Skip to main content

Check out Interactive Visual Stories to gain hands-on experience with the SSE product features. Click here.

Skyhigh Security

User Risk Categories

User risk categories represent classifications based on the type of user activity, such as download, cloud usage, privilege, login, etc. The two user risk categories are Sanctioned and Shadow:

  • Sanctioned User Risk Categories. Represents the risk categories of Sanctioned services. Sanctioned services are approved, managed, and monitored by your organization’s IT or security teams. Skyhigh CASB provides default risk category weights to calculate the User Risk Score for a user based on their activities in Sanctioned services.
  • Shadow User Risk Categories. Represents the risk categories of Shadow services. Shadow services are unsanctioned, unmanaged, or unapproved applications used outside the organization’s IT oversight. Skyhigh CASB provides default risk category weights to calculate the User Risk Score for a user based on their activities in Shadow services.

Sanctioned User Risk Categories

For details on each available Risk Category and Risk Category Weight distribution, see:

S.No Risk Category Risk Category Weight
1. Download 4%
2. Cloud Usage 5%
3. Privilege 4%
4. Login 5%
5. Upload 4%
6. Access 4%
7. Incident 35%
8. Threat 35%
9. Collaboration 4%

Shadow User Risk Categories 

For details on each available Risk Category and Risk Category Weight distribution, see:

S.No Risk Category Risk Category Weight
1. Upload 15%
2. Download 8%
3. Network 7%
4. Device 3%
5.  Anomaly 20%
6. CSP 35%
7. Incident 12%
  • Was this article helpful?