Veza Product Update - September'23

Overview of major changes and enhancements in 2023.9.x releases

At Veza, we are committed to delivering innovative features and enhancements to address our customers' needs. This summary outlines the most recent updates across the platform. Some highlights from our Fall updates include:

  • Operators can now review the action log for any Access Review item's history.

  • We've introduced smart actions and a swipe mode in Access Reviews for mobile users.

  • Adding and managing integrations now uses a streamlined experience on the Configuration pages.

  • Enhanced filters for querying attributes such as dates and timestamps.

  • Search for providers and entity types using more intuitive names for entities created with Open Authorization API integrations.

  • Veza Integrations updates:

    • New integrations:

      • MongoDB

    • Enhanced integrations:

      • Support for Microsoft Azure PostgreSQL, Kubernetes Service (AKS), and Private Links

      • Extended filters for Microsoft SharePoint Site attributes

      • On-platform availability of NetSuite, Coupa, Slack, and Crowdstrike integrations

Read on for more information, and please reach out with your questions and feedback.

Access Visibility

  • Usability Improvement for OAA-sourced Authorization Entities: Entities originating from Open Authorization API (OAA) have transitioned away from generic types like 'Custom User' or 'Custom Group'. You can now search for these entities similarly to built-in integration entities (e.g., by 'ZenDesk User', 'Trello User'). This update is currently applicable to the Authorization Graph and Query Builder.

Veza Integrations

  • MongoDB Atlas: A built-in integration for MongoDB Atlas DBaaS platform now supports Organizations, Projects, Users, Roles, Teams, and Clusters. Use new saved queries to identify users with permissions to create or delete database deployments.

  • Microsoft Azure PostgreSQL: Added support for Azure Database for PostgreSQL.

  • Microsoft Azure AKS: Added support for Azure AKS Services and Managed Clusters, including out-of-the-box assessments for Azure AD Users with AKS Managed Cluster write and delete permissions

  • Microsoft Azure Private Links: The Azure Integration now discovers Azure Private Links and Private Endpoints. Use new saved queries to identify Azure AD Users with Private Link Service write or delete permissions and Private Endpoint write or delete permissions.

  • Microsoft SharePoint Site attributes: Veza now collects additional Site properties, enabling attribute filters on Owner Display Name, Is Deleted, Storage Used, and Storage Allocated.

  • On-platform connectors: Integrations are available in Early Access for:

    • NetSuite Users, roles, and subsidiary resources.

    • Coupa Users, groups, and role membership information.

    • Slack Users, roles, and permissions.

    • Crowdstrike Falcon: Users, roles, and permissions.

  • Snowflake Tags: Tag discovery is now optional for Snowflake integrations. Note that additional permissions are required if using an alternative database for the integration. You can enable tag extraction by editing a Snowflake integration configuration.

Platform Enhancements

  • An API for exporting Veza platform events is now in preview. Use Audit Logs and Event endpoints to monitor system health, integrate events with other platforms, or audit user activities.

Access Reviews

  • Review access for specific users (Early Access): It's now possible to list each user involved in a certification, and quickly open a new tab with just the results related to that specific user. When enabled, you can open the list of unique users and view their results by clicking Show Users > View Details.

  • Certification Action Log: Administrators and operators can review any certification item's full history, including updates to reviewer assignments, notes, and decisions. Find this under Actions > View Action Log with search functionality.

  • Single-action Approve and Sign Off: Streamline approvals and sign-offs with a single action using a Smart Action, dropdown menu, or Bulk Action.

  • Mobile Enhancements:

    • Swipe mode: Review certification results by swiping cards left or right, signing off after every 10 decisions.

    • Smart Actions: Apply bulk actions to filtered certification results with the Smart Action button.

  • Export Custom Column Names: You can now customize column names in PDF exports. Pick up to 12 columns to include, rename as needed, and export from the certification overview.

Product Design and Usability

  • Integration Management Overhaul: The Configuration pages have been redesigned

  • Enhanced filters for timestamp-type attributes: Users can now define filters for dates between a start and end time with an AND operator. Improved filtering of timestamp-type attributes across the platform using both relative and absolute formats.

  • You can now save and edit Analysis > Segregation of Duties queries from a new Save Query actions menu, or take additional actions such as copying the specification, opening the Query Details view, or cloning the query.

Last updated