SlideShare a Scribd company logo
1 of 38
Nikki Chapple
Principal Cloud Architect
nikkichapple
@chapplenikki
www.nikkichapple.com
All Things M365 Compliance
Agenda
• The risks of not addressing data security and governance as part of
your Microsoft 365 Copilot transformation
• How to configure Microsoft 365 for “just enough access” to safeguard
your sensitive data
• How to improve data governance to deliver more accurate and
relevant recommendations
Big Data - A New Era
4
Essentials for Copilot success
Nominate and
activate your
Copilot executive
sponsors, in
partnership with
your AI Council
Define initial high
value scenarios
and target a
critical mass of
users for rapid
value
Define your
path to secure
your data for
compliance
and peace of
mind
Copilot for Microsoft 365 implementation
Copilot
implementation
Sponsor
Scenarios
Security
Copilot essentials
checklist
User Enablement
Prepare organization and employees for the AI
transformation journey
Workstreams support each other for maximum value and ROI
Technical Readiness
Address technical deployment and optimization,
including governance, security, compliance, and
management
Leadership journey
1
6
2
3
5
3
4
Data flow ( = all requests are encrypted via HTTPS)
User prompts from Microsoft 365 Apps are sent to Copilot
Copilot accesses Graph and Semantic Index for pre-processing
Copilot sends modified prompt to Large Language Model (LLM)
Copilot receives LLM response
Copilot accesses Graph and Semantic Index for post-processing
Copilot sends the response, and app command back to Microsoft 365 Apps
1
2
3
4
5
6
Microsoft 365 Trust Boundary
Customer’s Microsoft 365 Tenant
Semantic
Index
Azure
OpenAI
RAI
Azure Open AI
instance is
maintained by
Microsoft. Open
AI has no access
to the data or the
model.
RAI is performed
on input prompt
and output results
Customer data is
not stored or used
to train the model
Improve your data quality with Data Lifecycle
Management
8
• Restrict access
• Delete
redundant,
obsolete, or
trivial (ROT) data
• Access
permissions
• Sharing links
• Naming
conventions
• Metadata
Create
Store
and Use
Archive
Delete
Technical considerations for compliance
and security of deployment
Copilot for Microsoft 365 basic architecture
6
2
3
5
3
4
Microsoft 365 Service
Boundary
Customer Microsoft 365 Tenant
Semantic
Index
Azure
OpenAI
RAI
Azure OpenAI
instance is
maintained by
Microsoft. OpenAI
has no access to the
data or the model.
RAI is performed on
input prompt and
output results
Prompts, responses, and data
accessed through Microsoft
Graph aren't used to train
foundation models
1
Data flow (lock) = all requests are encrypted via HTTPS and wss://)
1 User prompts from Microsoft 365 Apps are sent to Copilot
2 Copilot accesses Graph and Semantic Index for pre-processing
3 Copilot sends modified prompt to Large Language Model
4 Copilot receives LLM response
5 Copilot accesses Graph and Semantic Index for post-processing
6 Copilot sends the response, and app command back to Microsoft 365 Apps
Microsoft’s approach to privacy
You control
your data
You know
where your
data is located
We secure
your data at rest
and in transit
We defend
your data
Common questions
we hear from
customers
How do we know our data is secure?
When will we be able to audit Copilot usage?
What can I do to avoid overexposing our data?
Where is my data processed?
Copilot for Microsoft 365
Built on Microsoft’s comprehensive approach
Security Compliance Privacy Responsible AI
1. Understand
your current
risks and data
security
readiness
Most data stored outside Microsoft 365
and users work in email
3rd Party data
storage
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
SharePoint
Your
OneDrive
Others
OneDrives
Use of OneDrive increases but emailing files
not sharing files - no adoption or training
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Your
OneDrive
SharePoint
3rd Party data
storage
Your
OneDrive
Others
OneDrives
Pioneers create ungoverned Teams & Sites
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Your
OneDrive
Others
OneDrives
SharePoint
3rd Party data
storage
3rd Party
data
storage
We create public Teams with default configuration
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Others
OneDrives
Your
OneDrive
3rd Party
data
storage
SPO
There is ungoverned file sharing
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Others
OneDrives
