Changelog

Subscribe to all Changelog posts via RSS to stay updated on everything we ship at Nudge Security.

We’ve added support for single sign-on with Okta, including the availability of Nudge Security in the Okta Marketplace. This enterprise-ready feature is available to all Nudge Security customers without requiring a subscription upgrade or otherwise paying any "SSO tax," which runs counter to our product principles. 

‍

Read our documentation to learn how to configure SSO with Okta, or learn more about how you can expand your Okta coverage by integrating with Nudge Security.

‍

Nudge Security has released a new API to help you manage SaaS security and governance across your entire security ecosystem. 

‍

You can use the API to automate critical security tasks, break down data silos between different tools, and centralize SaaS security data to make sure your entire team is working with the same information. For example, you can:

‍

  • Ingest Nudge Security data into your SIEM to correlate it with other datasets and generate events.
  • Send Nudge Security data to external ticketing systems like ServiceNow or Jira.
  • Add custom attributes to an app in Nudge Security based on context from another system, such as “renewal date” or “cost center.”
  • Easily orchestrate actions in other tools using third-party automation platforms like Tines, Torq, and Tray.io.

‍

See our API documentation for more information on API functionality, recipes, and samples.

‍

We’ve updated Nudge Security’s menu to make it easier to find functionality like our Overview, AI Usage, and Progress dashboards and our global search bar. Now, all of these features are available within our left hand navigation menu.

‍

Search results from Nudge Security’s main dashboard now include apps with no associated accounts at your organization, making it easier to evaluate apps before your organization begins to use them. 

‍

Now, you can access security profiles for apps outside of your organization, including:

‍

  • App info: App category and app description
  • Organization details: Corporate location, legal terms, and hosting details
  • Security program: Certifications and security links related to the vendor’s public support for security engagement, such as their terms of service, privacy policy, corporate security page, and status page
  • Authentication: Authentication methods the vendor supports, including supported methods of SSO
  • Supply chain: SaaS services used by the vendor‍
  • Breach history: A summary of any known breaches related to the vendor

‍

We’ve enhanced our search results to make it easier to find and interpret information about the SaaS apps your employees are using. Now, search results from Nudge Security’s main dashboard are clearly organized by type, including apps, accounts, resources, and OAuth grants.

‍

We’ve released a new dashboard to help you visualize and share the progress you’re making toward key SaaS security and governance metrics. 

‍

With the new dashboard, you can:

  • Visualize your progress over different time periods as you work towards important SaaS security metrics.
  • Identify the highest-impact opportunities to bolster SaaS security and governance at your organization.
  • Share your progress with stakeholders and easily communicate the value of your work with print-ready reports.

‍

Check out today’s blog to learn more about these key metrics and how Nudge Security can help you improve them.  

‍

‍

We recently revamped our SaaS events record to provide additional context, including associated resources, and to make it even easier to search and filter events by event type, time range, or user. This applies to the Events tab for SaaS apps and SaaS accounts.

‍

Each SaaS app has its own events record where you can search and filter activities for all users of that app. For example, you could review a timeline of user account creation events within an app.  Additionally, each SaaS account has its own event record, so you can review activities associated with an individual user account, such as password reset or MFA disablement events.

‍

Now that SaaS resources are associated with their relevant events and searchable, we’ve also retired the all-purpose Resources tab from the primary navigation.

‍

Nudge Security streamlines the process of onboarding applications to SSO through playbooks for Azure AD and Okta onboarding. Within both playbooks, we’ve added filters to help you prioritize applications that support SSO. 

‍

We’ve also made it easier to target applications for Okta onboarding based on the specific authentication types they support. You can filter by supported authentication types, including SAML, SCIM, SWA, and OIDC.

‍

We’ve enhanced our ability to collect information about app usage from employees by updating an existing nudge. We’ve added more relevant response options to the “Request clarification of use” nudge, and we’re storing employees’ answers in a more actionable format. 

‍

Now, you can send a nudge to the technical owner of an app asking them to specify whether an application is fully adopted, under evaluation, just an experiment, or for personal use only. Optionally, the employee can also add a text response and select whether the application will handle corporate, customer, employee, or financial data. These responses populate fields labeled “Lifecycle stage” and “Data type,” which can be used to filter the Apps view. 

‍

Nudge Security has released new app health statuses showing the operational state of the SaaS applications in use across your organization. Now, security and IT teams can see an at-a-glance view of the operational health of your organization’s SaaS applications and swiftly identify if a SaaS service is experiencing disruptions.

‍

Learn more in today’s blog.

‍