Overview
Skyhigh Security values data protection regardless of its location. Our approach simplifies data security in complex environments, focusing on content over technology. Our cloud-based Zero Trust solutions offer easy-to-use, single-dashboard management, safeguarding sensitive data on the web, cloud, and private applications. Our Skyhigh Security Service Edge includes Skyhigh Secure Web Gateway, Skyhigh Cloud Access Security Broker, Skyhigh Private Access, and Skyhigh Firewall as a Service. Industry Recognition: -Leader in 2023 Gartner Peer Insights Customers' Choice for Security Service Edge -Leading visionary in 2023 Gartner Magic Quadrant for Security Service Edge -Ranks among the highest in 2023 Gartner Critical Capabilities for Security Service Edge. Skyhigh's complete SSE complete solution includes: CASB - Skyhigh Cloud Access Security Broker protects data and stops threats in the cloud across SaaS, PaaS, and IaaS environments from a single, cloud-native enforcement point. It enables organizations to accelerate their business by giving them visibility and control over their data in the cloud and protection from threats with a frictionless deployment model. Skyhigh CASB is consolidated into a fully converged platform and managed from the same single console as the rest of the Skyhigh SSE services. https://www.skyhighsecurity.com/products/cloud-access-security-broker.html SWG - Skyhigh Secure Web Gateway connects and secures your workforce from malicious websites and cloud apps from anywhere, any application, and any device. It protects users from threats and data loss with integrated Remote Browser Isolation RBI, Cloud Access Security Broker CASB, and Data Loss Prevention DLP capabilities while providing the ability to access the web and cloud. https://www.skyhighsecurity.com/products/secure-web-gateway.html Private Access - Skyhigh Private Access is the data-centric Zero Trust Network Access (ZTNA) solution that provides integrated Data Loss Prevention (DLP) scanning and seamless Remote Browser Isolation (RBI) integration for robust data protection, using Zero Trust principles. Apply a unified policy across web, SaaS, and private apps - all from a fully converged, consolidated platform. https://www.skyhighsecurity.com/products/private-access.html FWAAS - Skyhigh Cloud Firewall, provides a cost-effective and secure solution for companies looking to support remote workers and ensure secure connectivity to their sensitive data and network infrastructure. It monitors outbound traffic across all IP protocols and ports and applies consistent block or allow policies to provide users with secure connectivity to sensitive data, cloud applications, and workloads from anywhere without compromising performance. Skyhigh Cloud Firewall inspects any traffic leaving your organization, regardless of location. Policies can be configured based on IP, host, domain, port, user, group, process, and other parameters and are consistent with Skyhigh Cloud Platform policies. It detects HTTP and HTTPS traffic on non-standard ports and directs that traffic to Skyhigh Secure Web Gateway for additional inspection. About Skyhigh Security: Skyhigh Security protects organizations with cloud-based Zero Trust security solutions. Our Security Service Edge portfolio focuses on data use, allowing secure collaboration from anywhere while providing visibility and control to mitigate security risks. Additional solutions include Skyhigh Secure Web Gateway, Cloud Access Security Broker, Private Access, Firewall as a Service, Full Isolation RBI, OCR for DLP, and Skyhigh Cloud Native Application Protection Platform. For pricing, EULA, or a private contract, please contact aws_offers@skyhighsecurity.com , for a private offer. Gartner, "Gartner Peer Insights Customers' Choice for Security Service Edge", Peer Contributors, August 3, 2022. Gartner, "Magic Quadrant for Security Service Edge", John Watts, Craig Lawson, et al, March 30, 2022. Gartner, "Critical Capabilities for Security Service Edge", Craig Lawson, Charlie Winckless, et al. Feb 16, 2022. GARTNER and MAGIC QUADRANT are registered trademarks and service marks, and PEER INSIGHTS is a trademark and service mark, of Gartner, Inc. and/or its affiliates in the U.S. and internationally and are used herein with permission. All rights reserved. Gartner does not endorse any vendor, product, or service depicted in its research publications, and does not advise technology users to select only those vendors with the highest ratings or other designations. Gartner's research publications consist of the opinions of Gartner's research organization and should not be construed as statements of fact. Gartner disclaims all warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. McAfee Enterprise is now Skyhigh Security.
