Microsoft Purview Data Loss Prevention - Great for Data Identification and eDiscovery
February 12, 2024

Microsoft Purview Data Loss Prevention - Great for Data Identification and eDiscovery

Anonymous | TrustRadius Reviewer
Score 6 out of 10
Vetted Review
Verified User

Overall Satisfaction with Microsoft Purview Data Loss Prevention

We utilize Microsoft Purview Data Loss Prevention to help identify electronic patient health information that is transmitted across our systems or stored online and make sure that it is protected wherever we find for regulatory compliance. The information protection aspects of it are good at identifying this sensitive data amidst mountains of regular data, and the legal discovery side helps with making sure we're compliant anytime we need to put a hold on information for legal purposes.
  • It's a great product from an information protection perspective, as it can identify different types of data across tons of different locations.
  • It's great at applying standard regulatory frameworks, like HIPAA, to management actions so you can work towards being as compliant as possible.
  • The eDiscovery tools are very helpful when it comes to managing legal holds and discovery requests, as it's simple to freeze accounts or hold at points in time for discovery.
  • The Data Loss Prevention tools don't seem to integrate well with other DLP tools Microsoft provides, like those built into Exchange Online. Data is missed when it should be blocked from being sent.
  • The way Purview contributes to the overall Microsoft Security Score can be a bit difficult to tell, it's not clear what is being applied to improve the score and other management windows need to be accessed to address suggestions.
  • No major impacts, we consider it a valuable addition to our M365 tenant, but we still supplement with other platforms due to DLP issues. Being that it's included, we don't consider the ROI of it.
Our biggest benefit from this platform is visibility across the entire M365 tenant for data identification and protection. I can see sensitive data stored in OneDrive, Exchange, Sharepoint, etc., without needing to view them all independently.
It was fairly easy, though the UI is a bit complex and takes some understanding. It's not a wizard-based all-said-and-done, you have to pick and choose some options and change settings here and there to make it work.
Primarily eDiscovery and information protection (not DLP), identification so we can make sure DLP is applied.
I hope that MS works on their UIs. I think that they purposefully make them more difficult to use so that they're not the default that everyone uses, but it sucks that you have to know what you're doing to effectively utilize their platforms.
The DLP in Exchange Online and Purview by proxy is okay, but fails to catch a lot of HIPAA-specific information. We supplemented with Barracuda to make up for it. Purview is still better at identification across the entire tenant though, Barracuda is just doing our email DLP.

Do you think Microsoft Purview Data Loss Prevention delivers good value for the price?

Yes

Are you happy with Microsoft Purview Data Loss Prevention's feature set?

Yes

Did Microsoft Purview Data Loss Prevention live up to sales and marketing promises?

No

Did implementation of Microsoft Purview Data Loss Prevention go as expected?

Yes

Would you buy Microsoft Purview Data Loss Prevention again?

Yes

Microsoft Purview Data Loss Prevention is very good for identifying sensitive data across multiple settings, like OneDrive, Exchange Online, Sharepoint, etc. If you want to find data across your whole tenant, this is a decent tool to use for it.

Microsoft Purview Data Loss Prevention Feature Ratings

Classification Scanning
8
Email Scanning & Filtering:
8
Policy Based Protection
7
Device Monitoring
8
Data Patterning
8
Data Access Control
7