SlideShare a Scribd company logo
1 of 16
Download to read offline
Data Loss Prevention and Compliance in
Microsoft 365: Safeguarding Your Tenant
Account
Presented: June 2023
2 © TechSoup Global. All Rights Reserved.
• Use the Chat function to type in your questions and comments.
• For Closed Captioning, please click and then "Turn on Live Captioning."
Housekeeping
3 © TechSoup Global. All Rights Reserved.
Guest Panelist
I began my IT career as a database admin in the Marine Corps
in 2014. After getting out of the Marines in 2018, I have focused
almost entirely on implementing the entire Microsoft 365 E5
security and compliance suite , working for multiple Microsoft
Gold partner consulting companies for SMBs and Enterprise
clients, as well as an internal position with an SMB. More
recently, I have joined Navy Federal Credit Union as a Microsoft
Purview Administrator on a contract and have created and am
working on growing my own consulting company called Cloudy
Security, LLC.
I can be found and contacted at:
•Email: Mike@cloudy-sec.com
•LinkedIn: https://www.linkedin.com/in/mike-miller34/
•Website: https://www.cloudy-sec.com/
4 © TechSoup Global. All Rights Reserved.
Today’s Agenda
• Introduce Our Guest Panelist
• Understanding Data Loss Prevention (DLP_
• Classification & Sensitivity Labels
• Policies and Rules
• Compliance Requirements & Center
• Data Retention, Insider Threats & ‘Leakage’
• Best Practices
• Q&A
Understanding Microsoft DLP
• DLP is a security solution offered by Microsoft that can identify sensitive information and then help prevent
unsafe or unauthorized sharing, transfer, or use of that data. DLP has many different locations that you can
target, which is based on your license level.
• Exchange Online
• SharePoint Online
• OneDrive for Business
• Microsoft Teams Chat and Channel Messages
• Devices
• 3rd-party apps through Microsoft Defender for Cloud Apps
• On-premises File Repositories
• Power BI
• DLP sets blocking (or auditing) actions on files and messages based on the conditions that you define. Each
DLP location has it's own set of conditions and actions specific to that location.
• If you select multiple locations, you will only see the options that are available for each location
6 Copyright © TechSoup Global. All Rights Reserved.
Sensitivity
Labels Overview
• What is a sensitivity label?
§ A sensitivity label is a tag that gets applied to file or email. This tag will stay with the file or
email for the entire lifecycle of the file or email.
o Labels can also be applied to containers, such as M365 Groups, Microsoft Teams sites, or
SharePoint sites.
• How do labels get applied to files and emails?
§ The three primary ways are:
o Manual
Ø User selects the label will creating or modifying a file or email
o Recommended
Ø The system will detect predetermined content, based on Sensitive Information Types
(SITs) or Trainable Classifiers, and recommend a specific label be applied
o Automatic
Ø The system will apply a specific label based on predetermined content
• Licensing requirements
§ Manual and requiring a default label:
o E3/A3/G3/F3/F1
§ Automatic and Recommended labeling:
o E5/A5/G5
7 Copyright © TechSoup Global. All Rights Reserved.
What can
Sensitivity
Labels do?
•
§
o
Ø
Ø
Ø
o
o
Ø
Ø
Ø
Ø
Ø
o
§
o
o
o
§
•
§
o
Ø
Ø
Ø
o
§
o
Ø
Ø
Ø
Ø
o
Ø
Ø
Ø
o
Ø
Demo
Content Contains
Sensitive Information Types
Trainable Classifiers
§ Sample Content
§ Test
§ Validate
§ Publish
Out of Box
§ Credit Card
§ SSN
§ License
§ More
Custom
§ RegEx
§ Dictionary
§ Fingerprint
§ EDM
Sensitivity or Retention Labels
Cloud DLP (SharePoint/OneDrive)
Conditions
Content shared
internally/externally
Document name contains
words/phrases
Document name contains
matches patterns
Document property
Document size (equal to or
greater than)
Document created by
Document created by
member of
File Extensions
.tsv files
PDF files
Excel files
PowerPoint files
Word files
.csv files
.txt files
.rtf files
.c files
.class files
.cpp files
.cs files
.h files .java files
Additional Conditions
Actions
Block everyone Block only external
Block, allow
override
Conditions matched and user shares the file, you
may apply certain actions
When actions are taken, you may configure end-
user and admin notifications
Block “anyone with
the link” access
Notifications
§ Policy tips
§ User or Group
email notifications
§ Incident reports
Compliance Admins may investigate policy
matches in the Microsoft Purview Admin portal >
Data loss prevention > Activity explorer
Public
Confidential
Internal
Secret
7 Year Delete 5 Year Delete
Document is shared (OD4B
Exclusive)
1
0
Conditions
Sensitive Information Types
Trainable Classifiers
§ Sample Content
§ Test
§ Validate
§ Publish
Out of Box
§ Credit Card
§ SSN
§ License
§ More
Custom
§ RegEx
§ Dictionary
§ Fingerprint
§ EDM
Sensitivity Labels
Content not
Labeled
Word
Processing
Spreadsheet
Presentation Archive
Mail
File Type File Extensions
.tsv files
PDF files
Excel files
PowerPoint files
Word files
.csv files
.txt files
