Microsoft 365 Copilot | Security Risks & How to Protect Your Data

Поділитися
Вставка
  • Опубліковано 4 січ 2025

КОМЕНТАРІ • 27

  • @igormatic7896
    @igormatic7896 11 місяців тому +4

    i really love your videos, this one is great. Especially i love the part (starting from 18:25) how you explained the access to the SharePoint doc library where "All members" have access but the confidential label has been applied. With this Microsoft and Microsoft partners have now a big chance to sell "higher" licenses to the customers so that they can use the Security and Compliance features like Sensitivity labels, DLP policies etc.

  • @krsg1100
    @krsg1100 10 місяців тому +3

    Very good and informative video

  • @LaurieBrescia
    @LaurieBrescia 11 місяців тому

    This is great information and well presented! Thank you for sharing!

  • @JimCanto
    @JimCanto 11 місяців тому

    Brilliant presentation, Nick. Got yourself a new sub. Here's to the future!

    • @t-minus365
      @t-minus365  11 місяців тому

      Thanks for subbing!

  • @sgronniger
    @sgronniger 11 місяців тому +1

    Great stuff Nick!

  • @HernanDonoso
    @HernanDonoso 11 місяців тому

    Thanks ,Nick ! Really good .

  • @JoilsonJunior-jo9lj
    @JoilsonJunior-jo9lj 11 місяців тому

    Amazing video, really well explained.
    I have a question, around the minute 37:45 you mentioned that the account might have access to more data based on the SharePoint Administrator Role, can you explain a bit more on that point? I thought you would need access to the data itself to incorporate within your Copilot range and administrative roles will not change the scope that you have access to.

    • @MMMan
      @MMMan 11 місяців тому

      Hi Joilson,
      I believe I know what he's referring to. A number of organisations I've seen have granted an elevated account or role (such as the SharePoint Service Administrator role) site collection admin over all site collections. This has its benefits and its drawbacks. It makes administration much easier at times (think trying to set an attribute across many or all sites simultaneously), but it also causes issues identified here where a single account or role (and consequently all accounts capable of elevating to that role) has the ability to see data across everything all at once - so a search or Copilot interaction will return far more information in this scenario. As mentioned, this would be a bad actors dream scenario, getting access to everything they could possibly want to inquire about. The use of copilot doesn't actually cause this scenario in any way, it's just potentially easier to extract data using Copilot given the nature of the interaction.

  • @keithjackman3759
    @keithjackman3759 7 місяців тому

    Microsoft 365 E5 Compliance is an add on to E3 to get you some of those E5 Labeling and classification features that you don't get with E3.

  • @skau3749
    @skau3749 10 місяців тому

    What equipment you are using in this presentation?

  • @alvarovelasquez9595
    @alvarovelasquez9595 9 місяців тому

    Excellent video, congratulations!!
    Query: at minute 2:45 of the video, you say that “Copilot searches even in files that are locally on the hard drive”, so it accepts C:\Users\ paths, or am I wrong? Thanks.

    • @David-tw3fh
      @David-tw3fh 9 місяців тому +2

      He said OneDrive, not local drive (at least the version I was watching 😅 )

  • @nirnrootnoises
    @nirnrootnoises 7 місяців тому

    Interesting. Thanks!
    So this could be applied in the company if we are using Copilot from Edge (not on the Office365 platform).

  • @ppetrix
    @ppetrix 7 місяців тому

    Thank you ❤😊

  • @imotumbokanaka4157
    @imotumbokanaka4157 9 місяців тому

    Hi, if you set permission on the payroll folder, can bruce still see it?

  • @b.c.2177
    @b.c.2177 11 місяців тому +1

    I have disabled the copilot in Office 365 and will never grant access to my emails, documents, etc. I only use external AI when needed, and I do not provide it with sensitive data.

  • @alvarovelasquez9595
    @alvarovelasquez9595 9 місяців тому +1

    👍👍👍 there is no quality practical information

  • @robinho22
    @robinho22 11 місяців тому