

This document is a guide detailing the Lookout SaaS Risk Assessment process. It outlines the steps required to assess ongoing risks associated with corporate data shared through approved SaaS applications. The assessment begins with the establishment of a dedicated cloud-native tenant that connects via API to a chosen SaaS application, such as Office365 or Google Workspace. The process is designed to be passive and straightforward, allowing for quick results. Once connected, the Lookout Security Platform scans the SaaS repository to monitor usage and identify potential risks, including malware, data leakage, and compliance violations. The assessment lasts for two weeks, during which the customer can monitor activity through the Lookout console. At the end of this period, an executive summary is provided, highlighting any discovered risks. The document also specifies prerequisites for conducting the assessment, including the need for a corporate instance of a supported SaaS app and a signed NDA with Lookout.