Home
%3CLINGO-SUB%20id%3D%22lingo-sub-218441%22%20slang%3D%22en-US%22%3ECompliance%20Management%20Part%201%20%3A%20Enabling%20Data%20Loss%20Prevention%20in%20Office%20365%20Overview%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-218441%22%20slang%3D%22en-US%22%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThe%20age%20of%20digital%20transformation%20is%20truly%20upon%20us.%26nbsp%3B%20At%20the%20core%20of%20every%20organization%20are%20its%20data%20and%20documents.%26nbsp%3B%20Protecting%20this%20content%20is%20paramount%20to%20business%20success.%26nbsp%3B%20As%20we%20have%20seen%20with%20breaches%20in%20the%20past%2C%20even%20the%20largest%20and%20well-protected%20entities%20have%20experienced%20breaches.%26nbsp%3B%20Finding%20their%20client%20data%20for%20sales%20on%20the%20Dark%20Web%20and%20paying%20the%20consequences%20with%20bad%20press%2C%20potential%20litigation%2C%20government%20fines%20and%20overwhelming%20cleanup%20costs.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EIf%20your%20organization%20revolves%20around%20healthcare%20and%20uses%20electronic%20transmission%20of%20data%2C%20then%20you%20need%20to%20be%20concerned%20with%20HIPAA%20(Healthcare%20Insurance%20Portability%20and%20Accountability%20Act).%26nbsp%3B%20Electronic%20transmission%20of%20data%20means%20if%20your%20firm%20transmits%20any%20patient%20information%20to%20anyone%20else%20you%20fall%20under%20the%20HIPAA%20rules.%26nbsp%3B%20HIPAA%26nbsp%3Brequires%20a%206-year%20retention%20policy%20for%20all%20health%20records%20and%20defined%20policies%20around%20electronic%20transaction%20on%20how%20healthcare%20providers%20handle%20patient%20information%20and%20penalties%20for%20disclosure%20of%20patient%20information%20through%20email.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EOne%20measure%20to%20help%20prevent%20data%20loss%20in%20Office%20365%20is%20by%20enabling%20and%20tuning%20Data%20Loss%20Prevention%20Policies%20in%20the%20Security%20and%20Compliance%20Center.%20%26nbsp%3B%20Retention%20policies%20can%20also%20be%20defined%20through%20the%20use%20of%20Data%20Classifications%20policies%20in%20the%20Security%20and%20Compliance%20Center.%26nbsp%3B%20Look%20for%20this%20to%20be%20covered%20in%20Compliance%20Management%20Part%202.%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EStart%20with%20a%20DLP%20policy%20template%20or%20start%20from%20scratch%3A%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3EChoose%20from%20one%20of%20the%20preconfigured%20templates%20that%20have%20been%20made%20available%20for%20%3CSPAN%3Ecommon%20sensitive%20information%20types%20across%20many%20different%20regions.%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3E%3CBR%20%2F%3E%20%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20style%3D%22width%3A%20874px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F38161iCFDA7F5671623810%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20alt%3D%22DLP%20Policy%20Template.png%22%20title%3D%22DLP%20Policy%20Template.png%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EDLP%20Policy%20Template%3C%2FSPAN%3E%3C%2FSPAN%3E%3CBR%20%2F%3E%20%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3E%26nbsp%3B%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EChoose%20your%20Office%20365%20location%3A%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3EA%20DLP%20policy%20can%20find%20and%20protect%20sensitive%20information%20across%20Office%20365%2C%20whether%20that%20information%20is%20located%20in%20Exchange%20Online%2C%20SharePoint%20Online%2C%20or%20OneDrive%20for%20Business.%3CSTRONG%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%20%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20style%3D%22width%3A%20879px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F38162iC4D32A5C2F7E9BD9%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20alt%3D%22DLP%20Policy%20Location.png%22%20title%3D%22DLP%20Policy%20Location.png%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EDLP%20Policy%20Location%3C%2FSPAN%3E%3C%2FSPAN%3E%3CBR%20%2F%3E%20%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSTRONG%3EFine%20tune%20your%20policy%3A%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3EFine%20tune%20your%20policy%20by%20decreasing%20the%20sensitivity%20to%20minimize%20false%20positives%20or%20increase%20the%20sensitivity%20to%20be%20sure%20to%20identify%20a%20potential%20breach%20in%20policy.%3CSTRONG%3E%3CBR%20%2F%3E%3CBR%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20style%3D%22width%3A%20931px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F38163i7467CEFCAFBDC3F0%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20alt%3D%22DLP%20Policy%20Fine%20Tune.png%22%20title%3D%22DLP%20Policy%20Fine%20Tune.png%22%20%2F%3E%3CSPAN%20class%3D%22lia-inline-image-caption%22%20onclick%3D%22event.preventDefault()%3B%22%3EDLP%20Policy%20Fine%20Tuning%3C%2FSPAN%3E%3C%2FSPAN%3E%3CBR%20%2F%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EFor%20a%20complete%20DLP%20overview%20check%20out%20the%20%3CA%20title%3D%22Overview%20of%20data%20lose%20prevention%20policies%22%20href%3D%22https%3A%2F%2Fsupport.office.com%2Fen-us%2Farticle%2FOverview-of-data-loss-prevention-policies-1966b2a7-d1e2-4d92-ab61-42efbb137f5e%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%20noopener%20noreferrer%22%3EOverview%20of%20data%20loss%20prevention%20policies%20in%20Office%20365%3C%2FA%3E.%3CBR%20%2F%3E%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-218441%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSPAN%3E%3CSPAN%20class%3D%22lia-inline-image-display-wrapper%20lia-image-align-inline%22%20style%3D%22width%3A%20253px%3B%22%3E%3CIMG%20src%3D%22https%3A%2F%2Fgxcuf89792.i.lithium.com%2Ft5%2Fimage%2Fserverpage%2Fimage-id%2F38164i1BC55DA6C2DF9282%2Fimage-size%2Flarge%3Fv%3D1.0%26amp%3Bpx%3D999%22%20alt%3D%22image.png%22%20title%3D%22image.png%22%20%2F%3E%3C%2FSPAN%3EThe%20age%20of%20digital%20transformation%20is%20truly%20upon%20us.%26nbsp%3B%20At%20the%20core%20of%20every%20organization%20is%20its%20data%20and%20documents.%26nbsp%3B%20Protecting%20this%20content%20is%20paramount%20to%20business%20success.%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-TEASER%3E
Microsoft