Highlights
- Ranked the among the highest across all use cases in the 2022 and 2023 Gartner® Critical Capabilities for Security Service Edge.
- CASB, Secure Web Gateway, Private Access/ZTNA, Cloud Gateway Firewall, , Data Protection available packaged or individually.
- Enables cloud innovation by securing data across the web, cloud (SaaS), and private apps - from anywhere, any application, and any device.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
Skyhigh SSE Complete Pkg | Complete Security Service Edge Protection | $0.001 |
Vendor refund policy
No Refunds Available
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
Your Skyhigh Customer Success team includes a named Customer Success Manager and Technical Support Engineer, in addition to 24x7 access to our service desk support teams. Support contact information provided with your Skyhigh Security enrollment package.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.


Standard contract
Customer reviews
Web access controls have created a focused work environment and prevent data leakage
What is our primary use case?
My main use case for Skyhigh Security is blocking malicious websites, blocking non-DLP acceptable websites, preventing data sharing, enforcing DLP , preventing access to unpleasant websites, and preventing people from using YouTube, advertisement applications, or LinkedIn. We mainly use it to make the work environment dedicated to work without giving employees entertainment that is not allowed.
What is most valuable?
In my opinion, the best feature Skyhigh Security offers is its ability to perform deep TLS interception to take action based on that analysis. Deep TLS inspection is a very valuable technology to have with your device.
Skyhigh Security has positively impacted my organization by providing more compliance and more regulatory adherence.
What needs improvement?
It would be beneficial to have an API for Skyhigh Security. We also experienced some troubleshooting issues when we were troubleshooting our rules, which was not pleasant to manage.
Skyhigh Security can be improved as it lacks debugging capabilities. The main issue is that if we have a website that is blocking Skyhigh Security's proxy, for example a bank website, we will not be able to tell until someone calls us. They do not know enough about our technology because they do not need to be technical experts. Some people are in sales, and some people use their computers for only basic tasks and do not understand that they are being blocked by us or do not know who to contact. We are unable to determine that a banking website is blocking Skyhigh Security through our proxy because the bank is not accepting Skyhigh Security's proxy. Another issue is the lack of API. There is no API available. We tried to contact support about this, and they said there would be an API at the end of quarter one, maybe quarter two, but I am not sure what happened. They did not get back to us.
I chose a rating of eight for Skyhigh Security because of the issues I mentioned, including the lack of API, the lack of troubleshooting and debugging for websites that are blocking us or the end users because of the proxy, and we have to perform a proxy bypass to allow access. Additionally, it does not allow HTTP/3 interception, which is an issue.
For how long have I used the solution?
I have been using Skyhigh Security for around six months or more. I am Ahmed, a security information specialist at Nornet, and I have been working there for three years, starting last August.
What do I think about the stability of the solution?
Skyhigh Security is not stable.
What do I think about the scalability of the solution?
Skyhigh Security's scalability is affected by the fact that you make rules that become less maintainable over time because it is like documentation, and it is difficult to document the patches. This is the most frustrating part of everything in technology, as documentation and patching issues are always challenging.
How are customer service and support?
The customer support for Skyhigh Security is great. They are helpful and responsive.
Which solution did I use previously and why did I switch?
I did not previously use a different solution. We did not have a comparable solution in the past, though we may have had Zscaler or similar offerings, but nothing comparable to Skyhigh Security so far.
What was our ROI?
I have not seen a return on investment from Skyhigh Security yet. I do not have numbers for this, but it is a sound investment idea. We should develop metrics to measure this.
Which other solutions did I evaluate?
Before choosing Skyhigh Security, we evaluated some other options but decided to stick with Skyhigh Security. We are also aware of Trellix, but we chose to remain with Skyhigh Security.
What other advice do I have?
Regarding Skyhigh Security's AI capabilities, I have not tried them. I did not hear about Skyhigh Security's AI capabilities, and I only used Skyhigh Security without AI. This is the first time I have heard that Skyhigh Security has AI capabilities.
Skyhigh Security is deployed throughout our organization. According to our engineer, it should be on-premises, and it is deployed on-premises.