Your
OneDrive
3rd party data is migrated into Microsoft 365
- increasing sprawl
3rd
party
Your
OneDrive
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Govern Access - Admins added as owner of all
groups, Teams & sites by default
SPO
Your
OneDrive
Ungoverned - access Ungoverned – no access
Location hidden from scope –
Excluded
Govern groups, Teams and sites
Data Lifecycle management
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Copilot for Microsoft 365 Optimization Assessment
Data Security readiness
score
License profile Deployment path
0% - 66% Office 365 E3, Microsoft 365 Business
Standard/Premium, or higher
Core
67% - 100% Microsoft 365 E5 Best-in-Class
Determine your deployment path
Solution Assessment Program (microsoft.com)
2. Provide
“Just
enough
access”
5
If used,
disable
Restricted
SharePoint
Search
Apply appropriate Data Security controls
Get started quickly and continue to optimize along the way
*Restricted SharePoint Search will limit Copilot for Microsoft 365 experiences and organization-wide search. It is a temporary option which gives you time to address oversharing concerns while getting started on your Copilot journey.
4
OPTIMIZE
FURTHER
AS NEEDED
Core
Restrict data oversharing and data leaks with
manual labeling and policies
Required licenses:
Office 365 E3, Microsoft 365 Business
Standard/Premium, or higher
Best-In-Class
Prevent data oversharing, data leaks, and detect
non-compliant usage at scale with auto labeling and
policies
Required licenses:
Microsoft 365 E5; and
SPP-SharePoint Advanced Management
YES
3
Deploy Copilot
for Microsoft 365
2b
Enable
Restricted
SharePoint
Search*
NO
2a
Ready to
deploy?
Get started
Copilot for
Microsoft 365
Optimization
Assessment
Determine path
(26 questions; 30 minutes)
1
SPO
1. Temporary measure - Restricted SharePoint Search
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Add up to 100 sites
Frequently visited
sites
Your OneDrive
Shared files with you
& you have accessed
This disables
organization-wide search
No impact on Purview
e.g. DLP
2. User adoption so users know they can
revoke access to their shared OneDrive files
Your
OneDrive
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Relies on user
adoption
SPO
3. Convert Public workspaces to Private
workspaces
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
All users in the
tenant can access
content in Public
Groups
Use Container
sensitivity labels to
restrict Public Teams
being created
Identify Viva
Engage/ Teams that
need to be Public e.g All
staff or social
SPO
4. Regularly review workspace membership
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Manual reviews
Dynamic groups
(Entra ID P1)
Entra ID
Groups/Teams/Viva
Engage Access
Reviews (Entra ID P2
licence)
SAM reviews for Sites
SPO
5. Implement workspace provisioning controls
and sensitivity labels
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Container
sensitivity labels to
control access
permissions
Build or Buy e.g.
Orchestry
6. Govern Teams - Use private/shared
channels to restrict access
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
SPO
Your
OneDrive
Control who can
create
Shared channel
bi-directional config
SPO
7. Restrict who can share files and folders and
sharing links
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Use container
labels (feature
enabled via
PowerShell)
SPO
8. Govern Site Access - Block site access to non-
members
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
SharePoint
Advanced
Management
licenses $3 PUPM
for all users
9. Govern Content - Use DLP and or encrypted
sensitivity labels to restrict access
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Teams
SPO
Automated
labelling & default
label on Document
Library requires E5
IP&G licencing for all
users
SPO
10. Govern Content - Retention policies/labels
to keep what you need and delete the rest
Others
OneDrive
Teams
Teams
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Automated
requires E5 IP&G
licencing for all
users
SPO Archive
SPO
11. Govern Content - Externally archive
inactive content
Others
OneDrive
Ungoverned - access
Ungoverned – no
access
Governed location –
No access
Governed location –
have access
Your
OneDrive
Microsoft now
has a SharePoint
archive service
Summary
User adoption
Container permissions
Review container membership
Protect content
Govern content lifecycle

