Category: Microsoft Information Protection
-

Compliance Unplugged – Episode #11 – Classification of Data
Joanne and I have recently been discussing now people view classification of content. Not just the process, but even the definition of classification. We find that a lot of confusion occurs because many people define the classification of data different than Microsoft does and when reviewing Microsoft information problems can occur due to that mismatch…
-

Microsoft Purview Data Protection – Configure the Restricted App Groups
A common method for data to exit an organization’s control is through third-party applications. These applications can be cloud storage like Dropbox or Google Drive. They can also be applications such as Grammarly with access to a cloud infrastructure. To support the control of this, it is possible to create Data Loss Prevention (DLP) policies…
-

Compliance Unplugged – Episode #7 – How Microsoft Purview Information Protection Integrates with Insider Risk Management
In Episode #6, Joanne and I introduced Insider Risk Management. This was to coincide with the blog posts I wrote on the subject, and it worked out well because Joanne had just completed a webinar and conference session about it as well. In this episode, we start our drive down into the various Purview features…
-

Copilot for Security – Your Copilot Query Wording Matters
We all have seen it, and some of us are living through it, but every organization and many users are making use of AI systems in their day-to-day work. Within Microsoft’s security realm, we have Copilot for Security. I previously provided some insights into how you can deploy and set up Copilot for testing (however,…
-

Microsoft Purview Insider Risk Management – Creating a Data Leak Policy
Although Microsoft Purview receives all kinds of signals from the various workloads within Microsoft 365, it doesn’t know what to do with the signals until you tell it what to do. This is the case with Microsoft Purview Information Protection (MPIP), Data Loss Prevention (DLP), and Insider Risk Management (IRM). The policy in IRM tells…