.rtf files
.c files
.class files
.cpp files
.cs files
.h files .java files
Copy/Paste
USB Drive Network Share
Print
App Control
Cloud Upload
Create Item
(Audit)
Rename Item
(Audit)
User Activities
Notifications
§ Policy tips
§ User or Group
email notifications
§ Incident reports
When conditions are met and the following
activities are performed, you may enable certain
actions
Endpoint DLP
When actions are taken, you may configure end-
user and admin notifications
Actions
Block Action
Block, allow
override
Audit Activity
Compliance Admins may investigate policy
matches in the Microsoft Purview Admin portal >
Data loss prevention > Activity explorer
Conditions
Public
Confidential
Internal
Secret
Update
theme
11
Teams Chat/Channel Message DLP
Content Contains
Sensitive Information Types
Trainable Classifiers
§ Sample Content
§ Test
§ Validate
§ Publish
Out of Box
§ Credit Card
§ SSN
§ License
§ More
Conditions
Sender is Sender domain is
Recipient is Recipient domain is
Content shared
internally/externally
Additional Conditions
Actions
Block message
from sending
Block only external
Block, allow
override
Conditions matched and user sends a Teams
chat or channel message, you may apply certain
actions
Notifications
§ Policy tips
§ User or Group
email notifications
§ Incident reports
Compliance Admins may investigate policy
matches in the Microsoft Purview Admin portal >
Data loss prevention > Activity explorer
Sender Notification
Recipient Notification
When actions are taken, you may configure end-
user and admin notifications
Update
theme
12
Exchange DLP
Trainable Classifiers
§ Sample Content
§ Test
§ Validate
§ Publish
Out of Box
§ Credit Card
§ SSN
§ License
§ More
Custom
§ RegEx
§ Dictionary
§ Fingerprint
§ EDM
Public
Confidential
Internal
Secret
Conditions
Sensitive Information Types Sensitivity Labels
Content shared
internally/externally
Additional Conditions
Sender / Recipient is / is member
of distribution group
Sender / Recipient domain is
Sender IP Address is Sender has overridden policy
Content received
internally/externally
Sender / Recipient address
contains words
Sender / Recipient address
matches patterns
Sender / Recipient AD Attribute
contains words or phrases
Sender / Recipient AD Attribute
matches patterns
File Extensions
.tsv files
PDF files
Excel files
PowerPoint files
Word files
.csv files
.txt files
.rtf files
.c files
.class files
.cpp files
.cs files
.h files .java files
Attachments could not be
scanned / did not complete scan
Attachments is password
protected
Document name contains words
or phrases / matches patterns
Document property is
Document size equals or is
greater than
Document content contains words
or phrases / matches patterns
Subject contains words or
phrases / matches patterns
Subject or body contains words or
phrases / matches patterns
Content character set contains
words
Header contains words or
phrases / matches patterns
Message size equals or is greater
than
Message type is
Message importance is
Conditions matched and the email is
sent/received, you can apply the following
actions
Actions
Block everyone Block only external
Block, allow override
Restrict access or encrypt content
Encrypt message
(sensitivity label)
Additional Actions
Set / Remove
headers
Redirect to specific
users
Forward for approval
to manager / set user
Add recipient to the
To / Cc / Bcc box
Add sender’s
manager as recipient
Remove OME and
rights protection
Prepend email subject Add HTML disclaimer
Modify subject
Deliver message to
hosted quarantine
Notifications
§ Policy tips
§ User or Group
email notifications
§ Incident reports
When actions are taken, you may configure end-user
and admin notifications
Compliance Admins may
investigate policy matches in the
Microsoft Purview Admin portal >
Data loss prevention > Activity
explorer
Content is not labeled
Update
theme
13 © TechSoup Global. All Rights Reserved.
Questions & Answers
14 Copyright © TechSoup Global. All Rights Reserved.
Learn Connect
Digital Transformation Forum
https://bit.ly/3ASktwF
Digital Skills Center
Training Courses
https://bit.ly/3xV72dp
Resources
Connect
Monthly Virtual Office Hours
Save the date! Keep your eye open for our
next Office Hours on July 20th – Grant
Writing with a Purpose
Microsoft Cloud: Getting
Started Guide
https://bit.ly/3C30n3c
Community
Get
Started
15 Copyright © TechSoup Global. All Rights Reserved.
Additional Resources
Resources:
• Schedule a Free Consultation
• Utilization Requirements for Donated Microsoft Cloud
Licenses and How to Access the Usage Report
• Digital Assessment Tool - analyze the current state of
your organization's technology. The tool will
provide recommend products, services, and
resources to make your systems and processes work
better for you in service of your mission.
• TechSoup Product Catalog
Blogs:
• Microsoft Cloud Licenses Pricing Changes
• The Right Microsoft 365 and Office 365 for Your
Nonprofit
• What You Need to Know About Microsoft 365
Nonprofit
Thank You!
customersuccess@techsoup.org

