Skip to content

The DLP solution SHALL protect personally identifiable information (PII) and sensitive information, as defined by the agency.

Why This Matters

Personally identifiable information (PII) and sensitive data are prime targets for insider threats and external attackers. Without a properly configured Data Loss Prevention (DLP) solution, your organization risks exposing customer records, financial details, or intellectual property through email and other Microsoft 365 channels. Noncompliance with data protection regulations can lead to fines, legal liability, and reputational damage.

What Aether365 Checks

This check verifies that a DLP policy is in place and configured to protect PII and sensitive information as defined by your agency. It appears in the Aether365 dashboard under the Microsoft 365 checks section.

How to Fix

Because this check requires you to define your own sensitive information types and thresholds, there is no single remediation command. Follow these general steps:

Was this page helpful?