Microsoft Teams: Facilitator can help manage tasks and create documents
🚨 The Signal: Copilot's 'Facilitator' agent in Teams meetings can now create tasks and draft documents based on discussions. This introduces new data handling and potential exposure risks for sensitive information processed by AI.
The Impact
All users are affected, with a high risk of sensitive data exposure if AI interactions are not properly governed.
- End users: Risk of inadvertently exposing sensitive data to AI if not properly trained.
- Security team: Increased surface area for data leakage and compliance violations via AI-generated content.
- Admin: New configuration requirements for Copilot data handling and access controls.
- Legal/Compliance: Need to review and update policies for AI-generated content and data retention.
The Action
- Review and update Microsoft Purview Data Loss Prevention (DLP) policies to include Copilot interactions and AI-generated content.
- Configure Copilot data residency and interaction logging settings in the Microsoft 365 admin center under 'Settings > Org settings > Microsoft Copilot'.
- Implement sensitivity labels for documents drafted by Copilot to ensure proper classification and protection.
- Develop and deliver user training on responsible AI usage, data sensitivity, and appropriate interaction with Copilot Facilitator.
- Review audit logs for Copilot activities to monitor data access and content generation patterns.
Domain: Agentic-AI · Impact: high · Workload: Teams