More Related Content

What's hot

Microsoft 365 Enterprise Security with E5 Overview
Microsoft 365 Enterprise Security with E5 OverviewMicrosoft 365 Enterprise Security with E5 Overview
Microsoft 365 Enterprise Security with E5 OverviewDavid J Rosenthal
 
2 Modern Security - Microsoft Information Protection
2   Modern Security - Microsoft Information Protection2   Modern Security - Microsoft Information Protection
2 Modern Security - Microsoft Information ProtectionAndrew Bettany
 
Overview of Data Loss Prevention Policies in Office 365
Overview of Data Loss Prevention Policies in Office 365Overview of Data Loss Prevention Policies in Office 365
Overview of Data Loss Prevention Policies in Office 365Dock 365
 
An introduction to Defender for Business
An introduction to Defender for BusinessAn introduction to Defender for Business
An introduction to Defender for BusinessRobert Crane
 
Microsoft Azure Information Protection
Microsoft Azure Information Protection Microsoft Azure Information Protection
Microsoft Azure Information Protection Syed Sabhi Haider
 
Microsoft Azure Active Directory
Microsoft Azure Active DirectoryMicrosoft Azure Active Directory
Microsoft Azure Active DirectoryDavid J Rosenthal
 
[Azure Governance] Lesson 4 : Azure Policy
[Azure Governance] Lesson 4 : Azure Policy[Azure Governance] Lesson 4 : Azure Policy
[Azure Governance] Lesson 4 : Azure Policy☁ Hicham KADIRI ☁
 
Azure Information Protection
Azure Information ProtectionAzure Information Protection
Azure Information ProtectionRobert Crane
 
Building an Enterprise-Grade Azure Governance Model
Building an Enterprise-Grade Azure Governance ModelBuilding an Enterprise-Grade Azure Governance Model
Building an Enterprise-Grade Azure Governance ModelKarl Ots
 
Best Practices in Cloud Security
Best Practices in Cloud SecurityBest Practices in Cloud Security
Best Practices in Cloud SecurityAlert Logic
 
Securing SharePoint, OneDrive, & Teams with Sensitivity Labels
Securing SharePoint, OneDrive, & Teams with Sensitivity LabelsSecuring SharePoint, OneDrive, & Teams with Sensitivity Labels
Securing SharePoint, OneDrive, & Teams with Sensitivity LabelsDrew Madelung
 
7 Experts on Implementing Microsoft 365 Defender
7 Experts on Implementing Microsoft 365 Defender7 Experts on Implementing Microsoft 365 Defender
7 Experts on Implementing Microsoft 365 DefenderMighty Guides, Inc.
 
