This article provides information on the Google Identity Integration.
Overview
The integration with Mimecast's Human Risk Platform and Google Workspace enhances the robustness of Human Risk scoring by adding human behavior relating to End Users' interactions with identity-based threats across their Google Workspace environment.
This allows you to send your users training and other information based on their identity-associated behavior.
The integration periodically reads identity-related security alerts from the Google Workspace Alert Center via API. These are forwarded to the Human Risk Platform, which associates each alert with a user and updates the identity behaviour score for that user.
This integration can be accessed from the Human Risk Command Center, which is available to all Mimecast Email Security - MX customers.
Considerations
This feature is available to customers with a Human Risk Command Center subscription, available to all Mimecast Email Security - MX customers.
Historical events will not be pulled from Google Workspace Alert Center; only events from the point of integration onward. This simplifies onboarding and will not change historical scores.
Prerequisites
- A valid Google Workspace account with access to the Google Workspace Alert Center API.
Configuring the Google Workspace Identity Integration
To enable the Google Workspace Alert Center API, you must do so within your project in the Google Cloud console: <https://console.cloud.google.com/apis/library/alertcenter.googleapis.com>
Navigate to APIs & Services | Library.
Search for and select the Google Workspace Alert Center API.
Optionally: If already logged into the project, use the following link: https://console.cloud.google.com/flows/enableapi?apiid=alertcenter.googleapis.com
Click Enable.
Add the integration in the Mimecast Integrations Hub
Log in to the Mimecast Administration Console.
Navigate to the Integrations Hub.
Locate and select the Google Workspace: Identity integration.
Provide the following two pieces of information:
Customer ID, which can be found here: https://admin.google.com/ac/accountsettings
Delegated admin email address.
Click Authorize.
Once the google workspace authentication windows appears, click ‘go to google workspaces’ (which is at https://admin.google.com/ac/owl/domainwidedelegation ), then:
Click on API clients: Add New
Enter the Customer ID provided earlier
Enter the scopes provided earlier.
Continue saving the Google Workspace: Mail integration with ‘i’ve confingured this’.
Comments
Please sign in to leave a comment.