Box

Connecting Box to LightBeam


Overview

LightBeam Spectra users can connect various data sources to the LightBeam application and these data sources will be continuously monitored for PII, PHI data.

Examples: Box, OneDrive, AWS S3, Google Drive, etc.


Connecting Box Data Source

  1. Login to your LightBeam Instance.

  2. Click on DATASOURCES on the Top Navigation Bar.

  3. Click on “Add a data source”.

Figure 1. LightBeam Box - Add Data Source
  1. Search for “Box”.

Figure 2. Search Box
  1. Click on Box.

Figure 2.1 Box
  1. Fill in the requested information and click on Next.

Basic Information

  • Data Source Name: This is the unique name given to the data source.

  • Description: This is an optional field needed to describe the use of this data source.

  • Primary Owner: An email address of who is responsible for this data source and in case of alerts this email ID will get alerts by default.

  • Entity Creation: LightBeam Spectra detects and associates attributes based on the context and identifies whose data it is; these are called as entities. Example: Jane Doe is an entity for whom LightBeam Spectra might have detected Name and SSN in a monitored data source.

  • Source of Truth: LightBeam Spectra includes monitored data sources that serve as a single point of truth. These sources are utilized for looking up entities/attributes to verify the accuracy of attributes/entities discovered in other data sources. By using a Source of Truth dataset, entities are formulated based on the attributes present in the data.

  • Location: The location of the data source is indicated here.

  • Purpose: The purpose of why the data is being collected/processed.

  • Stage: The stage of the data source. Example: Source, Processing, Archival, etc.

Figure 3. LightBeam Box - Basic Information

Datasource Configuration

  1. Provide the credentials as shown below.

  2. Click on Test Connection.

  3. Verify that you get the message “Test Connection Success” on the screen. Click on Next.

Figure 4. LightBeam Box - Test Connection
  1. In this step, you can choose either of two scan setting options –

i) Scan all drives

ii) Scan selected drives

To scan all drives, choose option (i).

Figure 5. LightBeam Box - Scan all drives

To scan selected drives, choose option (ii). Now enter the names of the drives you want to include for scanning individually.

Figure 5.1 LightBeam Box - Scan selected drives
  1. Click on Save.

Now we are ready to browse through the onboarded Box datasource dashboard.


Appendix

Steps to Generate Box Data Source Credentials

  1. Log in to the Box dev console. For example, the Box dev console URL for LightBeam is

    https://lightbeam.app.box.com/developers/console

    • Click on MyApps -> Create New App -> Select Custom App.

    • Fill in the basic details (in the Purpose field select Integration and in Categories select Security & Compliance) then click Next

Figure 6. New App - Create LB App
  1. On the next screen, select Server Authentication (Client Credentials Grant) and click on Create App.

Figure 7. New App - Select authentication method
  1. On the General Settings tab, please note down the Enterprise ID. It is required while registering the datasource.

Figure 8. New App - General Settings
  1. On the Configuration tab, please select the App + Enterprise Access button.

Figure 9. New App - Configuration
  1. Click on Fetch Client Secret. It will generate a new Client Secret.

Important: Ensure that you record the Client Secret as it will be displayed only once. If you miss capturing it, click the same button again to generate a new Client Secret.This will invalidate the previous one.

  1. Note down the Client ID as it is also required for Lightbeam Box datasource registration.

  2. Enable the Application Scopes shown in the image below and then click Save Changes.

Figure 9.1 New App - Configuration
  1. Go to Authorization tab and click on Review and Submit. This will send the newly created application for approval by the Box admin.

Fig 10. New App - Authorization
  1. To approve the application, log in with the admin account and open Admin Console.

Fig. 11 New App - Admin Console
  1. On the Custom Apps Manager tab, select your app and click on Authorize.

Fig. 12 New App - Custom Apps Manager
  1. After the successful authorization, the App Manager should show Authorized status for the app. This app is now ready for Lightbeam integration.

Fig. 12 New App - Authorized Status

With Client ID, Client Secret, and Tenant ID we are ready to register Box datasource with Lightbeam.


Firewall Configuration for Box Integration

For instructions on configuring your firewall to support Box integration, please refer to the official guide: Configuring a Firewall for Box Applications.


About LightBeam

LightBeam automates Privacy, Security, and AI Governance, so businesses can accelerate their growth in new markets. Leveraging generative AI, LightBeam has rapidly gained customers’ trust by pioneering a unique privacy-centric and automation-first approach to security. Unlike siloed solutions, LightBeam ties together sensitive data cataloging, control, and compliance across structured and unstructured data applications providing 360-visibility, redaction, self-service DSRs, and automated ROPA reporting ensuring ultimate protection against ransomware and accidental exposures while meeting data privacy obligations efficiently. LightBeam is on a mission to create a secure privacy-first world helping customers automate compliance against a patchwork of existing and emerging regulations.

For any questions or suggestions, please get in touch with us at: [email protected].

Last updated