Microsoft Defender and Azure Sentinel
Microsoft Defender and Azure SentinelMicrosoft Defender and Azure Sentinel
Microsoft Defender and Azure SentinelDavid J Rosenthal
 
Azure Security Center- Zero to Hero
Azure Security Center-  Zero to HeroAzure Security Center-  Zero to Hero
Azure Security Center- Zero to HeroKasun Rajapakse
 

What's hot (20)

Microsoft 365 Enterprise Security with E5 Overview
Microsoft 365 Enterprise Security with E5 OverviewMicrosoft 365 Enterprise Security with E5 Overview
Microsoft 365 Enterprise Security with E5 Overview
 
2 Modern Security - Microsoft Information Protection
2   Modern Security - Microsoft Information Protection2   Modern Security - Microsoft Information Protection
2 Modern Security - Microsoft Information Protection
 
Overview of Data Loss Prevention Policies in Office 365
Overview of Data Loss Prevention Policies in Office 365Overview of Data Loss Prevention Policies in Office 365
Overview of Data Loss Prevention Policies in Office 365
 
An introduction to Defender for Business
An introduction to Defender for BusinessAn introduction to Defender for Business
An introduction to Defender for Business
 
Microsoft Purview
Microsoft PurviewMicrosoft Purview
Microsoft Purview
 
Microsoft Azure Information Protection
Microsoft Azure Information Protection Microsoft Azure Information Protection
Microsoft Azure Information Protection
 
Microsoft Azure Active Directory
Microsoft Azure Active DirectoryMicrosoft Azure Active Directory
Microsoft Azure Active Directory
 
[Azure Governance] Lesson 4 : Azure Policy
[Azure Governance] Lesson 4 : Azure Policy[Azure Governance] Lesson 4 : Azure Policy
[Azure Governance] Lesson 4 : Azure Policy
 
Data Loss Prevention in Office 365
Data Loss Prevention in Office 365Data Loss Prevention in Office 365
Data Loss Prevention in Office 365
 
Azure Information Protection
Azure Information ProtectionAzure Information Protection
Azure Information Protection
 
Building an Enterprise-Grade Azure Governance Model
Building an Enterprise-Grade Azure Governance ModelBuilding an Enterprise-Grade Azure Governance Model
Building an Enterprise-Grade Azure Governance Model
 
Best Practices in Cloud Security
Best Practices in Cloud SecurityBest Practices in Cloud Security
Best Practices in Cloud Security
 
Understanding Azure AD
Understanding Azure ADUnderstanding Azure AD
Understanding Azure AD
 
Office 365 Security Best Practices
Office 365 Security Best PracticesOffice 365 Security Best Practices
Office 365 Security Best Practices
 
Azure Governance
Azure GovernanceAzure Governance
Azure Governance
 
Securing SharePoint, OneDrive, & Teams with Sensitivity Labels
Securing SharePoint, OneDrive, & Teams with Sensitivity LabelsSecuring SharePoint, OneDrive, & Teams with Sensitivity Labels
Securing SharePoint, OneDrive, & Teams with Sensitivity Labels
 
7 Experts on Implementing Microsoft 365 Defender
7 Experts on Implementing Microsoft 365 Defender7 Experts on Implementing Microsoft 365 Defender
7 Experts on Implementing Microsoft 365 Defender
 
Microsoft Defender and Azure Sentinel
Microsoft Defender and Azure SentinelMicrosoft Defender and Azure Sentinel
Microsoft Defender and Azure Sentinel
 
Azure Security Center- Zero to Hero
Azure Security Center-  Zero to HeroAzure Security Center-  Zero to Hero
Azure Security Center- Zero to Hero
 
Azure governance
Azure governanceAzure governance
Azure governance
 

Similar to Data Loss Prevention and Compliance in Microsoft 365 Safeguarding Your Tenant Account.pdf

Understanding Security and Compliance in Microsoft Teams M365 North 2023
Understanding Security and Compliance in Microsoft Teams M365 North 2023Understanding Security and Compliance in Microsoft Teams M365 North 2023
Understanding Security and Compliance in Microsoft Teams M365 North 2023Chirag Patel
 
March 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarMarch 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarRobert Crane
 
Labelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityLabelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityDrew Madelung
 
SC-900 Capabilities of Microsoft Compliance Solutions
SC-900 Capabilities of Microsoft Compliance SolutionsSC-900 Capabilities of Microsoft Compliance Solutions
SC-900 Capabilities of Microsoft Compliance SolutionsFredBrandonAuthorMCP
 
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022Chirag Patel
 
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Albert Hoitingh
 
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VM
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VMSecuring Team, SharePoint, and OneDrive in Microsoft 365 - M365VM
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VMDrew Madelung
 
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss Prevention
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss PreventionaMS SouthEast Asia 2021 - Microsoft 365 Data Loss Prevention
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss PreventionAlbert Hoitingh
 
Intro to Office 365 Security & Compliance Center
Intro to Office 365 Security & Compliance CenterIntro to Office 365 Security & Compliance Center
Intro to Office 365 Security & Compliance CenterCraig Jahnke
 
Data Loss Prevention in O365
Data Loss Prevention in O365Data Loss Prevention in O365
Data Loss Prevention in O365Don Daubert
 
Ferraz Itp368 Optmizing Information Security
Ferraz Itp368 Optmizing Information SecurityFerraz Itp368 Optmizing Information Security
Ferraz Itp368 Optmizing Information Securitymferraz
 
Emma Aubert | Information Protection
Emma Aubert | Information ProtectionEmma Aubert | Information Protection
Emma Aubert | Information ProtectionMicrosoft Österreich
 
Managing OneDrive for Business - SPSNYC
Managing OneDrive for Business - SPSNYCManaging OneDrive for Business - SPSNYC
Managing OneDrive for Business - SPSNYCDrew Madelung
 
One name unify them all
One name unify them allOne name unify them all
One name unify them allBizTalk360
 
How to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsHow to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsDux Raymond Sy
 
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Nikki Chapple
 
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...Joel Oleson
 
Create a Compliance Strategy for Office 365
Create a Compliance Strategy for Office 365Create a Compliance Strategy for Office 365
Create a Compliance Strategy for Office 365Erica Toelle
 

Similar to Data Loss Prevention and Compliance in Microsoft 365 Safeguarding Your Tenant Account.pdf (20)

Understanding Security and Compliance in Microsoft Teams M365 North 2023
Understanding Security and Compliance in Microsoft Teams M365 North 2023Understanding Security and Compliance in Microsoft Teams M365 North 2023
Understanding Security and Compliance in Microsoft Teams M365 North 2023
 
March 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarMarch 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know Webinar
 
Labelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & SensitivityLabelling in Microsoft 365 - Retention & Sensitivity
Labelling in Microsoft 365 - Retention & Sensitivity
 
SC-900 Capabilities of Microsoft Compliance Solutions
SC-900 Capabilities of Microsoft Compliance SolutionsSC-900 Capabilities of Microsoft Compliance Solutions
SC-900 Capabilities of Microsoft Compliance Solutions
 
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022
Understanding Security and Compliance in Microsoft Teams - Scottish Summit 2022
 
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
Microsoft 365 Security & Compliance User Group - Microsoft Teams compliance
 
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VM
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VMSecuring Team, SharePoint, and OneDrive in Microsoft 365 - M365VM
Securing Team, SharePoint, and OneDrive in Microsoft 365 - M365VM
 
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss Prevention
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss PreventionaMS SouthEast Asia 2021 - Microsoft 365 Data Loss Prevention
aMS SouthEast Asia 2021 - Microsoft 365 Data Loss Prevention
 
Data security and compliancy in Office 365
Data security and compliancy in Office 365Data security and compliancy in Office 365
Data security and compliancy in Office 365
 
Intro to Office 365 Security & Compliance Center
Intro to Office 365 Security & Compliance CenterIntro to Office 365 Security & Compliance Center
Intro to Office 365 Security & Compliance Center
 
Data Loss Prevention in O365
Data Loss Prevention in O365Data Loss Prevention in O365
Data Loss Prevention in O365
 
Ferraz Itp368 Optmizing Information Security
Ferraz Itp368 Optmizing Information SecurityFerraz Itp368 Optmizing Information Security
Ferraz Itp368 Optmizing Information Security
 
Emma Aubert | Information Protection
Emma Aubert | Information ProtectionEmma Aubert | Information Protection
Emma Aubert | Information Protection
 
Managing OneDrive for Business - SPSNYC
Managing OneDrive for Business - SPSNYCManaging OneDrive for Business - SPSNYC
Managing OneDrive for Business - SPSNYC
 
One name unify them all
One name unify them allOne name unify them all
One name unify them all
 
How to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsHow to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft Teams
 
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
 
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...
SharePoint and Office 365 Data Compliance Made Easy: Site Classifications, La...
 
