Friday, September 11, 2020

Enforce zero-standing access to your sensitive data

For organizations looking to protect and control their data, governing privileged access can reduce the risk of data compromise and help meet compliance obligations regarding access to sensitive data. Built on the principle of no standing access, where admins do not have access by default, we are announcing the general availability of privileged access management in Office.com/setup 365. This feature enables organizations to govern privileged access by requiring admins to go through an approval process and gain temporary permissions to perform high-risk tasks like a journal rule, which is a task that can expose and exfiltrate data by copying messages to an external shadow mailbox. Once an admin elevates permissions to execute the high-risk task, it can be automatically or manually be approved before access is granted—either way, all activities are logged and auditable.

Privileged access management is available in the Office.com/setup 365 Admin Center, and organizations can now also manage Customer Lockbox requests and Data Access requests from Azure Managed Apps from a single management pane for privileged access to your Office.com/setup 365 data. Read more details on the Tech Community blog.

Image shows an approved Privileged Access request in Outlook.

No comments:

Post a Comment