Forum Discussion

Aaron2128's avatar
Aaron2128
Copper Contributor
Feb 23, 2024
Solved

Purview DLP Exception Management

Hi, what is the best way of doing the exception management in Purview DLP?

We want to have exception for certain block policies, were in would like to have an exception link added in the block prompt, then users can raise exception by using the link further it will go to manager -> ops team review/approval.

How can we add the exception link in prompt and redirect to a web form to raise exception?

 

  • Aaron2128 

     

    You can amend the email notification from the user within this Block Policy in the user email notification section. I've put in an example below.

     

3 Replies

  • vicwingsing's avatar
    vicwingsing
    Iron Contributor

    Aaron2128 

     

    You can amend the email notification from the user within this Block Policy in the user email notification section. I've put in an example below.

     

    • Aaron2128's avatar
      Aaron2128
      Copper Contributor
      Thank you for the clarification Victor.
      QQ: how can we stream line this whole exception process, with just-in-time access. when you need you get it then its blocked.
      • vicwingsing's avatar
        vicwingsing
        Iron Contributor

        Aaron2128 

         

        It will be complicated. I've not done it to a client before but one would assume that it will require using both Power Automate that triggers a custom Powershell scripting that will allow for this to happen. This introduces a whole lot of complications for your Security Operations.

         

        It would be simpler if the internal client processes/ policy would be updated instead. I'd ask them to block the emails with exception turned on > so the user will have to explicitly confirm performing this action while this email gets sent to both his Manager + IT Security.

         

Resources