From the course: Microsoft Information Security Administrator Associate (SC-401) Cert Prep by Microsoft Press

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

Implement roles and permissions for DLP

Implement roles and permissions for DLP

So, in Purview, not everyone should be able to alter DLP settings or view sensitive data. And as with all parts of Purview, there are dedicated roles that who can manage and review DLP policies. So, data security management is full Purview DLP management with data security admins which can manage the policies only. We also have data security viewers, so they have read only access as well. Of course, as we've looked at when we were talking about sensitive information types and other assigning roles in Purview, there are two aspects to this. Firstly, you need to assign the compliance administrator with an entra, but then more granular roles need to be given within Purview itself. So if we go back here to Microsoft Purview, I can search data security up here, or I'll start to search data security, and you can see we get all the data security roles that are available to us. And as ever, it's also important to remember that Microsoft does sometimes change the names of these roles from time…

Contents