API & Integrations - Google Identity Integration

This article provides information on the Google Identity Integration.

Overview

The integration with Mimecast's Human Risk Platform and Google Workspace enhances the robustness of Human Risk scoring by adding human behavior relating to End Users' interactions with identity-based threats across their Google Workspace environment.

This allows you to send your users training and other information based on their identity-associated behavior.

The integration periodically reads identity-related security alerts from the Google Workspace Alert Center via API. These are forwarded to the Human Risk Platform, which associates each alert with a user and updates the identity behaviour score for that user.

This integration can be accessed from the Human Risk Command Center, which is available to all Mimecast Email Security - MX customers.

Considerations

  • This feature is available to customers with a Human Risk Command Center subscription, available to all Mimecast Email Security - MX customers.

  • Historical events will not be pulled from Google Workspace Alert Center; only events from the point of integration onward. This simplifies onboarding and will not change historical scores.

Prerequisites

  • A valid Google Workspace account with access to the Google Workspace Alert Center API.

Configuring the Google Workspace Identity Integration

To enable the Google Workspace Alert Center API, you must do so within your project in the Google Cloud console: <https://console.cloud.google.com/apis/library/alertcenter.googleapis.com>

  1. Navigate to APIs & Services | Library.

GoogleIdentityIntegration1.png
  • Search for and select the Google Workspace Alert Center API.

  1. Optionally: If already logged into the project, use the following link: https://console.cloud.google.com/flows/enableapi?apiid=alertcenter.googleapis.com

GoogleIdentityIntegration2.png
  1. Click Enable.

Add the integration in the Mimecast Integrations Hub

  1. Log in to the Mimecast Administration Console.

  2. Navigate to the Integrations Hub.

  3. Locate and select the Google Workspace: Identity integration.

  4. Provide the following two pieces of information:

GoogleIdentityIntegration4a.png
  • Delegated admin email address.

  1. Click Authorize.

  2. Once the google workspace authentication windows appears, click ‘go to google workspaces’ (which is at https://admin.google.com/ac/owl/domainwidedelegation ), then:

GoogleIdentityIntegration6a.png
  • Click on API clients: Add New

  • Enter the Customer ID provided earlier

  • Enter the scopes provided earlier.

  1. Continue saving the Google Workspace: Mail integration with ‘i’ve confingured this’.

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.