Microsoft 365 compliance center: New search for Microsoft 365 Audit

This is a new search for Basic Audit and Advanced Audit. This new search offers increased reliability and efficiency for search jobs. It also allows for search jobs to be completed in the background and saved for later reference.

(more…)

Microsoft 365 compliance center: Endpoint data loss prevention – App groups and granular app restriction policies

This feature enables admins to define endpoint DLP policies to lock specific apps for different activities and enables more granular restrictions for individual apps.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/dlp-configure-endpoint-settings?view=o365-worldwide#restricted-apps-and-app-groups

(more…)

Microsoft 365 compliance center: Endpoint data loss prevention – Classification globalization support (CCJK)

Microsoft Endpoint DLP will support content authored using double-byte character sets (including Simplified Chinese, Traditional Chinese, and Japanese) in service workloads.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/endpoint-dlp-getting-started?view=o365-worldwide

(more…)

Microsoft 365 compliance center: Insider Risk Management – Triage and investigation improvements

Enhancements including historical insights for Exchange Online, and ingestion of triggering events into Activity explorer. Insider Risk Management in Microsoft 365 correlates various signals from the chip to the cloud to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/insider-risk-management-solution-overview?view=o365-worldwide

(more…)

Microsoft 365 compliance center: Insider Risk Management – Triage and investigation improvements

Enhancements including historical insights for Exchange Online, and ingestion of triggering events into Activity explorer. Insider Risk Management in Microsoft 365 correlates various signals from the chip to the cloud to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/insider-risk-management-solution-overview?view=o365-worldwide

(more…)

Microsoft 365 compliance center: In Insider Risk Management – Enhanced support for domains

Insider Risk Management now support enhanced classification of unallowed, allowed, and third-party domains leveraging wildcards. This helps improve classification of detections. Insider Risk Management in Microsoft 365 correlates various signals from the chip to the cloud to identify potential malicious or inadvertent insider risks, such as IP theft, security and policy violations, and more. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/insider-risk-management-solution-overview?view=o365-worldwide

(more…)

Microsoft Information Protection: SIT Feedback Loop for Content explorer and DLP alerts

Admins can provide feedback for sensitive information type (SIT) False Positives via Content explorer and DLP Alerts. This feedback can be provided in a compliant manner and users can see a summary view of the feedback in the SIT overview page. The feedback will be used to make systematic fixes to SITs for improved accuracy.

(more…)

Microsoft 365 compliance center: Communication Compliance -Message details report

This new Communication Compliance report provides a comprehensive summary of all activities and actions that have occurred against a policy, such as date sent, date flagged, reviewed by, message reconciliation, etc. By providing visibility into policy review activity, this feature can help organizations fulfill regulatory compliance obligations and better track the status and progress for unresolved policy violations. Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/communication-compliance?view=o365-worldwide

(more…)

Microsoft 365 compliance center: Communication Compliance -Message details report

This new Communication Compliance report provides a comprehensive summary of all activities and actions that have occurred against a policy, such as date sent, date flagged, reviewed by, message reconciliation, etc. By providing visibility into policy review activity, this feature can help organizations fulfill regulatory compliance obligations and better track the status and progress for unresolved policy violations. Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/communication-compliance?view=o365-worldwide

(more…)

Microsoft 365 compliance center: Communication Compliance – Day Zero insights – Recommended policy actions

Communication Compliance Recommended policy actions helps organizations discover trends that they may not be aware of, like harassment, threats or sharing of sensitive information. Insights for sensitive information types are surfaced automatically through the existing Compliance center data classification service while insights for machine learning classifiers require an organization to have already configured a policy in Communication Compliance. Insights for both sensitive information types and machine learning classifiers are designed to help organizations holistically set up parameters for internal governance by identifying potential areas of risk and determining the type and scope of communication policies to be configured. Recommended policy actions displays the aggregate number of matches per classification type, with none of the insights containing any personally identifiable information. Communication Compliance helps organizations detect explicit code of conduct and regulatory compliance violations, such as harassing or threatening language, sharing of adult content, and inappropriate sharing of sensitive information. Built with privacy by design, usernames are pseudonymized by default, role-based access controls are built in, investigators are explicitly opted in by an admin, and audit logs are in place to help ensure user-level privacy.
More info: https://docs.microsoft.com/en-us/microsoft-365/compliance/communication-compliance?view=o365-worldwide

(more…)


I've been working with Microsoft Technologies over the last ten years, mainly focused on creating collaboration and productivity solutions that drive the adoption of Microsoft Modern Workplace.