Enabling the Modern Workplace: Technology

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
[Music] hello i'm lisa lorenzen senior director of transformation strategy with zscaler and we're here today to talk about how technology is enabling the modern workplace employees third parties and contractors are working from anywhere split between home and office and applications are moving to the cloud at a faster rate than ever we need to be able to accommodate access to resources no matter where they are no matter where the users are connecting from on both managed devices and personal devices corporate assets and byod as we move workflows across the internet we really need to think about the exposed attack surface of these potentially vulnerable resources the z-scaler zero trust exchange is designed to enable this modern cloud and mobility focused approach to work we're able to secure users working from anywhere without having to backhaul them to a central location there's a lot of benefits of modernizing the workplace the first one is taking full advantage of the cloud to enable your digital transformation you get a level of flexibility scalability and agility for your security controls visibility into your user access distributed access with centralized management all of these things increase the speed of innovation and help your company meet its goals help your users be as productive as possible another benefit of cloud-enabled modernization is enhanced security first of all connecting the user only to authorized applications and not to the entire network itself via a zero trust segment of one means that you're not exposing anything to the user that you don't want them to see or access that reduces the internal attack surface and because the z-scaler private access solution offers seamless consistent performant access to internal resources without the requirement for an inbound listener at the edge of the network you can eliminate the external attack surface exposed by traditional remote access solutions a vpn gateway sitting at the edge of the network is a target for attackers especially in cases where it's not always easy to keep up with patching management and ensuring that those resources are fully protected so it really makes sense to eliminate the inbound listener entirely and to move to an outbound only solution that carries the traffic to the resources without exposing unnecessary attack surface another big advantage is user productivity if the user doesn't have to think about where they're connecting from or where the application is hosted that experience can be seamless no matter where they sit this means that whether they're in a carpeted office in a coffee shop or at home they have a great user experience the solution just connects them to the resources that they need and gets out of the way the flip side of this is simplicity for the administrator as well the administrator now has full visibility and granular control and can manage the user's experience from a single touch point we also make it a lot simpler to move from the traditional connectivity policies of connecting an endpoint to a network and then locking down the things you don't want that user to touch we can move away from that model towards the zero trust model of only allowing context-based least privileged access that's not always easy to accomplish especially the context part so you can take a combined approach there will be use cases such as third-party access or maybe accelerating time to value after an acquisition where you know exactly who the user is you know exactly what resources they need to connect to you have a full set of contacts that you can use to define granular policy there will also be other use cases such as connecting employees to a network on premise where there have traditionally not been internal network segmentation controls where that visibility in that context may not be present in your systems so with zspa you can leverage application discovery to get a picture of what resources are being accessed and by whom and then you can use that visibility and the deep metadata that we offer on user activity to generate more granular context-based policies one use case at a time one user community at a time even one set of resources at a time finally cost avoidance is critical we're all still recovering from the pandemic nobody ever had an unlimited budget before and it's even more true today so we want to look at both capital and operational expenses from a capex standpoint if you have a vpn gateway sitting at the edge of your network that's going to be multiple appliances that have to be clustered and load balanced the inbound listener means that it also has to be protected in a dmz probably denial of service protection and then you have to replicate these stacks of infrastructure across multiple sites to distribute this for a widely distributed user population if we can eliminate that stack of appliances the capital cost of operating and maintaining them goes away instead of clustering load balancing and gslb the zpa service dynamically distributes requests ensuring that the user always has the best path through our xero trust exchange to the resource that they're requesting and instead of that again exposed inbound listener the outbound only connection means that we don't have to be hosted in a dmz we don't have any surface to denial of service attack so you can move to a much simpler more flexible model leveraging again the resilience the scalability and the agility of the cloud operational costs are also an area that often gets overlooked especially in an organization that's been operating for many years with a traditional structure but if you think about it let's just start with troubleshooting i used to work for a health insurance company and i actually ran our client to gateway and business to business vpn firewalls my least favorite support ticket of all time was access to this application is slow over the vpn and it works fine when i'm at my desk because where do you start is it cpu or memory utilization on the endpoint is it a lousy connection up to the internet from wherever that user is sitting is it congestion on the internet itself problems with the back end service or the back end data center server we don't know and it's difficult problem to try to figure out where to start with private access you have a single place to troubleshoot and if you integrate this with z-scaler digital experience we'll actually show you all of the links in that chain so you have the ability to reduce the overhead of troubleshooting and also to minimize remote access support tickets in general the visibility doesn't stop there we can also offer everything from forensic investigations trending information so that you know where you need to scale the ability to auto scale to meet those needs and in general the operational costs of a zero trust solution that's enabled by cloud delivered technology are much lower than traditional network security controls so in general cloud delivered xero trust enables the modern workplace across four key elements cloud solutions accelerate your digital transformation increasing your flexibility scalability and agility and improving speed of innovation the enhanced security reduces your external attack surface and internal attack surface and allows you full granular control of where your users connect but it's better experience for the users as well with seamless transparent high performance access to the resources they need and a simple administrator experience both for operations management and configuration and finally cost avoidance is always key the ability to eliminate portions of your capex and minimize your operational expenses thank you very much for joining us and please feel free to check out our resources on www.zscaler.com [Music]
Info
Channel: Zscaler Inc.
Views: 399
Rating: 5 out of 5
Keywords: security as a service, cloud security, zscaler, sase, secure access service edge, digital transformation, secure cloud transformation, zero trust security, zero trust exchange, zscaler private access, zscaler internet access, data protection
Id: t8tVnYAUR24
Channel Id: undefined
Length: 8min 4sec (484 seconds)
Published: Thu Aug 19 2021
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.