Do organizations implement enough data security when it comes to their SaaS products?

372 viewscircle icon2 Comments
Sort by:
Sr. Director of Security Engineering in Software4 years ago

The issue I've often come across is that people think, "Salesforce is managing this and our prod Salesforce center is totally locked down. That instance is great." But what do our full copy sandboxes look like? Your full copy sandbox is literally all the data in your products that no one has looked at except for 3 Salesforce admins who have unmonitored access—there's your breach. There's your data loss. And if you just make another copy of that sandbox to try to integrate NetSuite or something into it, then there's 2 consultants from NetSuite and 3 other admins and everyone's got access to everything. Why did we just do that? Everyone just gets so narrow-focused on the prod instance of something and has no concept of everything else that's going on.

Lightbulb on2
SVP in Finance (non-banking)4 years ago

It’s difficult because for many companies, most of their customer data is sitting in SaaS platforms that they have no access to. So even if they wanted to do something with it, they couldn't. In that situation, how am I going to test Salesforce? It's got my CRM, my investor data—all my stuff is in there. And if they have a vulnerability or loophole in their code, I just don't know how I would protect myself against that.

Lightbulb on1

Content you might like

Budget allocation13%

Potential process improvements68%

Onboarding & training bandwidth8%

Security & compliance8%

Reviewing prior purchase overlap1%

View Results

Ease of getting my data into the DAaaS platform9%

Tools that make it easy to create use cases with the DAaaS platform41%

A pre-existing library of dashboards and report templates to help me quickly get up-and-running32%

The ability to try out the DAaaS platform for free before buying10%

Services from the DAaaS vendor (consulting, support, training)3%

Confidence that my data is safe in the cloud2%

View Results