 

The age of digital transformation is truly upon us.  At the core of every organization are its data and documents.  Protecting this content is paramount to business success.  As we have seen with breaches in the past, even the largest and well-protected entities have experienced breaches.  Finding their client data for sales on the Dark Web and paying the consequences with bad press, potential litigation, government fines and overwhelming cleanup costs.

 

If your organization revolves around healthcare and uses electronic transmission of data, then you need to be concerned with HIPAA (Healthcare Insurance Portability and Accountability Act).  Electronic transmission of data means if your firm transmits any patient information to anyone else you fall under the HIPAA rules.  HIPAA requires a 6-year retention policy for all health records and defined policies around electronic transaction on how healthcare providers handle patient information and penalties for disclosure of patient information through email.

 

One measure to help prevent data loss in Office 365 is by enabling and tuning Data Loss Prevention Policies in the Security and Compliance Center.   Retention policies can also be defined through the use of Data Classifications policies in the Security and Compliance Center.  Look for this to be covered in Compliance Management Part 2.

 

Start with a DLP policy template or start from scratch:

Choose from one of the preconfigured templates that have been made available for common sensitive information types across many different regions. 


DLP Policy Template.pngDLP Policy Template

 

 

Choose your Office 365 location:

A DLP policy can find and protect sensitive information across Office 365, whether that information is located in Exchange Online, SharePoint Online, or OneDrive for Business.

DLP Policy Location.pngDLP Policy Location

 

Fine tune your policy:

Fine tune your policy by decreasing the sensitivity to minimize false positives or increase the sensitivity to be sure to identify a potential breach in policy.

DLP Policy Fine Tune.pngDLP Policy Fine Tuning

 

For a complete DLP overview check out the Overview of data loss prevention policies in Office 365.