Microsoft Copilot (Microsoft 365): New Create module with Word, Excel and PPT templates
🚨 The Signal: Microsoft 365 Copilot now includes a 'Create' module, offering templates for Word, Excel, and PowerPoint. This expands Copilot's content generation capabilities, increasing potential for data exposure if not governed correctly.
The Impact
All users are affected, increasing the risk of sensitive data exposure through AI-generated content if not properly governed.
- End users: Increased risk of generating and sharing sensitive data via Copilot.
- Security teams: New vectors for data leakage and compliance violations.
- Data owners: Potential for uncontrolled proliferation of sensitive information.
- Compliance officers: Need to update policies for AI-generated content.
The Action
- Review and update Microsoft Purview Data Loss Prevention (DLP) policies to include Copilot-generated content.
- Implement sensitivity labels for Copilot-generated documents via Microsoft Purview Information Protection.
- Educate users on responsible AI usage and data handling within Copilot.
- Monitor Copilot usage logs for unusual activity or sensitive data patterns.
- Review Copilot access controls in Microsoft Entra ID to ensure least privilege.
Domain: Agentic-AI · Impact: medium · Workload: M365 Apps