Microsoft Defender for Office 365: Auto-Remediation of Malicious Entity Clusters Identified in Automated Investigation and Response (AIR)

The feature will expand upon the automated investigation and response (AIR) by enabling AIR to automatically remediate malicious entity clusters. AIR currently recommends actions for SecOps to approve or decline and this enhancement will allow customers to enable auto-remediation to allow AIR to act on recommendations and soft delete messages included in a malicious URL or malicious file cluster.

(more…)

Microsoft Defender for Office 365: User Submission Automatic Feedback Response

The user submission automatic feedback response enables organizations to automatically respond to end user submissions of phish based on the verdict from the automated investigation. This feature is configurable and allows organizations to dictate in which threat scenarios they would like end users to receive feedback emails. Once enabled, Microsoft Defender for Office 365 (MDO) will automatically respond to end user submissions based on the investigation verdict and the configured settings.

(more…)

Microsoft Purview compliance portal: Information Protection – Justification text integration on web for Word, Excel, PowerPoint

Capturing justification text and showing this in Activity Explorer as a part of the label downgrade scenario.

(more…)

Microsoft Purview compliance portal: Information Protection – Content type for Teams meetings in Activity Explorer

Adding Teams meeting content type to Activity Explorer.

(more…)

Microsoft Teams: Assign staff and set duration for on-demand Virtual Appointments (Premium)

Scheduling administrators and staff managing on-demand appointments can assign specific
staff members and set appointment duration to handle on-demand services. This ensures that when an on-demand appointment is requested, there is a designated staff member assigned to the appointment and a defined duration for the appointment is set. The designated staff member also receives a notification to attend the on-demand appointment.

(more…)

SharePoint: SharePoint Hub Analytics for US Government Clouds

View, Viewer, dwell time and content level analytics aggregated at a SharePoint Hub level. These features are an enhancement to the existing site and page level analytics in SharePoint.

(more…)

Microsoft Purview compliance portal: Insider Risk Management- Global exclusions

With this update, all exclusion features currently found under intelligent detections will be relocated to a new tab labeled “Global exclusions” within the insider risk settings. All previously added exclusions in intelligent detections will be migrated to this new tab.

The functionality of exclusions remains unchanged. Moreover, admins with appropriate permissions can now add exclusion via defined detection groups, which contain similar entities like domains or file types. This new tab is designed to enhance usability and offers a convenient way to access and manage exclusions.

Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage, and security violations.

Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.

(more…)

Microsoft Viva: Updated post type designs in Viva Engage

The design of the praise, poll, and question post types in Viva Engage are changing to a more streamlined format. Users will retain all the same publishing and engagement features as the previous design. We’ve made this change to put more emphasis on user content and help with the experience across surfaces.

(more…)

Microsoft Purview compliance portal: Information Protection – New fields added to Activity Explorer.

Added Protection Event Type and Protection Type fields in Activity Explorer for sensitivity label applied, sensitivity labels updated, and sensitivity label removed.

(more…)

Azure Active Directory: Cross-tenant manager synchronization

Cross-tenant synchronization will support provisioning a user’s manager across tenants. For existing synchronization configurations that use the default schema (where you haven’t made any customizations to the attribute mappings or scoping rules), the manager will start to provision automatically for new users. For existing synchronization configurations that do not use the default schema, you can add the manager attribute to your attribute mappings.

(more…)


I've been working with Microsoft Technologies over the last ten years, mainly focused on creating collaboration and productivity solutions that drive the adoption of Microsoft Modern Workplace.