More Related Content

Similar to Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Data security and governance

Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...Christian Buckley
 
Data Loss Prevention in O365
Data Loss Prevention in O365Data Loss Prevention in O365
Data Loss Prevention in O365Don Daubert
 
March 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarMarch 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarRobert Crane
 
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore
 
Microsoft Information Protection: Your Security and Compliance Framework
Microsoft Information Protection: Your Security and Compliance FrameworkMicrosoft Information Protection: Your Security and Compliance Framework
Microsoft Information Protection: Your Security and Compliance FrameworkAlistair Pugin
 
Microsoft Teams in Education - governance & adoption
Microsoft Teams in Education - governance & adoptionMicrosoft Teams in Education - governance & adoption
Microsoft Teams in Education - governance & adoptionLoryan Strant
 
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptx
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptxTeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptx
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptxJasper Oosterveld
 
Understanding Office 365 Groups: Ask The Experts
Understanding Office 365 Groups: Ask The ExpertsUnderstanding Office 365 Groups: Ask The Experts
Understanding Office 365 Groups: Ask The ExpertsDux Raymond Sy
 
How to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsHow to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsDux Raymond Sy
 
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...zoheirop
 
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...Jasper Oosterveld
 
Governance in SharePoint Premium:What's in the box?
Governance in SharePoint Premium:What's in the box?Governance in SharePoint Premium:What's in the box?
Governance in SharePoint Premium:What's in the box?Juan Carlos Gonzalez
 
December 2019 Microsoft 365 Need to Know Webinar
December 2019 Microsoft 365 Need to Know WebinarDecember 2019 Microsoft 365 Need to Know Webinar
December 2019 Microsoft 365 Need to Know WebinarRobert Crane
 
Viva Security and Privacy CollabDays Bletchley Sept 23.pdf
Viva Security and Privacy CollabDays Bletchley Sept 23.pdfViva Security and Privacy CollabDays Bletchley Sept 23.pdf
Viva Security and Privacy CollabDays Bletchley Sept 23.pdfNikki Chapple
 
Securing SharePoint & OneDrive in Office 365
Securing SharePoint & OneDrive in Office 365Securing SharePoint & OneDrive in Office 365
Securing SharePoint & OneDrive in Office 365Drew Madelung
 
Microsoft Teams Governance and Security Best Practices - Joel Oleson
Microsoft Teams Governance and Security Best Practices - Joel OlesonMicrosoft Teams Governance and Security Best Practices - Joel Oleson
Microsoft Teams Governance and Security Best Practices - Joel OlesonJoel Oleson
 
When Your CISO Says No - Security & Compliance in Office 365
When Your CISO Says No - Security & Compliance in Office 365When Your CISO Says No - Security & Compliance in Office 365
When Your CISO Says No - Security & Compliance in Office 365Ricardo Wilkins
 
One name unify them all
One name unify them allOne name unify them all
One name unify them allBizTalk360
 
Microsoft Security Advice ISSA Slides.pptx
Microsoft Security Advice ISSA Slides.pptxMicrosoft Security Advice ISSA Slides.pptx
Microsoft Security Advice ISSA Slides.pptxMike Brannon
 
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018Karuana Gatimu
 

Similar to Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Data security and governance (20)

Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
Security, Administration & Governance for SharePoint On-Prem, Online, & Every...
 
Data Loss Prevention in O365
Data Loss Prevention in O365Data Loss Prevention in O365
Data Loss Prevention in O365
 
March 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know WebinarMarch 2023 CIAOPS Need to Know Webinar
March 2023 CIAOPS Need to Know Webinar
 
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
Rencore Webinar: Understanding EU GDPR from an Office 365 perspective with Pa...
 
