Microsoft Purview compliance portal: Information Protection - On demand classification for files on Windows devices

🚨 The Signal: Purview now allows on-demand scanning of Windows device files for sensitive data. This enhances data discovery and helps meet regulatory compliance, improving data security posture by identifying and protecting sensitive information.

The Impact

Security teams and compliance officers are affected, gaining better visibility into sensitive data on endpoints, reducing data exposure risk.

  • Security Teams: Improved visibility of sensitive data on endpoints, reducing data loss risk.
  • Compliance Officers: Enhanced ability to meet regulatory data discovery requirements.
  • Data Owners: Better understanding of where sensitive data resides, enabling informed protection.
  • Incident Responders: Faster identification of sensitive data during breach investigations.

The Action

  1. Navigate to Microsoft Purview compliance portal > Information Protection > Data Scanners.
  2. Create a new 'On-demand scan' policy targeting Windows devices.
  3. Define sensitive information types and conditions for the scan.
  4. Configure reporting and alerting for scan results.
  5. Review scan reports to identify and remediate sensitive data exposures.

Domain: Purview · Impact: high · Workload: Microsoft Purview