Skip to content

Commit 36b50eb

Browse files
committed
create ediscovery case module
1 parent 0207861 commit 36b50eb

13 files changed

+300
-12
lines changed
Lines changed: 15 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,15 @@
1-
Manage case access and permissions
2-
6 mins
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-ediscovery-create-case.case-access-permissions
3+
title: Manage case access and permissions
4+
metadata:
5+
title: Manage case access and permissions
6+
description: "Manage case access and permissions."
7+
ms.date: 05/09/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 6
14+
content: |
15+
[!include[](includes/case-access-permissions.md)]
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-ediscovery-create-case.configure-case-settings
3+
title: Configure case settings
4+
metadata:
5+
title: Configure case settings
6+
description: "Configure case settings."
7+
ms.date: 05/09/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 5
14+
content: |
15+
[!include[](includes/configure-case-settings.md)]
Lines changed: 15 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,15 @@
1-
Create an manage an eDiscovery case
2-
7 mins
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-ediscovery-create-case.create-manage-ediscovery-case
3+
title: Create and manage eDiscovery cases
4+
metadata:
5+
title: Create and manage eDiscovery cases
6+
description: "Create and manage eDiscovery cases."
7+
ms.date: 05/09/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 5
14+
content: |
15+
[!include[](includes/create-manage-ediscovery-case.md)]
Lines changed: 15 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,2 +1,15 @@
1-
Understand prerequisites for creating a case
2-
8 mins
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-ediscovery-create-case.ediscovery-prerequisites
3+
title: Configure eDiscovery prerequisites
4+
metadata:
5+
title: Configure eDiscovery prerequisites
6+
description: "Configure eDiscovery prerequisites."
7+
ms.date: 05/09/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 8
14+
content: |
15+
[!include[](includes/ediscovery-prerequisites.md)]

learn-pr/wwl-sci/purview-ediscovery-create-case/includes/case-access-permissions.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ After role group assignment, you can add them to individual cases. Being added t
88

99
To add users to a case:
1010

11-
1. Go to the [Microsoft Purview portal](https://purview.microsoft.com) and sign in with eDiscovery permissions.
11+
1. Go to the [Microsoft Purview portal](https://purview.microsoft.com?azure-portal=true) and sign in with eDiscovery permissions.
1212
1. Navigate to **Solutions** > **eDiscovery** > **Cases**.
1313
1. Select a case, then open **Case settings**.
1414

@@ -32,7 +32,7 @@ To remove users:
3232

3333
You can invite external users to participate in a case as guests. This is useful when external reviewers, such as legal counsel, need access.
3434

35-
Guest access must first be enabled in your environment. For more information, see [Enable guest access in eDiscovery](/purview/edisc-settings-guest-users).
35+
Guest access must first be enabled in your environment. For more information, see [Enable guest access in eDiscovery](/purview/edisc-settings-guest-users?azure-portal=true).
3636

