(Updated) Unlocking deeper Copilot insights with enhanced Power BI filtering

🚨 The Signal: Viva Insights Power BI reports now allow admins to expose more organizational attributes as filters. This increases data visibility for deeper analysis, but also expands the potential for sensitive data exposure if not managed carefully.

The Impact

Viva Insights and Global administrators are affected, with a security risk of over-exposing sensitive organizational data through Power BI reports.

  • Viva Insights Admins: New configuration options for data filtering, increasing responsibility for data exposure.
  • Users with Power BI access: Gain more granular data insights, but could inadvertently view sensitive information.
  • Security Teams: Must review and validate data exposure policies for Viva Insights Power BI reports.

The Action

  1. Review existing Viva Insights data governance policies for attribute exposure.
  2. Access Viva Insights web app > Admin settings > Attribute filter settings to configure available attributes.
  3. Implement least privilege principles when enabling attributes as filters, especially for custom attributes.
  4. Communicate changes to Power BI report consumers regarding new filter capabilities and data sensitivity.
  5. Regularly audit Power BI report access and attribute filter configurations.

Impact: medium · Workload: Microsoft Purview