Successfully reported this slideshow.
We use your LinkedIn profile and activity data to personalize ads and to show you more relevant ads. You can change your ad preferences anytime.

Azure Information Protection - Taking a Team Approach - SPS Montreal

503 views

Published on

Take a team approach to implementing AIP in your organization. This slide deck walks thru the planning, configuration and some examples of how to use it in the real world.

Published in: Technology
  • Be the first to comment

  • Be the first to like this

Azure Information Protection - Taking a Team Approach - SPS Montreal

  1. 1. SharePoint Saturday Montreal#SPSMontreal SharePoint Saturday Montreal 2018 Le 2 juin 2018 Azure Information Protection Taking a Team Approach From Planning to Adoption Joanne Klein and Charmaine Lee Microsoft MVP and MSP
  2. 2. SharePoint Saturday Montreal#SPSMontreal Gold Bronze Thanks to our sponsors !
  3. 3. Hi! I’m Joanne! @JoanneCKlein joannecklein@nexnovus.com joannecklein.com SharePoint & Office 365 consultant | Speaker | Trainer | Mentor | Saskatchewan SharePoint & Office 365 UG
  4. 4. @charmaine_klee /charmaineklee charmaineklee.com 2nd Year CS Student @ UBC Intern @ Microsoft
  5. 5. 3 2 1 4 Planning Configuration Adoption Demos (recorded)
  6. 6. Why is AIP important?
  7. 7. Your perimeter Company internal
  8. 8. Your perimeter Company internal Mobility Managed Devices
  9. 9. Your perimeter Company internal Mobility Managed Devices External Sharing Secured Data
  10. 10. Your perimeter Company internal Mobility Managed Devices External Sharing Secured Data Other SaaS apps Box, G Suite, AWS, Dropbox…
  11. 11. How can we manage and protect this information? Microsoft Information Protection
  12. 12. Microsoft Information Protection
  13. 13. A Data-Centric Approach Old World Model “Catch everything before it leaks” New World Model “Data is born being classified, labeled & protected”
  14. 14. Azure Information Protection … provides persistent data protection by identifying sensitive data, classifying, labeling and protecting at the time of creation or modification
  15. 15. File is created and labeled in Word
  16. 16. File is created and labeled in Word Collaboration on file happens in SharePoint Online
  17. 17. File is created and labeled in Word Collaboration on file happens in SharePoint Online User opens the file on their mobile device
  18. 18. File is created and labeled in Word Collaboration on file happens in SharePoint Online User opens the file on their mobile device User uploads it to other SaaS app for sharing
  19. 19. IT Administrator s Information Managers Adoption Specialists
  20. 20. What should our labels be? What controls should they have? Should we have a pilot group? Who’s on it? Do we know what the protection controls are for our organization? What kind of Office 365 license do we have?
  21. 21. Classification and Labeling Protection and Use Rights Tracking and Reporting
  22. 22. AIP licensing: https://azure.microsoft.com/en-us/pricing/details/information-protection/
  23. 23. Classification Labeling
  24. 24. Tip 1 Pick standard labels
  25. 25. Resonate with users Not use jargon or acronyms
  26. 26. Non-Business Public General Confidential Highly Confidential Low business impact Medium business impact High business impact
  27. 27. Wide Open Keep it in the Family Lock it down
  28. 28. Tip 2 Create sub-labels
  29. 29. HR Finance Legal “Sensitive data” departments
  30. 30. Risk of internal consumption Need for external consumption Someone has to manage these! Beware of too many choices!
  31. 31. Tip 3 Use scoped policies
  32. 32. Secret Project Board Members Specialized Team
  33. 33. Demo AIP Scoped Policies
  34. 34. Tip 4 Encourage right user behaviour
  35. 35. 1 User-driven 2 3 Recommended Automatic Start here
  36. 36. 1 2 3
  37. 37. Demo AIP Policy Recommendations
  38. 38. 1 Windows Service 2 3 Configures SQL Server DB Define repositories: - Local folders - UNC paths - SP Server URLs 4 Run AIP Scanner to scan files to set label
  39. 39. Tip 5 Protect and Enforce
  40. 40. Classification Labeling Encryption Access Control Policy Enforcement
  41. 41. Word, Excel, PowerPoint Protected PDF Email Other file types Office 2010/2013/2016 AIP Client RMS Sharing app Foxit Reader Nitro PDF Reader **NOT Adobe! Outlook 2010/2013/2016 AIP Client RMS Sharing app
  42. 42. Demo Azure RMS Protection
  43. 43. Classification Labeling Encryption Access Control Policy Enforcement Document Tracking Document Revocation
  44. 44. https://track.azurerms.com
  45. 45. Who? When? Where? Revoke Exclude
  46. 46. Demo Azure Document Tracking
  47. 47. Classification Labeling Encryption Access Control Policy Enforcement Document Tracking Document Revocation
  48. 48. Don’t forget about Training & Adoption! Download the ‘AIP End User Adoption Guide’ docs.microsoft.com/en-us/information-protection/get-started/scenario-sharepoint Itallcomesdowntothis…
  49. 49. Classification Wizard Labeling 101 Training Events Ask the AIP Bot Why is data protection important?
  50. 50. Don’t try to solve it all (0 to 100)Don’t Start with classificationStart Apply protection/controls for small use- cases Next Educate users in your org!Do
  51. 51. @JoanneCKlein joannecklein.com @charmaine_klee charmaineklee.com

×