Microsoft Information Protection: Your Security and Compliance Framework
Microsoft Information Protection: Your Security and Compliance FrameworkMicrosoft Information Protection: Your Security and Compliance Framework
Microsoft Information Protection: Your Security and Compliance Framework
 
Microsoft Teams in Education - governance & adoption
Microsoft Teams in Education - governance & adoptionMicrosoft Teams in Education - governance & adoption
Microsoft Teams in Education - governance & adoption
 
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptx
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptxTeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptx
TeamsNation 2022 - Governance for Microsoft Teams - A to Z.pptx
 
Understanding Office 365 Groups: Ask The Experts
Understanding Office 365 Groups: Ask The ExpertsUnderstanding Office 365 Groups: Ask The Experts
Understanding Office 365 Groups: Ask The Experts
 
How to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft TeamsHow to Get Your Organizations To Start Using Microsoft Teams
How to Get Your Organizations To Start Using Microsoft Teams
 
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...
espc2023-protectandgovernyoursensitivedatawithmicrosoftpurviewinmicrosoftteam...
 
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...
ESPC 2023 - Protect and Govern your Sensitive Data with Microsoft Purview in ...
 
Governance in SharePoint Premium:What's in the box?
Governance in SharePoint Premium:What's in the box?Governance in SharePoint Premium:What's in the box?
Governance in SharePoint Premium:What's in the box?
 
December 2019 Microsoft 365 Need to Know Webinar
December 2019 Microsoft 365 Need to Know WebinarDecember 2019 Microsoft 365 Need to Know Webinar
December 2019 Microsoft 365 Need to Know Webinar
 
Viva Security and Privacy CollabDays Bletchley Sept 23.pdf
Viva Security and Privacy CollabDays Bletchley Sept 23.pdfViva Security and Privacy CollabDays Bletchley Sept 23.pdf
Viva Security and Privacy CollabDays Bletchley Sept 23.pdf
 
Securing SharePoint & OneDrive in Office 365
Securing SharePoint & OneDrive in Office 365Securing SharePoint & OneDrive in Office 365
Securing SharePoint & OneDrive in Office 365
 
Microsoft Teams Governance and Security Best Practices - Joel Oleson
Microsoft Teams Governance and Security Best Practices - Joel OlesonMicrosoft Teams Governance and Security Best Practices - Joel Oleson
Microsoft Teams Governance and Security Best Practices - Joel Oleson
 
When Your CISO Says No - Security & Compliance in Office 365
When Your CISO Says No - Security & Compliance in Office 365When Your CISO Says No - Security & Compliance in Office 365
When Your CISO Says No - Security & Compliance in Office 365
 
One name unify them all
One name unify them allOne name unify them all
One name unify them all
 
Microsoft Security Advice ISSA Slides.pptx
Microsoft Security Advice ISSA Slides.pptxMicrosoft Security Advice ISSA Slides.pptx
Microsoft Security Advice ISSA Slides.pptx
 
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018
Microsoft Teams and SharePoint: Better Together SPSLA Aug 2018
 

More from Nikki Chapple

Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Nikki Chapple
 
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023Nikki Chapple
 
Demystifying security and compliance in Viva | European Collaboration Summit ...
Demystifying security and compliance in Viva | European Collaboration Summit ...Demystifying security and compliance in Viva | European Collaboration Summit ...
Demystifying security and compliance in Viva | European Collaboration Summit ...Nikki Chapple
 
Real World Governance Risk and Compliance | European Collaboration Summit 2023
Real World Governance Risk and Compliance | European Collaboration Summit 2023Real World Governance Risk and Compliance | European Collaboration Summit 2023
Real World Governance Risk and Compliance | European Collaboration Summit 2023Nikki Chapple
 
Dont let governance risk and compliance be a roll of the device | Modern Wor...
 Dont let governance risk and compliance be a roll of the device | Modern Wor... Dont let governance risk and compliance be a roll of the device | Modern Wor...
Dont let governance risk and compliance be a roll of the device | Modern Wor...Nikki Chapple
 
Dont let governance risk and compliance be a roll of the dice | ESPC22
Dont let governance risk and compliance be a roll of the dice |  ESPC22 Dont let governance risk and compliance be a roll of the dice |  ESPC22
Dont let governance risk and compliance be a roll of the dice | ESPC22 Nikki Chapple
 
