Microsoft Teams: Copilot in Teams can generate an audio overview of your meetings
🚨 The Signal: Copilot in Teams can now generate audio summaries of transcribed meetings, allowing users to customise playback. This introduces new vectors for sensitive information exposure if not properly governed, as meeting content can be easily consumed outside of traditional text formats.
The Impact
All users are affected, with a moderate risk of sensitive information exposure through new audio formats.
- End users: Risk of inadvertently sharing sensitive meeting audio.
- Security teams: New data format requires DLP policy review.
- Compliance teams: Potential for non-compliance with data handling policies.
- Administrators: Need to understand and manage Copilot access to meeting data.
The Action
- Review and update Microsoft Purview DLP policies to include audio content generated by Copilot in Teams.
- Educate users on responsible use of Copilot's audio summary feature, especially concerning sensitive meetings.
- Verify Copilot access controls in Teams Admin Center to ensure only authorised users can leverage this feature.
- Assess existing eDiscovery processes for their ability to index and retrieve Copilot-generated audio summaries.
- Consult the ASD ISM for guidance on handling sensitive information in new media formats.
Domain: Agentic-AI · Impact: medium · Workload: Teams