My advice to others considering Skyhigh Security is that it has more capabilities than you might initially think. You should make sure to explore everything before you start using it so you can understand all the areas where you can utilize Skyhigh Security, as you might find many other useful options for deployment. An important consideration is to ensure that Skyhigh Security will not negatively affect the daily work of your engineers and employees. You should plan for a smooth implementation of Skyhigh Security because it might block access to resources that it was not intended to restrict.
I have rated Skyhigh Security with a score of eight out of ten.
Focused on improving cloud dashboards and threat insights while securing SaaS access from managed devices
What is our primary use case?
My main use case for Skyhigh Security is securing critical SaaS platforms, namely Salesforce and Office 365 .
A specific example of how I use Skyhigh Security with Salesforce and Office 365 is limiting access to the service from managed devices only.
In addition to my main use case, we also provide restricted access to Salesforce from unmanaged devices that keeps the data in Salesforce safe while enabling necessary access.
What is most valuable?
The best features Skyhigh Security offers are their Shadow IT visibility and Cloud Catalog, which are probably the best in the industry. Their ability to agentlessly enable access for managed devices is great.
The Shadow IT visibility and Cloud Catalog have helped my team by allowing us to move faster with allowing access from all different types of devices, phones and computers, because the agentless portion was beneficial since we did not have to deploy an agent. Their cloud catalog has over 30,000 cloud services and detailed risk ratings and helped us surface use cases that we did not know about that we needed to address.
Skyhigh Security has positively impacted my organization by helping fill a need that was unaddressed at the time, especially as Cloud Access Security Brokers came out and were very popular around 2018. We did not have a standardized set of tools for visibility and control of cloud services, so aggregating Shadow IT logs in one place for visibility was new and powerful.
What needs improvement?
Skyhigh Security can be improved because their administrative dashboard frequently has issues; it is unresponsive, unusable, or very slow often. The anomalies and threats that are generated are investigated, and they are generally benign or noise. We do not really get actionable anomalies or threats, unfortunately. Sometimes Skyhigh Security does not integrate well or compete well with native capabilities of clouds, such as email DLP because it does not support Microsoft Purview encryption, which blinds Skyhigh Security's DLP , creating a large hole. Additionally, the cloud access controls are not fine-grained, so a product like Entra ID can provide fine-grained access to different sub-services of Microsoft, which is better. Furthermore, the DLP policies for Skyhigh Security were never as good as they sounded on paper; lots of trial and error was needed to help put a policy in place, and ultimately, we could not move forward with some policies just because they never worked the way that we thought they should.
They do listen to customers, so that does help there. If you provide feedback, they do address it, which somewhat mitigates the issues.
For how long have I used the solution?
I have been using Skyhigh Security since 2018.
How are customer service and support?
Their support is somewhat inexperienced and there is a fair amount of turnover within the company that we experienced, which we found challenging; but that may not be atypical for security vendors.
What other advice do I have?
Regarding Skyhigh Security's AI capabilities, I do not have much experience with their AI capabilities. They did have a regex generator that was built in, which was novel, and they helped us surface the use of AI in other platforms, but I have not used any Skyhigh Security AI services.
In terms of Skyhigh Security's AI capabilities, I would characterize them as not mature.
Skyhigh Security is deployed in my organization as a SaaS platform. We only use the Cloud Access Security Broker, so it was all in Skyhigh Security's SaaS.
We did host the cloud connector in Azure , but that is not necessary for the operation of Skyhigh Security, just to help with Shadow IT log processing.
I would advise others looking into using Skyhigh Security to consider the goals of implementing a Cloud Access Security Broker, as a lot of cloud services such as Microsoft and Salesforce have invested heavily in native capabilities. Therefore, it is possible that third-party tooling is not needed. I would rate this product a 4 overall.
Cloud risks have been reduced and data protection improves with better DLP tuning
What is our primary use case?
My main use case for Skyhigh Security is preventing cloud access and user activity, especially around SaaS applications, DLP , web security, and visibility into risky user behavior.
I have a recent example of how I use Skyhigh Security for protecting cloud access and monitoring risky user behavior. The workflow was to identify the risk activity, validate if it was legitimate by the proper DLP policy, and then use the visibility to support the security team of the client, reducing the exposure.