Create a Compliance Strategy for Office 365
Create a Compliance Strategy for Office 365Create a Compliance Strategy for Office 365
Create a Compliance Strategy for Office 365
 
Data Leakage Prevention
Data Leakage PreventionData Leakage Prevention
Data Leakage Prevention
 

Recently uploaded

MENTAL STATUS EXAMINATION format.docx
MENTAL     STATUS EXAMINATION format.docxMENTAL     STATUS EXAMINATION format.docx
MENTAL STATUS EXAMINATION format.docxPoojaSen20
 
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdfSoniaTolstoy
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxmanuelaromero2013
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon AUnboundStockton
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Sapana Sha
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentInMediaRes1
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introductionMaksud Ahmed
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)eniolaolutunde
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppCeline George
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesFatimaKhan178732
 
Employee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxEmployee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxNirmalaLoungPoorunde1
 
Concept of Vouching. B.Com(Hons) /B.Compdf
Concept of Vouching. B.Com(Hons) /B.CompdfConcept of Vouching. B.Com(Hons) /B.Compdf
Concept of Vouching. B.Com(Hons) /B.CompdfUmakantAnnand
 
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17Incoming and Outgoing Shipments in 1 STEP Using Odoo 17
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17Celine George
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfsanyamsingh5019
 
mini mental status format.docx
mini    mental       status     format.docxmini    mental       status     format.docx
mini mental status format.docxPoojaSen20
 
Class 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfClass 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfakmcokerachita
 

Recently uploaded (20)

Staff of Color (SOC) Retention Efforts DDSD
Staff of Color (SOC) Retention Efforts DDSDStaff of Color (SOC) Retention Efforts DDSD
Staff of Color (SOC) Retention Efforts DDSD
 
9953330565 Low Rate Call Girls In Rohini Delhi NCR
9953330565 Low Rate Call Girls In Rohini  Delhi NCR9953330565 Low Rate Call Girls In Rohini  Delhi NCR
9953330565 Low Rate Call Girls In Rohini Delhi NCR
 
MENTAL STATUS EXAMINATION format.docx
MENTAL     STATUS EXAMINATION format.docxMENTAL     STATUS EXAMINATION format.docx
MENTAL STATUS EXAMINATION format.docx
 
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptx
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon A
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media Component
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website App
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and Actinides
 
Employee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxEmployee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptx
 
Concept of Vouching. B.Com(Hons) /B.Compdf
Concept of Vouching. B.Com(Hons) /B.CompdfConcept of Vouching. B.Com(Hons) /B.Compdf
Concept of Vouching. B.Com(Hons) /B.Compdf
 
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17Incoming and Outgoing Shipments in 1 STEP Using Odoo 17
Incoming and Outgoing Shipments in 1 STEP Using Odoo 17
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdf
 
mini mental status format.docx
mini    mental       status     format.docxmini    mental       status     format.docx
mini mental status format.docx
 
Class 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdfClass 11 Legal Studies Ch-1 Concept of State .pdf
Class 11 Legal Studies Ch-1 Concept of State .pdf
 

Data Loss Prevention and Compliance in Microsoft 365 Safeguarding Your Tenant Account.pdf