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Nikki Chapple
 
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl M365C...
 Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl  M365C... Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl  M365C...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl M365C...Nikki Chapple
 
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022Nikki Chapple
 
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...Nikki Chapple
 
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...Nikki Chapple
 
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...Nikki Chapple
 
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...Nikki Chapple
 
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...Nikki Chapple
 
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...Nikki Chapple
 
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...Nikki Chapple
 
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...Nikki Chapple
 
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022Nikki Chapple
 
Teams10X - Using Power Automate to Manage Teams evergreen change - Sep 2022
Teams10X -  Using Power Automate to Manage Teams evergreen change - Sep 2022Teams10X -  Using Power Automate to Manage Teams evergreen change - Sep 2022
Teams10X - Using Power Automate to Manage Teams evergreen change - Sep 2022Nikki Chapple
 

More from Nikki Chapple (19)

Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
 
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023
Commsverse 2023 Demystifying security and privacy in Viva | Commverse 2023
 
Demystifying security and compliance in Viva | European Collaboration Summit ...
Demystifying security and compliance in Viva | European Collaboration Summit ...Demystifying security and compliance in Viva | European Collaboration Summit ...
Demystifying security and compliance in Viva | European Collaboration Summit ...
 
Real World Governance Risk and Compliance | European Collaboration Summit 2023
Real World Governance Risk and Compliance | European Collaboration Summit 2023Real World Governance Risk and Compliance | European Collaboration Summit 2023
Real World Governance Risk and Compliance | European Collaboration Summit 2023
 
Dont let governance risk and compliance be a roll of the device | Modern Wor...
 Dont let governance risk and compliance be a roll of the device | Modern Wor... Dont let governance risk and compliance be a roll of the device | Modern Wor...
Dont let governance risk and compliance be a roll of the device | Modern Wor...
 
Dont let governance risk and compliance be a roll of the dice | ESPC22
Dont let governance risk and compliance be a roll of the dice |  ESPC22 Dont let governance risk and compliance be a roll of the dice |  ESPC22
Dont let governance risk and compliance be a roll of the dice | ESPC22
 
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...Microsoft Viva governance and compliance implications | Viva Explorers Commun...
Microsoft Viva governance and compliance implications | Viva Explorers Commun...
 
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl M365C...
 Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl  M365C... Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl  M365C...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl M365C...
 
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022
Governance, Risk and Compliance and you | CollabDays Bletchley Park 2022
 
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...
Build a Teams creation workflow using Power Automate | ESPC 22 Microsoft Team...
 
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | MN Mi...
 
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...
Microsoft 365 Governance Risk and Compliance Maturity model | MM4M365 practit...
 
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...
Build a Teams creation workflow using Power Automate | M365 Virtual Marathon ...
 
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...
Implementing Microsoft Teams Lifecycle Governance to Stop Team Sprawl | Virtu...
 
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...
Implementing Microsoft Teams lifecycle governance to stop Team sprawl | Teams...
 
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...
Using Power Automate to manage Microsoft 365 evergreen change | MN365 - April...
 
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...
Canadian Cloud summit - Build a Teams creation workflow using Power Automate ...
 
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022
Commsverse 2022 - Why you need to manage Microsoft Teams sprawl - Jun 2022
 
Teams10X - Using Power Automate to Manage Teams evergreen change - Sep 2022
Teams10X -  Using Power Automate to Manage Teams evergreen change - Sep 2022Teams10X -  Using Power Automate to Manage Teams evergreen change - Sep 2022
Teams10X - Using Power Automate to Manage Teams evergreen change - Sep 2022
 

Recently uploaded

FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhi
FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | DelhiFULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhi
FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhisoniya singh
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure servicePooja Nehwal
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersEnhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersThousandEyes
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Paola De la Torre
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024Results
 

Recently uploaded (20)

FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhi
FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | DelhiFULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhi
FULL ENJOY 🔝 8264348440 🔝 Call Girls in Diplomatic Enclave | Delhi
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersEnhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024
 

Microsoft 365 Copilot: How to boost your productivity with AI – Part two: Data security and governance

  • 1.
  • 2. Nikki Chapple Principal Cloud Architect nikkichapple @chapplenikki www.nikkichapple.com All Things M365 Compliance
  • 3. Agenda • The risks of not addressing data security and governance as part of your Microsoft 365 Copilot transformation • How to configure Microsoft 365 for “just enough access” to safeguard your sensitive data • How to improve data governance to deliver more accurate and relevant recommendations
  • 4. Big Data - A New Era 4
  • 5. Essentials for Copilot success Nominate and activate your Copilot executive sponsors, in partnership with your AI Council Define initial high value scenarios and target a critical mass of users for rapid value Define your path to secure your data for compliance and peace of mind
  • 6. Copilot for Microsoft 365 implementation Copilot implementation Sponsor Scenarios Security Copilot essentials checklist User Enablement Prepare organization and employees for the AI transformation journey Workstreams support each other for maximum value and ROI Technical Readiness Address technical deployment and optimization, including governance, security, compliance, and management Leadership journey
  • 7. 1 6 2 3 5 3 4 Data flow ( = all requests are encrypted via HTTPS) User prompts from Microsoft 365 Apps are sent to Copilot Copilot accesses Graph and Semantic Index for pre-processing Copilot sends modified prompt to Large Language Model (LLM) Copilot receives LLM response Copilot accesses Graph and Semantic Index for post-processing Copilot sends the response, and app command back to Microsoft 365 Apps 1 2 3 4 5 6 Microsoft 365 Trust Boundary Customer’s Microsoft 365 Tenant Semantic Index Azure OpenAI RAI Azure Open AI instance is maintained by Microsoft. Open AI has no access to the data or the model. RAI is performed on input prompt and output results Customer data is not stored or used to train the model
  • 8. Improve your data quality with Data Lifecycle Management 8 • Restrict access • Delete redundant, obsolete, or trivial (ROT) data • Access permissions • Sharing links • Naming conventions • Metadata Create Store and Use Archive Delete
  • 9. Technical considerations for compliance and security of deployment
  • 10. Copilot for Microsoft 365 basic architecture 6 2 3 5 3 4 Microsoft 365 Service Boundary Customer Microsoft 365 Tenant Semantic Index Azure OpenAI RAI Azure OpenAI instance is maintained by Microsoft. OpenAI has no access to the data or the model. RAI is performed on input prompt and output results Prompts, responses, and data accessed through Microsoft Graph aren't used to train foundation models 1 Data flow (lock) = all requests are encrypted via HTTPS and wss://) 1 User prompts from Microsoft 365 Apps are sent to Copilot 2 Copilot accesses Graph and Semantic Index for pre-processing 3 Copilot sends modified prompt to Large Language Model 4 Copilot receives LLM response 5 Copilot accesses Graph and Semantic Index for post-processing 6 Copilot sends the response, and app command back to Microsoft 365 Apps
  • 11. Microsoft’s approach to privacy You control your data You know where your data is located We secure your data at rest and in transit We defend your data
  • 12. Common questions we hear from customers How do we know our data is secure? When will we be able to audit Copilot usage? What can I do to avoid overexposing our data? Where is my data processed?
  • 13. Copilot for Microsoft 365 Built on Microsoft’s comprehensive approach Security Compliance Privacy Responsible AI
  • 14.
  • 15. 1. Understand your current risks and data security readiness
  • 16. Most data stored outside Microsoft 365 and users work in email 3rd Party data storage Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded SharePoint Your OneDrive Others OneDrives
  • 17. Use of OneDrive increases but emailing files not sharing files - no adoption or training Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded Your OneDrive SharePoint 3rd Party data storage Your OneDrive Others OneDrives
  • 18. Pioneers create ungoverned Teams & Sites Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded Your OneDrive Others OneDrives SharePoint 3rd Party data storage