Mainly, I use Skyhigh Security to monitor cloud and web activity, validate risk, and help the security team understand where sensitive data may be exposed or leaving the environment.
What is most valuable?
In my opinion, the best feature Skyhigh Security offers is the DLP capabilities and visibility into cloud. The CSPM was a good feature, and app control for SaaS applications was also good.
The visibility and EAP capabilities help provide a clear view of user activity. For example, it made it easier to identify risk access patterns, understand which users were interacting with sensitive data, and apply the right controls before the risk becomes a bigger issue on the client.
The best description is that it helps the security team respond faster to risk behaviors and give more confidence when managing sensitive data across SaaS applications.
What needs improvement?
Some applications lack integration because applications such as WhatsApp are difficult to intercept due to point-to-point encryption. I think an enterprise browser would be a good improvement. I am not certain if Skyhigh Security has this offering, but I think it would be a good addition.
I chose seven out of ten because Skyhigh Security has some problems with frequent updates on the SCP client, and there are some bugs.
For how long have I used the solution?
I have been using Skyhigh Security for the last five years.
What do I think about the stability of the solution?
Skyhigh Security has been stable today.
What do I think about the scalability of the solution?
Skyhigh Security has good scalability, and I do not have any problems with it.
How are customer service and support?
I think customer support is generally helpful and professional, but the time to reach a final resolution could be improved. In some cases, the first responses are useful, but complex issues can take longer than expected to fully resolve, especially when an escalation is needed.
Which solution did I use previously and why did I switch?
Previously, we used a Forcepoint solution. We switched because we needed better visibility across SaaS applications, stronger cloud activity monitoring, and a more centralized way to manage DLP and risky user behavior. The other product was not giving us the visibility we needed and had a lot of uptime problems.
How was the initial setup?
My advice would be to plan the deployment carefully, especially around the DLP policy, user groups, and business exemptions. Skyhigh Security is a strong platform, but the policy tuning, a clear use case, and good alignment between the security, IT, and business teams are important. I recommend starting with the critical SaaS apps and sensitive data flows first, then expanding gradually.
What about the implementation team?
My company does not have a business relationship with this vendor other than being a customer.
What was our ROI?
We saw return on investment. For example, before using Skyhigh Security, a security analyst could spend around two to three hours manually investigating a potential data exfiltration incident, checking logs, users, applications, and file activity across different tools. With Skyhigh Security, that same analysis could often be reduced to around ten minutes because the platform provides centralized visibility into the users, applications, and data involved. I think it was a good investment and we have seen ROI.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing was generally aligned with the number of users and the models, and the cost depends on the scope, but I think Skyhigh Security has great pricing for the market.
Which other solutions did I evaluate?
We checked other options such as Check Point SASE before choosing Skyhigh Security.
What other advice do I have?
One example was a user trying to upload sensitive internal files to an unsanctioned cloud storage app. Skyhigh Security helped us quickly see the user, the application, and the type of data involved. That visibility helped us take action before another attempt occurred. Because of that visibility, the team was able to block the upload and validate the activity with the user and adjust the DLP policy to prevent similar incidents in the future. I rated this review seven out of ten.
Integrated cloud security has improved data protection and discovers shadow IT for compliance
What is our primary use case?
My main use case for Skyhigh Security is for data security, where I use it as a CASB product.
I use Skyhigh Security day-to-day by integrating it with our different cloud components, creating policies for data leakage or data discovery, and receiving alerts for policy violations.
What is most valuable?
The best features of Skyhigh Security are the screen share, the policy part, and the visibility it provides for the integration part, giving us good visibility while using Skyhigh.
These features help me in my daily work by reading from the back-end and giving us full control on the analyzing part, which keeps the visibility for the incidents.
Skyhigh Security has positively impacted my organization by enabling us to discover the Shadow IT concept and identify unauthorized cloud applications or integrations, helping us maintain compliance and governance.
The impact of Skyhigh Security can be seen in improved analytics, governance, and the identification of shadow IT parts, leading to fewer security incidents.
What needs improvement?
Skyhigh Security can be improved by addressing the current challenges we face with complex DLP policies that are difficult to manage, particularly in managing the exception rules in a large environment.
The challenges I face remain with the CASB and DLP parts, focusing on the DLP policies and exception handling.
