Microsoft Defender for Cloud Apps
Cloud and workloads

Protect your Box environment | Microsoft Defender for Cloud Apps

In brief

The Box protection documentation now requires a Box Admin account or a fully privileged Co-Admin account for the connection.

What Defender admins need to know

Use an appropriately privileged Box account when connecting Defender for Cloud Apps; otherwise the API test fails and Defender cannot scan all Box files.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

How Defender for Cloud Apps helps protect your Box environment

AsBox is a cloud file storage and collaboration tool, Box enablestool that lets your users to share their documents across your organization and partners in a streamlined and efficient way. Usingwith partners. However, using Box might expose your sensitive data not only internally, but also to external collaborators,collaborators or even worse make it publicly available via a shared link. SuchThese incidents can be caused by malicious actors,actors or by unaware employees.

ConnectingWhen you connect Box to Defender for Cloud Apps givesApps, you improvedget better insights into your users' activities, provideactivities. The connection provides threat detection usingthrough machine learning based anomaly detections, information protection detections such as detectinglearning, helps detect external information sharing, and enablingenables automated remediation controls.

Main threats

  • Ransomware
  • Unmanaged bring your own device (BYOD)

HowWays Defender for Cloud Apps helps to protectprotects your environment

Defender for Cloud Apps helps protectprotects your Box environment in the following ways:by helping you:

Connect Box to Microsoft Defender for Cloud Apps

This section provides instructions for connectingYou can connect Microsoft Defender for Cloud Apps to your existing Box account using the App Connector APIs. ThisAPIs, which are the API-based integration method that Defender for Cloud Apps uses to connect to supported SaaS apps. The connection gives you visibility into and control over Box use. For information about how Defender for Cloud Apps protects Box, see Protect Box.

Prerequisites

  • A Box Admin account (or Co-Admin account with all privileges selected). Deploying with a non-Admin account causes the API test to fail and prevents Defender for Cloud Apps from scanning all files in Box.

Configure Box

  1. Sign into your Box account as an Admin user.

Your data center details are shown in the Defender for Cloud Apps About page in the Settings area. For more information, see View your data center.

Connect Box to Defender for Cloud Apps

After you configure Box, complete the following steps to connect your Box instance to Defender for Cloud Apps:

  1. In the App connectors page, select +Connect an app, and then select Box.

    Screenshot of the App connectors page with Box available as a connector option.

  2. In the Instance name page, enter a name for the connection. Then select Next.