Microsoft Purview compliance portal: Insider Risk Management - Discovery of sensitive data sharing to any cloud application or website (inc. GenAI) via network layer
🚨 The Signal: Purview Insider Risk Management can now detect sensitive data shared to any cloud app or website, including GenAI, via network monitoring. This enhances data loss prevention and insider threat detection by integrating with third-party network partners.
The Impact
Security teams are affected by enhanced data exfiltration detection, reducing the risk of sensitive information leakage.
- Security Teams: Reduced risk of sensitive data exfiltration to unapproved cloud services.
- Compliance Officers: Improved ability to demonstrate controls against data leakage.
- Incident Responders: Enhanced visibility into potential insider threats and data sharing incidents.
The Action
- Review existing Insider Risk Management policies for sensitive information types and activities.
- Evaluate integration options with third-party network partners for data capture.
- Configure new Insider Risk Management policies to leverage network-layer detection for cloud applications and GenAI.
- Establish incident response playbooks for alerts generated by this new capability.
- Communicate updated data handling policies to users regarding cloud application and GenAI usage.
Domain: Purview · Impact: high · Workload: Microsoft Purview