SOLVED

SEC Email Retention

Copper Contributor

I have a question regarding email retention.

Our company has a requirement to keep a rolling 5 years worth of email history. We also push our mail through GlobalRelay which makes a backup. We're attempting to determine how to stay in compliance with the SEC since the following exceptions exist in our retention deletion policy;

- employment records must be retained

- investment performance calculations for investors must be retained

This means that we want to delete email from Office365 and Global relay on a monthly rolling basis as the data passes the 5 year point, BUT we want to ensure that certain flagged email is excepted from those deletions.

Is there a policy or methodology for excepting specific emails (whether by flagging or categorization/organization in folder) which would allow the email to be exempt from the rolling deletion we need to put in place?

Or, does anyone have any resources that might help steer me in the right direction?

Thank you for your consideration to help in this manner. I'm open to answering any clarifying questions.

2 Replies
best response confirmed by jonas_mccoy (Copper Contributor)
Solution

You simply have to tag them differently, either manually or by automatic detection of keywords/queries: https://docs.microsoft.com/en-us/microsoft-365/compliance/retention-policies#advanced-settings-that-...

Thank you sir, very helpful. I wasn't finding the guidance on this myself. @Vasil Michev 

1 best response

Accepted Solutions
best response confirmed by jonas_mccoy (Copper Contributor)
Solution

You simply have to tag them differently, either manually or by automatic detection of keywords/queries: https://docs.microsoft.com/en-us/microsoft-365/compliance/retention-policies#advanced-settings-that-...

View solution in original post