Skip to content

Latest commit

 

History

History
97 lines (58 loc) · 4.23 KB

File metadata and controls

97 lines (58 loc) · 4.23 KB

Data Loss Prevention (DLP) in Azure Purview - How to configure it

Costa Rica

GitHub GitHub brown9804

Last updated: 2025-07-17


List of References (Click to expand)

Access the Microsoft Purview Compliance Portal

Create a DLP Policy

  • Go to Data loss prevention

    image
  • Select Policies > Create policy:

    image
  • Choose a template or create a custom policy based on your organization's needs.

    image

Define Policy Scope

  • Select the locations where the policy will apply (e.g., Exchange email, SharePoint sites, OneDrive accounts, Teams chat).

  • Specify the users or groups the policy will target.

    image

Configure Policy Settings

  • Sensitive Information Types: Choose the types of sensitive information the policy will detect (e.g., credit card numbers, social security numbers).

  • Conditions: Set conditions for when the policy should trigger (e.g., when sensitive information is shared externally).

  • Actions: Define actions to take when a policy violation occurs (e.g., block sharing, send alerts, notify users).

    image
    Customize.advanced.DLP.rules.mp4

Set Up Alerts and Notifications

  • Configure alerts to notify administrators and users when a policy violation occurs.

  • Customize notification messages to inform users about the policy and the actions taken.

    image image

Customize access and override settings

Depending.on.Project.Scope.access.and.override.settings.are.enabled_disabled.mp4

Test and Deploy the Policy

  • Test Mode: Initially deploy the policy in test mode to monitor its impact without enforcing actions.

  • Review Results: Analyze the test results and adjust the policy settings as needed.

  • Enforce Policy: Once satisfied with the configuration, switch the policy to enforce mode.

    image
    Example.of.how.to.create.an.DLP.policy.-.showing.options.mp4

Monitor and Manage Policies

  • Regularly review policy performance and adjust settings based on new threats or changes in business needs.
  • Use the DLP reports and dashboards to track policy effectiveness and compliance.

Advanced Configuration (Optional)

  • Endpoint DLP: Configure settings for endpoint devices to restrict actions like copying, printing, or transferring sensitive data
  • Integration with Microsoft Defender: Extend DLP alerts to Microsoft Defender XDR and Microsoft Sentinel for advanced threat detection and response
Total views

Refresh Date: 2025-07-17