Microsoft Purview compliance portal: Endpoint Data Loss Prevention - Endpoint DLP shows full path of target domain
🚨 The Signal: Endpoint DLP now shows the full file path of data exfiltration targets in Activity Explorer, not just the domain name. This enhances incident response and forensic analysis for data loss incidents.
The Impact
Security teams gain better visibility into data exfiltration, reducing investigation time and improving incident response.
- Security Teams: Enhanced forensic detail for data loss incidents.
- Incident Responders: Faster root cause analysis for DLP alerts.
- Compliance Officers: Improved audit trails for data protection policies.
The Action
- Review existing Endpoint DLP policies for scope and effectiveness.
- Familiarize security operations with the enhanced Activity Explorer view.
- Update incident response playbooks to leverage new path details.
Domain: Purview · Impact: low · Workload: Microsoft Purview