3737
Once enabled, follow these steps to invite a guest:
3838

Lines changed: 48 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,48 @@
1+
Each eDiscovery case in Microsoft Purview includes configurable settings that affect how searches, analytics, and review sets behave. These settings help tailor investigations to your organization’s needs and control how reviewers interact with case data.
2+
3+
You can configure case settings in several categories:
4+
5+
- Data sources
6+
- Search and analytics
7+
- Review sets
8+
9+
These settings are applied at the case level and affect all review sets within the case.
10+
11+
## Configure data source settings
12+
13+
Data source settings control which people and groups are included during organization-wide searches. By default, only licensed users are included. You can expand this scope to include other types of users, depending on your investigative needs.
14+
15+
From the **Case settings** page, select **Data sources**, then choose one or more of the following options:
16+
17+
- All people and groups including unlicensed, on-premises, and guest users
18+
- All people and groups including shared Teams channels
19+
- All people and groups including departed users
20+
21+
Adding more data sources can increase search time. Only use these settings when they support the scope of your investigation. To reset to the default configuration, select **Restore defaults**.
22+
23+
## Configure search and analytics settings
24+
25+
The **Search and analytics** settings apply to all review sets in a case. These settings control how data is grouped, how search results are processed, and whether advanced analytics features are used.
26+
27+
To access these settings, go to **Case settings** > **Search and analytics**.
28+
29+
Available options include:
30+
31+
- **Near duplicate and email threading analysis**: Groups similar documents and emails together to improve review efficiency. Set the similarity threshold and word count ranges for inclusion.
32+
- **Themes**: Automatically groups documents by dominant ideas to help identify patterns across large datasets. You can set a maximum number of themes and enable dynamic adjustment if the document count is low.
33+
- **Auto-generated review set query**: Automatically creates a saved search called **For Review** that filters out duplicates after analytics is run.
34+
- **Ignore text**: Exclude known irrelevant content, such as boilerplate email disclaimers, from analytics processing using specific text or regular expressions.
35+
- **Optical character recognition (OCR)**: Enables OCR during advanced indexing so that text in image files becomes searchable and reviewable.
36+
37+
:::image type="content" source="../media/search-analytics-settings.png" alt-text="Screenshot showing the options for search and analytics settings in an eDiscovery case." lightbox="../media/search-analytics-settings.png":::
38+
39+
These settings help streamline case review and reduce time spent on redundant content.
40+
41+
## Configure review set grouping
42+
43+
Review sets can be grouped to make it easier for reviewers to see related content. Grouping settings vary based on when the case was created:
44+
45+
- **For cases created after March 15, 2023**: Items are grouped by **Group ID** and **Thread ID**
46+
- **For cases created before that date**: Items are grouped by **Family ID** and **Conversation ID**
47+
48+
You can view or change the grouping method in **Case settings** > **Review sets** by toggling **Allow grouping**. This setting affects how related items are organized within the review set and can affect review speed and clarity.
Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
Organizations face growing demands to investigate internal and external data-related risks. Whether responding to legal inquiries, regulatory audits, or internal security incidents, having a clear process for preserving, searching, and reviewing content is essential. Without a structured and secure way to manage investigations, organizations risk overlooking key evidence or mishandling sensitive data.
2+
3+
Microsoft Purview eDiscovery provides a centralized way to manage investigation workflows. It helps legal, compliance, and security teams collaborate, control access, and take action on potentially relevant content. Teams must set up and configure cases that define the scope and permissions for each investigation before collecting or reviewing data.
4+
5+
By using eDiscovery cases in Microsoft Purview, organizations can:
6+
7+
- Create secure workspaces to manage searches, holds, and review sets.
8+
- Assign access to the right individuals or role groups for each investigation.
9+
- Configure advanced case settings to control analytics, data sources, and review behaviors.
10+
11+
## Learning objectives
12+
13+
By the end of this module, you'll be able to:
14+
15+
- Configure prerequisites for using Microsoft Purview eDiscovery.
16+
- Create and manage eDiscovery cases for investigations.
17+
- Assign users and guest reviewers to cases with appropriate permissions.
18+
- Configure case-level settings for search, analytics, and review sets.
Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,22 @@
1+
Effective investigations depend on clear boundaries, defined access, and consistent case setup. Microsoft Purview eDiscovery provides a structured approach for managing investigations while protecting sensitive content.
2+
3+
This module showed how to:
4+
5+
- Complete key prerequisites for using eDiscovery, including licensing, permissions, and global settings.
6+
- Create and manage eDiscovery cases that serve as workspaces for investigation tasks.
7+
- Control who can access a case by adding users, assigning role groups, and managing guest access.
8+
- Configure case settings to tailor search behavior, enable analytics, and optimize review workflows.
9+
10+
By following these practices, your organization can run efficient, secure investigations that meet legal and regulatory expectations.
11+
12+
## Resources
13+
14+
- [Get started with eDiscovery](/purview/edisc-get-started)
15+
- [Billing in eDiscovery](/purview/edisc-billing)
16+
- [Assign permissions in eDiscovery](/purview/edisc-permissions)
17+
- [Create and manage cases in eDiscovery](/purview/edisc-cases-manage)
18+
- [Learn about case settings in eDiscovery](/purview/edisc-settings-cases)
19+
- [Learn about access and permission settings in eDiscovery cases](/purview/edisc-settings-access-permissions)
20+
- [Learn about data sources settings in eDiscovery cases](/purview/edisc-settings-data-sources)
21+
- [Learn about search and analytics settings in eDiscovery cases](/purview/edisc-settings-search-analytics)
22+
- [Learn about review set settings in eDiscovery cases](/purview/edisc-settings-review-sets)
Lines changed: 45 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,45 @@
1-
- introduction
2-
- ediscovery-prerequisites
3-
- create-manage-ediscovery-case
4-
- case-access-permissions
1+
### YamlMime:Module
2+
uid: learn.wwl.purview-ediscovery-create-case
3+
metadata:
4+
title: Create and manage eDiscovery cases
5+
description: Create and manage eDiscovery cases.
6+
ms.date: 05/09/2025
7+
author: wwlpublish
8+
ms.author: riswinto
9+
ms.topic: module
10+
ai-usage: ai-assisted
11+
ms.service: purview
12+
title: Create and manage eDiscovery cases
13+
summary: |
14+
Microsoft Purview eDiscovery provides a case-based structure for managing legal, compliance, and security investigations. Each case acts as a secure workspace for collecting, reviewing, and exporting relevant content. With configurable options for permissions, access, data sources, and analytics, cases help teams enforce control, maintain accountability, and tailor investigations to their organizational needs.
15+
abstract: |
16+
After completing this module, you'll be able to:
17+
- Configure prerequisites for using Microsoft Purview eDiscovery
18+
- Create and manage eDiscovery cases for investigations
19+
- Assign users and guest reviewers to cases with appropriate permissions
20+
- Configure case-level settings for search, analytics, and review sets
21+
prerequisites: |
22+
- Familiarity with the Microsoft Purview portal and role-based access control
23+
- Basic understanding of organizational data governance and investigations
24+
iconUrl: /training/achievements/generic-badge.svg
25+
levels:
26+
- intermediate
27+
roles:
28+
- administrator
29+
- auditor
30+
products:
31+
- microsoft-purview
32+
- m365
33+
subjects:
34+
- security
35+
- compliance
36+
units:
37+
- learn.wwl.purview-ediscovery-create-case.introduction
38+
- learn.wwl.purview-ediscovery-create-case.ediscovery-prerequisites
39+
- learn.wwl.purview-ediscovery-create-case.create-manage-ediscovery-case
40+
- learn.wwl.purview-ediscovery-create-case.case-access-permissions
41+
- learn.wwl.purview-ediscovery-create-case.configure-case-settings
42+
- learn.wwl.purview-ediscovery-create-case.knowledge-check
43+
- learn.wwl.purview-ediscovery-create-case.summary
44+
badge:
45+
uid: learn.wwl.purview-ediscovery-create-case.badge
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-ediscovery-create-case.introduction
3+
title: Introduction
4+
metadata:
5+
title: Introduction
6+
description: "Introduction"
7+
ms.date: 05/09/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 1
14+
content: |
15+
[!include[](includes/introduction.md)]

0 commit comments

Comments
 (0)