Microsoft Teams DLP limitations: Controlling users when being Guests outside the organization.
AGAT Software team
Controlling your users as a Guests in other tenants on external meetings
Microsoft Data Loss Prevention is rich in features and has a very wide adoption. In this article we will address two coverage limitations: First when a user is a Guest in an external tenant, and second, when an user joins a meeting hosted by external user.
Now we want to put focus on an aspect that, although could be underestimated, it can significantly increase Dala Leak issues inside organizations.
Data is not inspected when your company users are guest in another company tenant
The problem is the following:
Suppose company A has Data Loss Prevention policies activated for their Microsoft Teams, but company B doesn’t.
Now, an employee from company A communicates with an employee from company B as a guest.
The issue will be that the DLP won’t act when that communication happens.
Employee from company A will be able to send messages or files that violate company’s DLP without any barriers while he is a guest in company B
Data is not inspected by MS DLP when your company users joining anonymously meeting of other companies
A very frequent problem is that if a user is joining an external meeting as anonymous, this won’t be handled by native MS DLP
DLP for external chat sessions (chat with an external user) will only work if both the sender and the receiver are in Teams Only mode and using Microsoft Team’s Native Federation.
That means that if a user is joining an external meeting , this could not be handled by native Microsoft’s Data Loss Prevention
Why is it more serious than thought
Although DLP violations inside the company are already serious enough, DLP breaches to other companies will be all the more so.
Just think about an employee sending trade secrets, insider information, or any other sensitive information to other 3rd party companies.
The solution
SphereShield for Microsoft Teams Real-Time DLP addresses the problem in a complete way. It works both internally and externally, not leaving any room for DLP violations. In addition users can opt-in for advanced DLP features that detect issues in audio conversations in real-time, as well as DLP detection for screen-sharing using OCR.
Microsoft Teams is without a doubt one of the top collaboration platforms out there, especially with more and more companies converting to remote working since 2020. However, a big problem that sometimes sneaks up on companies while using MS Teams is having more than one Channel which addresses the same topic/client/project or even conversations. In […]
Microsoft Teams is one of, if not the, most popular UC platform for companies, especially that ever since covid hit back in 2019, companies had to switch to online/hybrid work. And that created a need to have everything digitized. But as is the case with all companies, the need for archiving is never ending. Why […]
The necessity for Content Filters Sometimes security and compliance are just not enough to make sure that a business runs smoothly. There is one aspect of communication that goes barely unnoticed and still is problematic on many levels. The advancement of technology has enabled everyone to collaborate and share information more easily. However, it has […]