Describe insider risk capabilities in M365 Flashcards
What is Insider Risk Management?
Insider risk management helps detect, investigate, and take action to mitigate internal risks in your organization from insider risk scenarios.
What kinds of Insider risks are there?
Data leaks IP Theft Insider trading Fraud Confidentiality violations Regulatory compliance violations
What is the M365 Insider Risk Management workflow?
Policies are created to generate alerts. These alerts are then triaged (automatically and manually). If valid, they are investigated then actions are taken in response.
Who should be involved in insider risk management workflows?
Compliance
HR
Legal
Security
What is communication compliance?
A Insider Risk Management solution that detects, capture and act on inappropriate messages.
What kinds of communications are inappropriate?
Offensive or threatening language
Sensitive information
Regulatory compliance
Conflict of interest
Where does Communication compliance work?
Email
MS Teams
Yammer
Third-Party communications.
What actions can you take against detected communications?
Resolve Tag Notify Escalate Remove message (Teams only)