MC791110: Microsoft Purview | Data Lifecycle Management: New integration with Adaptive protection

Announcement IDMC791110Published Date05-08-2024
ServiceGeneralLast Updated07-22-2024
CategoryStay informedExpiration Date02-03-2025
Roadmap ID392839Action Required by Date
TagsAdmin impact, New feature


Summary
                Microsoft Purview's Data Lifecycle Management integrates with Adaptive protection to automatically preserve items deleted by users at elevated risk levels. Public preview begins late July 2024, with general availability in mid-December. Organizations should prepare by enabling the feature in the Microsoft Purview compliance portal.


More Information

Coming soon for Microsoft Purview: We are announcing the public preview of the integration of Adaptive protection with Data Lifecycle Management (DLM) to help you find the right balance to protect against data sabotage while enabling productivity. This new integration leverages DLM features to provide an additional control for Adaptive protection that automatically preserves items deleted by a user with an elevated risk level, so items can be restored if needed.

When this will happen:

Public preview: We will begin rolling out in late June 2024 (previously early May) and expect to complete by late July 2024 (previously mid-July).

General Availability: We will begin rolling out in mid-December 2024 (previously mid-May) and expect to complete by late December 2024 (previously late June).

How this will affect your organization:

After the rollout, and after you enable Adaptive protection for your tenant, the retention label and auto-apply policy for data lifecycle management will be automatically created for you. This policy will automatically include elevated risk users identified by Microsoft Purview | Insider Risk Management solution. If these users delete content from Microsoft SharePoint, Microsoft OneDrive, or Microsoft Exchange, a retention label is automatically applied to that content to retain it for 120 days. Retention labels are automatically applied to unlabeled content deleted by these users. When these users are no longer at the elevated risk level, they are automatically removed from the DLM policy, and the system will no longer keep a copy of content they delete. Any content copies previously retained when the user had an elevated risk level will be kept for the 120 days as specified by the retention label.

Unlike other retention labeling scenarios, users do not see the retention label, and you do not need to create or manage the retention label or policy. At this time, you can't change the retention period or assign different policies based on the different risk levels, or for different locations. The single retention label and auto-labeling policy for your tenant is not visible in the Microsoft Purview compliance portal.

What you need to do to prepare:

If you're using Adaptive protection and want to automatically retain content deleted by elevated risk users, follow these steps to turn on this new integration.

  1. Sign in to the Microsoft Purview compliance portal.
  2. Navigate to Data lifecycle management > Microsoft 365 > Adaptive protection settings in the top right corner.
  3. Turn the setting ON and select Save.

Microsoft Purview compliance portal

Microsoft Purview compliance portal

If you're not using Adaptive protection already, turn on Adaptive protection and the new feature will be enabled along with Adaptive protection.

This rollout will happen automatically by the specified date with no admin action required before the rollout. You may want to notify your users about this change and update any relevant documentation as appropriate.

Previous Post Next Post