Forum Discussion
Microsoft Purview - Endpoint Data Discovery
Microsoft Purview does not provide comprehensive discovery or classification of data at rest on Windows endpoints.
Endpoint DLP can classify data utilising sensitivity labels when it is accessed or modified, but Purview does not crawl local endpoint storage to discover idle data.
I would also like to call the practical approach here on how this can be tackled.
The focus should be on the type of data (sensitive vs non sensitive) at users endpoint. This can be achieved by applying sensitivity label to the content.
Now to do that you should consider moving the data at endpoints to respective users one drive which is the easiest and recommended approach.
Utilize Microsoft feature that provides Known Folder Move (KFM) to redirect and move key endpoint folders to OneDrive: Desktop, Documents and Pictures (including Screenshots). IF the endpoints are managed you can utilize a Intune or Group Policy to deploy the Known Folder Move (KFM). This ensures endpoint data drains to OneDrive without user action, which is critical for security and compliance
If you find the answer useful, please do not forget to like and mark it as a solution 🙂