Netskope SaaS Security Posture Management (SSPM) continuously scans your integrated SaaS apps to assess the security posture.
When you configure a SaaS app instance in your Netskope tenant, the platform begins building an inventory of its resources. This inventory is updated regularly based on the Security Scan Interval, which you can set to:
-
Every 15 minutes
-
Every 30 minutes
-
Every 45 minutes
-
Every 60 minutes (1 hour)
-
Every 12 hours
-
Every 24 hours (1 day) (Default)
-
Every 7 days (weekly)
Rule evaluation begins only after you configure and apply a policy to the app instance.
What Are Policies and Rules?
You can create security posture policies for the apps successfully integrated with Netskope. A security posture policy is a collection of:
-
Compliance Standards
-
Security Domains and Categories
-
MITRE ATT&CK
-
Predefined and Custom rules
These policies govern how your SaaS app configurations are evaluated.
-
Use the Policies page to create, view, and manage posture policies.
-
Use the Rules page to see, create or customize the evaluation logic used in the policies.

By combining rule using the policies and applying them to SaaS app instances, you can maintain continuous compliance and reduce risk.

