powered innovations within Zscaler DSPM.

With our new innovations, customers can:

  • Automatically discover AWS shadow accounts: With zero-touch deployment, security teams can easily identify shadow AWS accounts and get a complete data classification view of all your data stores. You'll get visibility of what data your teams are hosting in the cloud, which data stores they are using, and where the data is located from a geographical perspective. This allows IT teams to consolidate accounts to decrease cost and ensure any shadow data in dark accounts remain secure.

Figure 2: AWS resource discovery reporting

  • Easily identify excessive entitlements and public exposure with AI: With AI-powered identity and access management (IAM), Zscaler DSPM can more seamlessly identify excessive and risky access paths for users and services and map sensitive data exposed to the internet. Zscaler DSPM now provides greater visibility to see who can access your sensitive data, who has accessed the data previously (with historical data), and get guided remediation steps to ensure secure access for all your sensitive cloud data.

Figure 3: Public exposure mapping

Figure 4: Access path

  • Get expanded cloud services and platform coverage: Zscaler DSPM now extends its AI-powered data discovery capability to AWS's top service DynamoDB, a fully managed, serverless, and highly scalable NoSQL database. We also expanded our cloud platform to support Google Cloud, one of the leading cloud providers in the world. With this new expanded coverage, we have the ability to secure structured and unstructured data stores in the top public clouds and services along with SaaS platforms.

Figure 5: AWS DynamoDB table

Zscaler DSPM is fully integrated to the world's most comprehensive data protection platform that secures structured and unstructured data across web, SaaS, public clouds (AWS, Azure, GCP), private apps, email, and endpoints. Zscaler DSPM provides granular visibility into cloud data, classifies and identifies data and access, and contextualizes the exposure and security posture of data, empowering organizations and security teams to prevent and remediate cloud data breaches at scale. It uses a single, unified DLP engine to deliver consistent, best-in-class data protection across all channels and all types of data for in-motion, at-rest, and in-use.

Come visit the Zscaler booth at AWS Reinvent 2025 (Booth: 2057) for an in-person demo on our DSPM solution. Or join our upcoming webinar with AWS to hear more about our recent innovations on Zscaler DSPM. We can also set up a custom DSPM demo here .

References:

1 https://www.darkreading.com/cloud-security/rising-public-cloud-adoption-is-accelerating-shadow-data-risks
2 https://www.ibm.com/blog/hidden-risk-shadow-data-ai-higher-costs/