Box Shield
Intelligent, frictionless security to protect the flow of content

Leading organizations protect their data with Box Shield





Box Shield has become a vital part of our security posture. We’re excited to see how new capabilities will further strengthen our ability to meet these responsibilities.
— Deepak Budwani, Chief Financial and Administrative Officer at the Santa Barbara County Office of the Public Defender
Automatically classify sensitive data
Classify new and historical content your way, both manually and automatically. Box Shield's native capability helps you identify regulated data and proprietary information when content is considered "active" — when it's uploaded, shared, previewed, edited, downloaded, and more. Whether created locally, migrated via Box Shuttle, or even generated with AI, Box Shield helps you classify your content automatically and at scale.
Add context with the AI Classification Agent
Coming soon with Shield Pro
Leverage intelligent, context-driven analysis to automatically identify and classify sensitive content, from movie scripts to design documents. Our AI Classification Agent pinpoints files by patterns, context, and organizational requirements to classify content faster and at scale.
Protect your content against advanced malware attacks
Box Shield's native threat-detection capabilities help you reduce content-centric risks. With additional built-in, deep learning-based malware detection, you can discover and contain malware spread before it becomes a data breach. Box Shield scans active content and provides broader coverage for sophisticated malware, including ransomware.
Shut down threats and take action quickly
Coming soon with Shield Pro
Expanding on Shield’s native threat-detection, Ransomware Activity Detection helps protect your organization against the threat of ransomware-compromised endpoint devices. With our proprietary ransomware detection algorithm, admins can quickly identify incidents and terminate compromised sessions at the push of a button.
Power your security team with automated controls
Placing controls close to your content helps prevent leaks in real time and powers a seamless user experience. Configure access policies within minutes to keep your data secure while letting people continue their mission-critical work. Frictionless controls — like allowing end users to make one-time exceptions to Box Shield's access restrictions with admin-defined business justifications — let you collaborate safely.
Streamline threat handling with AI-powered analysis
Coming soon with Shield Pro
Taking actionable alerts to the next level by leveraging Box AI to summarize threat alert details into easily understood language. With AI Threat Analysis, your security team can accelerate threat remediation without sacrificing security, more easily prioritizing critical threats and making it simple to communicate the essentials.
Integrate with your cloud security portfolio
Box security products work with the best-of-breed security tools you already have in place. Alerts containing more insights than ever before can be integrated with your SIEM and CASB for a unified view. That way, Box Shield's native controls and alerts serve as a valuable complement to your overall security portfolio.










IRC protects critical data with Box and Box Shield
Key features of Box Shield
Content classification
Define and manage security classification labels for your organization.
Classification-based access controls
Enforce classification-based access controls across native Box apps and third-party integrations.
Deep-learning based malware detection
Detect sophisticated malware for new and historical content in near real time, automatically restricting downloads while still allowing for preview.
Automated classification
Natively and automatically classify new and historical content based on PII, custom terms, and file types at scale.
Last-mile security for online editors
Extend download and print restrictions in online editors like Microsoft Office Online.
Anomaly detection
Spot anomalous user behaviors signaling compromised accounts or data exfiltration with the ability to train machine-learning algorithms specific to your company.
Imported third-party classification
Automatically import Microsoft Information Protection (MIP) sensitivity labels when files are uploaded to Box.
One-time exceptions
Admins can allow users to make one-time access exception restrictions with a business justification.
Context-rich alerts
Investigate prioritized, context-rich alerts in the Admin Console, or forward alerts to SIEM.
Learn more about securing your data

Get to know Box Shield
Learn more about Shield's capabilities with this quick-reference resource.

Revolutionizing data classification with Box
See how our latest innovation helps you classify content at scale, featuring a customer spotlight.