Episode 107: Secure by default and Copilot Overshare Blueprints
Jan 6, 2025
auto_awesome
Maxime Bombardier, a data security expert aiding clients in deploying Purview solutions, discusses essential topics. He delves into the significance of encryption and the critical need for user training. The conversation also covers the oversharing blueprint for Microsoft 365 Copilot, emphasizing a 'secure by default' strategy to protect sensitive information. Maxime highlights the integration challenges with Purview Blueprints and the importance of documentation for effective data governance, promoting best practices to enhance organizational security.
The 'secure by default' initiative encourages organizations to implement default security measures for new data to improve protection practices.
The oversharing blueprint provides guidelines for safely deploying Microsoft 365 Co-Pilot while minimizing risks of sharing sensitive information.
Deep dives
Introduction to Purview Blueprints
Purview Blueprints aim to provide a structured approach to utilizing Microsoft's Purview solutions for data security. These blueprints are designed to address various integration and deployment challenges that organizations face with data loss prevention and insider risk management. By offering documentation and best practices, the blueprints serve to clarify how to effectively implement multiple Purview solutions together, helping customers streamline their deployment journey. The initiative seeks to empower organizations to start their security infrastructures with a solid foundation.
The Need for Secure by Default
The concept of 'secure by default' redefines how organizations think about data protection, emphasizing the necessity of implementing default security measures for new data. This approach encourages organizations to presume that all documents created are confidential and protected unless explicitly labeled otherwise. By utilizing tools such as data loss prevention (DLP) policies and encryption, organizations can train users on the importance of secure data handling while minimizing the risk of oversharing. The initiative seeks to empower users by providing clear security frameworks that enhance both protection and collaboration within teams.
Addressing Oversharing Concerns
The oversharing blueprint was developed in response to customers' apprehensions about deploying tools like Microsoft 365 Co-Pilot without adequate security checks. This blueprint offers specific guidelines to help organizations minimize risks associated with sharing sensitive information, including setting default sharing permissions and utilizing sensitivity labels to regulate data access. By focusing on best practices for oversharing, this blueprint aims to create an environment where organizations can leverage AI applications confidently while ensuring that security is prioritized. It integrates multiple Microsoft products to present a coherent strategy for managing sensitive information across the organization.
Engagement and Implementation
Organizations can engage with the Purview Blueprints by first reviewing the blueprint diagrams that outline the main challenges and solutions for their data security needs. Following the diagrams, detailed slides prescribe actionable steps tailored to different customer profiles, like E3 and E5, facilitating precise guidance based on tiered subscription levels. Additionally, the available resources on Microsoft Learn provide comprehensive instructions on executing the outlined activities effectively. This strategic engagement not only aids in the understanding of Purview capabilities but also assists organizations in rethinking their naming conventions and approaches to data security across multiple platforms.
In this episode Michael, Sarah and Mark talk to Maxime Bombardier and Emily Blundo about the Secure by default and Copilot overshare blueprints.
We also cover news about Always Encrypted Assessment in SQL Server Management Studio, MVP Summit, mapping Entra to the Open Group standard for Adaptive Access, and various CISO Workshop topics!