  • 1. Data Loss Prevention and Compliance in Microsoft 365: Safeguarding Your Tenant Account Presented: June 2023
  • 2. 2 © TechSoup Global. All Rights Reserved. • Use the Chat function to type in your questions and comments. • For Closed Captioning, please click and then "Turn on Live Captioning." Housekeeping
  • 3. 3 © TechSoup Global. All Rights Reserved. Guest Panelist I began my IT career as a database admin in the Marine Corps in 2014. After getting out of the Marines in 2018, I have focused almost entirely on implementing the entire Microsoft 365 E5 security and compliance suite , working for multiple Microsoft Gold partner consulting companies for SMBs and Enterprise clients, as well as an internal position with an SMB. More recently, I have joined Navy Federal Credit Union as a Microsoft Purview Administrator on a contract and have created and am working on growing my own consulting company called Cloudy Security, LLC. I can be found and contacted at: •Email: Mike@cloudy-sec.com •LinkedIn: https://www.linkedin.com/in/mike-miller34/ •Website: https://www.cloudy-sec.com/
  • 4. 4 © TechSoup Global. All Rights Reserved. Today’s Agenda • Introduce Our Guest Panelist • Understanding Data Loss Prevention (DLP_ • Classification & Sensitivity Labels • Policies and Rules • Compliance Requirements & Center • Data Retention, Insider Threats & ‘Leakage’ • Best Practices • Q&A
  • 5. Understanding Microsoft DLP • DLP is a security solution offered by Microsoft that can identify sensitive information and then help prevent unsafe or unauthorized sharing, transfer, or use of that data. DLP has many different locations that you can target, which is based on your license level. • Exchange Online • SharePoint Online • OneDrive for Business • Microsoft Teams Chat and Channel Messages • Devices • 3rd-party apps through Microsoft Defender for Cloud Apps • On-premises File Repositories • Power BI • DLP sets blocking (or auditing) actions on files and messages based on the conditions that you define. Each DLP location has it's own set of conditions and actions specific to that location. • If you select multiple locations, you will only see the options that are available for each location
  • 6. 6 Copyright © TechSoup Global. All Rights Reserved. Sensitivity Labels Overview • What is a sensitivity label? § A sensitivity label is a tag that gets applied to file or email. This tag will stay with the file or email for the entire lifecycle of the file or email. o Labels can also be applied to containers, such as M365 Groups, Microsoft Teams sites, or SharePoint sites. • How do labels get applied to files and emails? § The three primary ways are: o Manual Ø User selects the label will creating or modifying a file or email o Recommended Ø The system will detect predetermined content, based on Sensitive Information Types (SITs) or Trainable Classifiers, and recommend a specific label be applied o Automatic Ø The system will apply a specific label based on predetermined content • Licensing requirements § Manual and requiring a default label: o E3/A3/G3/F3/F1 § Automatic and Recommended labeling: o E5/A5/G5
  • 7. 7 Copyright © TechSoup Global. All Rights Reserved. What can Sensitivity Labels do? • § o Ø Ø Ø o o Ø Ø Ø Ø Ø o § o o o § • § o Ø Ø Ø o § o Ø Ø Ø Ø o Ø Ø Ø o Ø
  • 9. Content Contains Sensitive Information Types Trainable Classifiers § Sample Content § Test § Validate § Publish Out of Box § Credit Card § SSN § License § More Custom § RegEx § Dictionary § Fingerprint § EDM Sensitivity or Retention Labels Cloud DLP (SharePoint/OneDrive) Conditions Content shared internally/externally Document name contains words/phrases Document name contains matches patterns Document property Document size (equal to or greater than) Document created by Document created by member of File Extensions .tsv files PDF files Excel files PowerPoint files Word files .csv files .txt files .rtf files .c files .class files .cpp files .cs files .h files .java files Additional Conditions Actions Block everyone Block only external Block, allow override Conditions matched and user shares the file, you may apply certain actions When actions are taken, you may configure end- user and admin notifications Block “anyone with the link” access Notifications § Policy tips § User or Group email notifications § Incident reports Compliance Admins may investigate policy matches in the Microsoft Purview Admin portal > Data loss prevention > Activity explorer Public Confidential Internal Secret 7 Year Delete 5 Year Delete Document is shared (OD4B Exclusive)
