A brief guide to technical terms: CASB glossary

Why is CASB important?

Cloud access security brokers (CASBs) are on-premises or cloud-hosted security tools that sit between users and cloud services to provide data visibility, help comply with regulatory mandates, and enforce security policies to secure applications and data in the cloud.

Shadow IT

Shadow IT refers to IT systems, applications, or services used by employees or departments outside the official approval of the IT department in an organization. The flexibility and familiarity offered by cloud-based SaaS applications over the years is one of the main factors in the growth of shadow IT.

Data visibility

Data visibility is defined as a state where insights about sensitive data residing in different sources across the network are presented clearly for effective monitoring, analysis, and management. Security monitoring is incredibly difficult to perform when there is no or minimal data visibility. Maximum data visibility helps enterprises enforce the right security policies, quickly troubleshoot operational failures, and protect the network from cyberattacks.


Cloud security posture management (CSPM) solutions help enterprises secure their cloud environments by spotting misconfigurations, security loopholes, risks, and compliance violations in the cloud. CSPM tools automate cloud security management through identification and remediation of risks across diverse infrastructures, including:

  • Platform as a Service (PaaS)
  • Infrastructure as a Service (IaaS)
  • Software as a Service (SaaS)


SaaS security posture management (SSPM) refers to the tools that continuously monitor SaaS environments, or assess their security posture. SSPM employs SaaS application monitoring techniques to spot and fix misconfigurations, detect risks, and minimize data leaks.


Secure access service edge (SASE) is a cloud-based IT model that brings together wide area networking and network security services in a single platform. This convergence proves efficient to meet the growing challenges of security and access control. SASE enables employees to authenticate and safely connect to the internal resources of an organization while also ensuring improved control and visibility of traffic and data.

