SharePoint Saturday Montreal#SPSMontreal
SharePoint Saturday
Montreal 2018
Le 2 juin 2018
Azure Information Protection
Taking a Team Approach From Planning to Adoption
Joanne Klein and Charmaine Lee
Microsoft MVP and MSP
SharePoint Saturday Montreal#SPSMontreal
Gold
Bronze
Thanks to our sponsors !
Hi! I’m Joanne!
@JoanneCKlein
joannecklein@nexnovus.com
joannecklein.com
SharePoint & Office 365 consultant | Speaker | Trainer | Mentor | Saskatchewan SharePoint & Office 365 UG
@charmaine_klee
/charmaineklee
charmaineklee.com
2nd Year CS Student @ UBC
Intern @ Microsoft
3
2
1
4
Planning
Configuration
Adoption
Demos (recorded)
Why is AIP important?
Your perimeter
Company internal
Your perimeter
Company internal
Mobility
Managed Devices
Your perimeter
Company internal
Mobility
Managed Devices
External Sharing
Secured Data
Your perimeter
Company internal
Mobility
Managed Devices
External Sharing
Secured Data
Other SaaS apps
Box, G Suite, AWS,
Dropbox…
How can we manage
and protect this
information?
Microsoft
Information
Protection
Microsoft Information Protection
A Data-Centric Approach
Old World Model
“Catch everything before it
leaks”
New World Model
“Data is born being classified,
labeled & protected”
Azure Information Protection
… provides persistent
data protection by
identifying sensitive data,
classifying, labeling and
protecting at the time of
creation or modification
File is
created
and
labeled in
Word
File is
created
and
labeled in
Word
Collaboration
on file happens
in SharePoint
Online
File is
created
and
labeled in
Word
Collaboration
on file happens
in SharePoint
Online
User opens
the file on
their mobile
device
File is
created
and
labeled in
Word
Collaboration
on file happens
in SharePoint
Online
User opens
the file on
their mobile
device
User uploads
it to other
SaaS app for
sharing
IT
Administrator
s
Information
Managers
Adoption
Specialists
What should our
labels be? What
controls should
they have?
Should we have a pilot
group? Who’s on it?
Do we know what the
protection controls are
for our organization?
What kind of Office
365 license do we
have?
Classification
and
Labeling
Protection
and
Use Rights
Tracking
and
Reporting
AIP licensing: https://azure.microsoft.com/en-us/pricing/details/information-protection/
Classification
Labeling
Tip 1
Pick
standard
labels
Resonate
with
users
Not use
jargon or
acronyms
Non-Business
Public
General
Confidential
Highly Confidential
Low business impact
Medium business
impact
High business impact
Wide Open
Keep it in the Family
Lock it down
Tip 2
Create
sub-labels
HR Finance Legal
“Sensitive data” departments
Risk of
internal
consumption
Need for
external
consumption
Someone has
to manage
these!
Beware of
too many
choices!
Tip 3
Use scoped
policies
Secret
Project
Board
Members
Specialized
Team
Demo
AIP Scoped Policies
Tip 4
Encourage
right user
behaviour
1
User-driven
2 3
Recommended
Automatic
Start here
1
2
3
Demo
AIP Policy Recommendations
1
Windows
Service
2 3
Configures SQL
Server DB
Define
repositories:
- Local folders
- UNC paths
- SP Server URLs
4
Run AIP
Scanner to
scan files to
set label
Tip 5
Protect and
Enforce
Classification
Labeling
Encryption
Access Control
Policy Enforcement
Word, Excel, PowerPoint Protected PDF Email Other file types
Office 2010/2013/2016 AIP Client
RMS Sharing app
Foxit Reader
Nitro PDF Reader
**NOT Adobe!
Outlook 2010/2013/2016 AIP Client
RMS Sharing app
Demo
Azure RMS Protection
Classification
Labeling
Encryption
Access Control
Policy Enforcement
Document Tracking
Document Revocation
https://track.azurerms.com
Who?
When?
Where?
Revoke
Exclude
Demo
Azure Document Tracking
Classification
Labeling
Encryption
Access Control
Policy Enforcement
Document Tracking
Document Revocation
Don’t forget about Training & Adoption!
Download the ‘AIP End User Adoption Guide’
docs.microsoft.com/en-us/information-protection/get-started/scenario-sharepoint
Itallcomesdowntothis…
Classification
Wizard
Labeling
101
Training
Events
Ask the
AIP Bot
Why is data
protection
important?
Don’t try to solve it all (0 to 100)Don’t
Start with classificationStart
Apply protection/controls for small use-
cases
Next
Educate users in your org!Do
@JoanneCKlein joannecklein.com
@charmaine_klee charmaineklee.com
Azure Information Protection - Taking a Team Approach - SPS Montreal

Azure Information Protection - Taking a Team Approach - SPS Montreal