  • 10. 1 0 Conditions Sensitive Information Types Trainable Classifiers § Sample Content § Test § Validate § Publish Out of Box § Credit Card § SSN § License § More Custom § RegEx § Dictionary § Fingerprint § EDM Sensitivity Labels Content not Labeled Word Processing Spreadsheet Presentation Archive Mail File Type File Extensions .tsv files PDF files Excel files PowerPoint files Word files .csv files .txt files .rtf files .c files .class files .cpp files .cs files .h files .java files Copy/Paste USB Drive Network Share Print App Control Cloud Upload Create Item (Audit) Rename Item (Audit) User Activities Notifications § Policy tips § User or Group email notifications § Incident reports When conditions are met and the following activities are performed, you may enable certain actions Endpoint DLP When actions are taken, you may configure end- user and admin notifications Actions Block Action Block, allow override Audit Activity Compliance Admins may investigate policy matches in the Microsoft Purview Admin portal > Data loss prevention > Activity explorer Conditions Public Confidential Internal Secret Update theme
  • 11. 11 Teams Chat/Channel Message DLP Content Contains Sensitive Information Types Trainable Classifiers § Sample Content § Test § Validate § Publish Out of Box § Credit Card § SSN § License § More Conditions Sender is Sender domain is Recipient is Recipient domain is Content shared internally/externally Additional Conditions Actions Block message from sending Block only external Block, allow override Conditions matched and user sends a Teams chat or channel message, you may apply certain actions Notifications § Policy tips § User or Group email notifications § Incident reports Compliance Admins may investigate policy matches in the Microsoft Purview Admin portal > Data loss prevention > Activity explorer Sender Notification Recipient Notification When actions are taken, you may configure end- user and admin notifications Update theme
  • 12. 12 Exchange DLP Trainable Classifiers § Sample Content § Test § Validate § Publish Out of Box § Credit Card § SSN § License § More Custom § RegEx § Dictionary § Fingerprint § EDM Public Confidential Internal Secret Conditions Sensitive Information Types Sensitivity Labels Content shared internally/externally Additional Conditions Sender / Recipient is / is member of distribution group Sender / Recipient domain is Sender IP Address is Sender has overridden policy Content received internally/externally Sender / Recipient address contains words Sender / Recipient address matches patterns Sender / Recipient AD Attribute contains words or phrases Sender / Recipient AD Attribute matches patterns File Extensions .tsv files PDF files Excel files PowerPoint files Word files .csv files .txt files .rtf files .c files .class files .cpp files .cs files .h files .java files Attachments could not be scanned / did not complete scan Attachments is password protected Document name contains words or phrases / matches patterns Document property is Document size equals or is greater than Document content contains words or phrases / matches patterns Subject contains words or phrases / matches patterns Subject or body contains words or phrases / matches patterns Content character set contains words Header contains words or phrases / matches patterns Message size equals or is greater than Message type is Message importance is Conditions matched and the email is sent/received, you can apply the following actions Actions Block everyone Block only external Block, allow override Restrict access or encrypt content Encrypt message (sensitivity label) Additional Actions Set / Remove headers Redirect to specific users Forward for approval to manager / set user Add recipient to the To / Cc / Bcc box Add sender’s manager as recipient Remove OME and rights protection Prepend email subject Add HTML disclaimer Modify subject Deliver message to hosted quarantine Notifications § Policy tips § User or Group email notifications § Incident reports When actions are taken, you may configure end-user and admin notifications Compliance Admins may investigate policy matches in the Microsoft Purview Admin portal > Data loss prevention > Activity explorer Content is not labeled Update theme
  • 13. 13 © TechSoup Global. All Rights Reserved. Questions & Answers
  • 14. 14 Copyright © TechSoup Global. All Rights Reserved. Learn Connect Digital Transformation Forum https://bit.ly/3ASktwF Digital Skills Center Training Courses https://bit.ly/3xV72dp Resources Connect Monthly Virtual Office Hours Save the date! Keep your eye open for our next Office Hours on July 20th – Grant Writing with a Purpose Microsoft Cloud: Getting Started Guide https://bit.ly/3C30n3c Community Get Started
  • 15. 15 Copyright © TechSoup Global. All Rights Reserved. Additional Resources Resources: • Schedule a Free Consultation • Utilization Requirements for Donated Microsoft Cloud Licenses and How to Access the Usage Report • Digital Assessment Tool - analyze the current state of your organization's technology. The tool will provide recommend products, services, and resources to make your systems and processes work better for you in service of your mission. • TechSoup Product Catalog Blogs: • Microsoft Cloud Licenses Pricing Changes • The Right Microsoft 365 and Office 365 for Your Nonprofit • What You Need to Know About Microsoft 365 Nonprofit