Microsoft Defender for Cloud Apps
Cloud and workloads

Protect your Dropbox environment | Microsoft Defender for Cloud Apps

In brief

The article now uses clearer wording for Dropbox risks, connector APIs, governance actions, and unauthenticated users, and adds sections on threats and best practices.

What Defender admins need to know

Administrators can use the clearer guidance to understand external sharing, shared-link access, and Defender for Cloud Apps monitoring and remediation options. No action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

How Defender for Cloud Apps helps protect your Dropbox environment

AsDropbox is a cloud file storage and collaboration tool, Dropbox enables yourtool that lets users to share their documents across your organization and partners in a streamlined and efficient way. Usingwith partners. However, Dropbox maycan expose your sensitive data not only internally, but also to external collaborators,collaborators or even worse make it publicly available viathrough a shared link. These data exposure incidents can be caused by maliciousMalicious actors or unaware employees.employees can cause these incidents.

Connecting Dropbox to Defender for Cloud Apps gives you improved insightsbetter insight into your users' activities, provideactivities. It provides threat detection usingthrough machine learning based anomaly detections,detections and information protection detectionsdetections, such as detecting external information sharing, and enablingsharing. You can also enable automated remediation controls.

Main threats

Dropbox environments face the following main threats:

  • Compromised accounts and insider threats
  • Data leakage
  • Insufficient security awareness

How Defender for Cloud Apps helps to protect your environment

Use the following best practices to protect your Dropbox environment with Defender for Cloud Apps:

Automate governance controls

In addition to monitoring for potential threats, youYou can also apply and automate the following Dropbox governance actions to remediatefix detected threats:

Type Action
Data governance - Remove direct shared link
- Send DLP violation digest to file owners
- Trash file
User governance - Notify user on alert (via Microsoft Entra ID)
- Require user to sign in again (via Microsoft Entra ID)
- Suspend user (via Microsoft Entra ID)

ForTo learn more information about remediatingfixing threats from apps, see Governing connected apps.

Protect Dropbox in real time

Connect Dropbox to Microsoft Defender for Cloud Apps

Use the following instructions to connect Microsoft Defender for Cloud Apps to your existing Dropbox account using the connector APIs. Connector APIs let Defender for Cloud Apps connect directly to supported apps for monitoring and governance. This connection gives you visibility into and control over Dropbox use.

Dropbox enables access to files from shared links without signing in,in. Defender for Cloud Apps registers these users who access files without signing in as Unauthenticated users. If you see unauthenticated Dropbox users, it might indicate users who aren't from your organization, or they might be recognized users from within your organization who didn't sign in.

To connect Dropbox to Defender for Cloud Apps