This page will walk you through the various features and functionality found within the Apps Tab of Cloud Access Monitor.
OVERVIEW:
Across the top of the page you will find an overview of the apps found within your environment.
Apps Category: The top four app categories found within your environment.
Sanction Percentage: The total number of apps in your environment, broken down into their sanctioned values. Sanctioned percentages are based across all Cloud Access Monitor Users.
Risky Apps: Number of apps broken down by their risk score.
Access Levels
Access levels will display the number of apps that require elevated access permissions to be used. These could be managing emails, files, profiles, or groups.
RESULTS BOX:
By default all apps within your environment will be displayed in the results box. Across the columns you will more detailed information.
Name: The name of the app found within your environment.
App Categories: The type of app, such as a game, shopping app, or tool.
Scope Categories: The permissions that the app requires to run. Selecting the Down Arrow will display all required permissions.
Scope Category Tabs: Selecting the vertical tabs in the scope category column will show specific privileges for each API.
Risk: The risk column will display the theoretical risk to your environment. Risks are calculated on a scale based off of scopes that require admin privileges, If the app is sanctioned in your environment, if the app has write permission, and if the app is sanctioned in other Cloud Access Monitor Environments.
*Selecting the Down Arrow Will Show Risk Details.
Sanctioned %:
Sanctioned % is based off of how many Cloud Access Monitor customers have sanctioned the app in their environments.
Organization Unit: Will display the number of OU's that contain the app.
*Selecting the Down Arrow Will Display OU's
Users:
The Users column will display all users with the app installed.
*Clicking the Number of Users Will Display the Connected Users Page.
FILTERING APPS:
To filter Apps for specific criteria, select the Filter button on the right side of the page.
Status: Filter by Sanctioned / Unsanctioned Apps.
Risk: Filter by Risk rating.
Sanctioned %: Filter by the sanctioned score of apps.
SEARCH:
You are able to search by five separate parameters.
Name: The name of the App
Authorized Scopes: The scopes required by the app to be installed. Searching by an authorized scope will display all apps that require that permission to be installed. Select the search bar to pre-populate with scope options.
App Categories: The categories that apps within your environment belong to. Select the search bar to pre-populate with available app categories.
Scope Categories: The scope category that each authorized scope belongs to. Select the search box to pre-populate with available scope categories.
Organizational Units: Search by specific OU's within your organization.
ACTIONS:
The action buttons above the results box will allow you to control the apps within your environment. By select thing check-boxes next to the apps you are able to perform the following actions.
Remove: Revoke all users access to the app. NOTE: Without policy in place users are able to re-install the app.
Warn: Send a warning to the user to remove the app.
Sanction: Set the app to a sanctioned status within your environment, this will affect its risk score.
Unsanction: Remove the sanctioned status from an app, this will affect its risk score.