For how long have I used the solution?
I have been using Skyhigh Security for around three years.
What do I think about the stability of the solution?
Skyhigh Security is stable.
What do I think about the scalability of the solution?
Regarding scalability, since it is majorly SaaS-based, I am not entirely certain about its scalability.
How are customer service and support?
I currently get support via our vendor, so I find it hard to comment on the direct support from Skyhigh Security, but I can say it is good and not bad; it is acceptable.
Which solution did I use previously and why did I switch?
I did not previously use any other solution; this is the first CASB we have used.
How was the initial setup?
My experience with pricing, setup cost, and licensing indicates it is high, but it is negotiable.
What about the implementation team?
We are the end users and do not have a business relationship with this vendor beyond being a customer.
What was our ROI?
While I cannot calculate the ROI directly since it is a security product, Skyhigh Security has helped maintain compliance and save resources, particularly in terms of time.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing indicates it is high, but it is negotiable.
Which other solutions did I evaluate?
Before choosing Skyhigh Security, we evaluated Zscaler and Netskope .
What other advice do I have?
Skyhigh Security is deployed in a SaaS-based environment as we take services from them and integrate it with cloud components, including a hybrid approach where we directly integrate from the SaaS to components like Salesforce and use Skyhigh Security with in-house AD integration.
Skyhigh Security is a good product with better features compared to other CASB and DLP products in the market, especially if you are looking for a combined solution with SASE features. I would rate this product an 8 out of 10.
Centralized cloud security has improved DLP incident management and simplifies email protection
What is our primary use case?
I primarily use Skyhigh Security for CASB in a Cloud Access Security Broker, and it has been integrated with Trellix DLP . Both Trellix and Skyhigh Security are utilized as on-premise solutions to secure clouds and emails.
Skyhigh Security is used as a cloud service for all mail, with Microsoft Exchange integrated through Skyhigh Security, which is also integrated with Trellix. All policies applied on Trellix are applicable on Skyhigh Security, and traffic flows through Skyhigh Security, creating incident logs that are reviewed and acted upon accordingly with the user.
With 18,000 users, Skyhigh Security has proven beneficial in reducing incidents. Two members manage Skyhigh Security CASB completely, which is sufficient for our organization.
What is most valuable?
Skyhigh Security is a good product that is very easy to integrate with any tools, and the dashboards are user-friendly and easy to understand. One valuable feature is the ability to identify SSL certificate expirations within one tool, which most other tools do not offer.
Skyhigh Security has positively impacted the organization by helping manage DLP incidents, allowing for customizable dashboards based on requirements, and preventing unauthorized access.
What needs improvement?
One major challenge is that downloading incidents during the investigation process takes a very long time, and this issue should be resolved. More customized columns and filtering options in incident review would be beneficial. File types should be included, such as file names along with file extensions, which are not currently available to my knowledge.
Overall, Skyhigh Security is very good and just needs to improve in terms of the latency of downloading incidents.
For how long have I used the solution?
I have been using Skyhigh Security for one year.
How are customer service and support?
Skyhigh Security provides awesome support, and I can call anytime if I face any challenges. Weekly setup calls are conducted with all clients to discuss ongoing issues and resolutions. The customer experience has been very nice, and I appreciate this support. I have worked with Forcepoint previously but really prefer the support provided by Skyhigh Security.
Customer support is very nice and has been very prompt. I rate customer support 10 out of 10 because of the weekly calls regarding raised tickets and immediate responses from support, which has been really useful.
Which solution did I use previously and why did I switch?
Previously, I was working on Forcepoint DLP , which was also on-premise. In the CASB area, this is the first time using Skyhigh Security as a CASB product.
What's my experience with pricing, setup cost, and licensing?
I was not involved in the setup cost details, but generally, it aligns with standard on-premise costs.
Which other solutions did I evaluate?
I was not present during the evaluation of other options before deploying Skyhigh Security.
What other advice do I have?
I chose a rating of 9 out of 10 because of the downloading issues with incidents, which take longer times to complete. Sometimes incidents need to be downloaded immediately, but the process takes a long time. I definitely recommend using Skyhigh Security, and my overall review rating is 9 out of 10.