  • 19. 3rd Party data storage We create public Teams with default configuration Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded Others OneDrives Your OneDrive
  • 20. 3rd Party data storage SPO There is ungoverned file sharing Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded Others OneDrives Your OneDrive
  • 21. 3rd party data is migrated into Microsoft 365 - increasing sprawl 3rd party Your OneDrive Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded
  • 22. Govern Access - Admins added as owner of all groups, Teams & sites by default SPO Your OneDrive Ungoverned - access Ungoverned – no access Location hidden from scope – Excluded
  • 23. Govern groups, Teams and sites Data Lifecycle management Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive
  • 24. Copilot for Microsoft 365 Optimization Assessment Data Security readiness score License profile Deployment path 0% - 66% Office 365 E3, Microsoft 365 Business Standard/Premium, or higher Core 67% - 100% Microsoft 365 E5 Best-in-Class Determine your deployment path Solution Assessment Program (microsoft.com)
  • 26. 5 If used, disable Restricted SharePoint Search Apply appropriate Data Security controls Get started quickly and continue to optimize along the way *Restricted SharePoint Search will limit Copilot for Microsoft 365 experiences and organization-wide search. It is a temporary option which gives you time to address oversharing concerns while getting started on your Copilot journey. 4 OPTIMIZE FURTHER AS NEEDED Core Restrict data oversharing and data leaks with manual labeling and policies Required licenses: Office 365 E3, Microsoft 365 Business Standard/Premium, or higher Best-In-Class Prevent data oversharing, data leaks, and detect non-compliant usage at scale with auto labeling and policies Required licenses: Microsoft 365 E5; and SPP-SharePoint Advanced Management YES 3 Deploy Copilot for Microsoft 365 2b Enable Restricted SharePoint Search* NO 2a Ready to deploy? Get started Copilot for Microsoft 365 Optimization Assessment Determine path (26 questions; 30 minutes) 1
  • 27. SPO 1. Temporary measure - Restricted SharePoint Search Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive Add up to 100 sites Frequently visited sites Your OneDrive Shared files with you & you have accessed This disables organization-wide search No impact on Purview e.g. DLP
  • 28. 2. User adoption so users know they can revoke access to their shared OneDrive files Your OneDrive Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Relies on user adoption
  • 29. SPO 3. Convert Public workspaces to Private workspaces Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive All users in the tenant can access content in Public Groups Use Container sensitivity labels to restrict Public Teams being created Identify Viva Engage/ Teams that need to be Public e.g All staff or social
  • 30. SPO 4. Regularly review workspace membership Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive Manual reviews Dynamic groups (Entra ID P1) Entra ID Groups/Teams/Viva Engage Access Reviews (Entra ID P2 licence) SAM reviews for Sites
  • 31. SPO 5. Implement workspace provisioning controls and sensitivity labels Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive Container sensitivity labels to control access permissions Build or Buy e.g. Orchestry
  • 32. 6. Govern Teams - Use private/shared channels to restrict access Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access SPO Your OneDrive Control who can create Shared channel bi-directional config
  • 33. SPO 7. Restrict who can share files and folders and sharing links Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive Use container labels (feature enabled via PowerShell)
  • 34. SPO 8. Govern Site Access - Block site access to non- members Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive SharePoint Advanced Management licenses $3 PUPM for all users
  • 35. 9. Govern Content - Use DLP and or encrypted sensitivity labels to restrict access Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Teams SPO Automated labelling & default label on Document Library requires E5 IP&G licencing for all users
  • 36. SPO 10. Govern Content - Retention policies/labels to keep what you need and delete the rest Others OneDrive Teams Teams Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Automated requires E5 IP&G licencing for all users
  • 37. SPO Archive SPO 11. Govern Content - Externally archive inactive content Others OneDrive Ungoverned - access Ungoverned – no access Governed location – No access Governed location – have access Your OneDrive Microsoft now has a SharePoint archive service
  • 38. Summary User adoption Container permissions Review container membership Protect content Govern content lifecycle