Microsoft Purview – Exploring Sensitive Information Types – 1

MS Purview >> Solutions >> Classifiers >> SIT
MS Purview >> Solutions >> Classifiers >> SIT

Hi All,

Greetings!

We will keep exploring Microsoft Purview. Today we will discuss basics about Sensitive Information Types.

In this first article of Sensitive Information Types we will explore the concept of Sensitive Information Types.

What are Sensitive Information Types?

  • Sensitive Information Types are predefined patterns or custom configuration to protect the sensitive data / information in our organization.
    • What is Sensitive Information?
      • Any data / information which is critical to organization
      • Example:
        • Personal data of Employee
        • Financial Records
        • Health Information
  • SIT uses patterns like
    • Regular expressions
    • Checksums
    • Keywords
  • By using the above patterns SIT detects the sensitive information in emails, documents, databases.
  • Identifying sensitive information helps organizations to prevent unauthorized access / sharing of the information.

How Sensitive Information types helps or why to use Sensitive Information Types?

  • Sensitive Information Types (SITs) helps to identify sensitive data in our organization
  • SITs helps to
    • Automate data discovery: It helps to detect sensitive data at various locations including Emails, Documents, Files, Cloud Services.
    • Prevent data loss: Based on SIT we could use DLP policies to stop oversharing or unauthorized sharing of data
    • Fulfill Compliance requirement: SIT helps to identify and securing sensitive information, ensures that critical data is protected according to policies
    • Minimize Risk: Accurately detecting sensitive information helps organizations reduce the risk of breaches, fines, and damage to their reputation.

Types of Sensitive Information

  • Built-In Sensitive Information Types
  • Custom Sensitive Information Types

Built-in SITs VS Custom SITs

CriteriaBuilt-in SITsCustom SITs
Ease of usePreconfigured by Microsoft and ready to useRequires manual setup and configuration
MaintenanceManaged and updated by MicrosoftMust be managed and updated by the organization
Scope of coverageCovers common data types (financial, healthcare, etc.)Can cover organization-specific data (employee IDs, project codes)
AccuracyHigh, but might result in some false positivesCan be precise using exact data match or document fingerprinting
CustomizationLimited to built-in data typesFully customizable for unique data sets
Regulatory complianceSuitable for standard regulationsCan be customized to meet specific regulatory requirements in specific industries
Recommended use casesGeneral data protection and compliance needsProtecting proprietary or organization-specific data

Navigating to built-in SITs

    REFERENCES

    Thank you 🙂 Life is beautiful 🙂

    Have a Great Time Ahead 🙂 🙂

    Prasham Sabadra

    LIFE IS VERY BEAUTIFUL. ENJOY THE WHOLE JOURNEY :) Founder of Microsoft 365 Junction, Speaker, Author, Learner, Developer, Passionate Techie. Certified Professional Workshop Facilitator / Public Speaker. Believe in knowledge sharing. Around 20+ years of total IT experience and 17+ years of experience in SharePoint and Microsoft 365 services Please feel free me to contact for any SharePoint / Microsoft 365 queries. I am also very much interested in behavioral (life changing) sessions like motivational speeches, Success, Goal Setting, About Life, How to live Life etc. My book - Microsoft 365 Power Shell hand book for Administrators and Beginners and 100 Power Shell Interview Questions - https://www.amazon.in/Microsoft-Administrators-Beginners-Interview-Questions/dp/9394901639/ref=tmm_pap_swatch_0?_encoding=UTF8&qid=1679029081&sr=8-11

    You may also like...

    Leave a Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.

    Discover more from Microsoft 365

    Subscribe now to keep reading and get access to the full archive.

    Continue reading