Microsoft Purview Data Loss Prevention Review
Use Cases and Deployment Scope
Our use cases are primarily helping customers around their regulatory requirements. Their requirements are to understand, discover sensitive information going outside their network, whether it be device or to another partner, another vendor that they're working with. They just need discovery around it. Now, recently we have also been engaged with customers around use cases where they want to understand what sensitive information is flowing into the AI space. So if users are accessing unapproved AI applications within the environment, they want to understand if any corporate sensitive information or corporate confidential files are going into those apps or not. So those are some use cases that we are currently working on.
Pros
- I think from a coverage standpoint, it's pretty comprehensive. The areas it covers, of course, include the Microsoft stack, but also focus on using the definitive cloud apps integration to extend visibility and control to third-party cloud apps, endpoints, and even Macs. So those are capabilities.
- Its comprehensiveness, its simplicity of creating the policies in one place, are definitely one of the plus points the solution has.
Cons
- I mean, for the edge for business, there is one use case around using Microsoft Edge for business, understanding sensitive information flowing into AI sites. It currently depends on an Azure subscription. I would love to see if it could all be included as part of E5. The reason being, I don't know why it is that case, but it would be really beneficial if organizations that do not have to worry about ACR cost, they would be able to use this for all the users. Right now, we have to struggle with only limiting it to a few users, limiting the scope to only users because of the fear that we may not know what cost we would end up in when this is turned on. So that's kind of a challenge.
Return on Investment
- Microsoft Purview Data Loss Prevention is definitely something... It's hard to give an ROI, unless you're talking to the right people. We try to speak to the legal compliance team, so that if the project is led by the legal team, they understand the risk around it. So the ROI is basically you not getting into, in legalities or in legal cases where somebody could, a customer or a partner that you're working with can sue you because you don't have these controls in place. That also helps you comply with certain regulatory requirements like ISO 27,001, at least have these enabled in monitoring mode, and have the discovery being done.
- But overall, from starting with discovery and then having enforced protection, it really helps you understand the ROI from that pact. It may not have a real monetary value attached to it, but the monetary value may be attached. If you're talking to the legal guys, they understand how many from a data exfiltration standpoint, what incidents they have come across, and how much fines they have paid. So, having Microsoft Purview Data Loss Prevention is a low-hanging fruit. At least start enabling them to start seeing what's coming back in your tenant, and understand what data is being used and shared externally. So that's the ROI I see: protecting your compliance teams from any unintended fees or subpoenas, and getting around this.
Other Software Used
Microsoft Azure, Microsoft Dynamics 365














