Skip to content

Commit cb00f08

Browse files
committed
rename module, add intro, kc, and summary
1 parent 7861dd1 commit cb00f08

27 files changed

+201
-12
lines changed
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-review-analyze-data-classification.analyze-classified-data
3+
title: Analyze classified data with data and content explorer
4+
metadata:
5+
title: Analyze classified data with data and content explorer
6+
description: "Analyze classified data with data and content explorer"
7+
ms.date: 03/13/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 7
14+
content: |
15+
[!include[](includes/analyze-classified-data.md)]
Lines changed: 20 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,20 @@
1+
Organizations store and share sensitive data across cloud services, collaboration platforms, and on-premises environments. As data moves across multiple systems, security teams face challenges in ensuring proper classification, protection, and policy enforcement. To address these challenges, organizations need visibility into where sensitive data resides, how it's labeled, and how it's accessed. Without it, they struggle to enforce security policies, increasing the risk of data leaks, compliance violations, and unauthorized access.
2+
3+
Microsoft Purview provides tools that help security and compliance teams track classified data, enforce protection policies, and detect potential risks. Information Protection Reports, Data Explorer, Content Explorer, and Activity Explorer provide real-time insights into data security, enabling organizations to monitor labeling adoption, investigate policy effectiveness, and analyze user activity trends.
4+
5+
By using these tools, organizations can:
6+
7+
- Track data classification and protection across Microsoft 365, Azure, Amazon Web Services (AWS), and on-premises storage.
8+
- Analyze label usage and policy compliance to ensure sensitive information is properly secured.
9+
- Investigate user interactions with classified content to detect unauthorized access or policy violations.
10+
- Apply AI-driven insights through Microsoft Security Copilot to identify risks and refine security strategies.
11+
12+
## Learning objectives
13+
14+
By the end of this module, you'll be able to:
15+
16+
- Interpret Information Protection Reports to assess classification and protection trends.
17+
- Investigate labeled content using Data Explorer and Content Explorer to identify classification patterns.
18+
- Analyze user activity in Activity Explorer to detect policy violations and potential security risks.
19+
20+
Use this knowledge to improve data security, maintain compliance, and respond to risks with confidence.
Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,19 @@
1+
Without clear visibility into how sensitive data is classified, accessed, and protected, organizations struggle to enforce security policies and prevent unauthorized data exposure. Data security threats, such as accidental data leaks, insider risks, and compliance violations, can lead to financial loss, regulatory penalties, and operational disruptions.
2+
3+
This module covered how Microsoft Purview helps organizations overcome these challenges by providing tools to monitor classification trends, track policy compliance, and investigate security risks.
4+
5+
Using Information Protection Reports, Data explorer, Content explorer, and Activity explorer, organizations can:
6+
7+
- Interpret classification and protection trends to assess labeling adoption.
8+
- Investigate labeled content to ensure sensitive data is classified appropriately.
9+
- Analyze user activity to detect policy violations and security risks.
10+
11+
Maintaining data security requires continuous monitoring and policy adjustments. Microsoft Purview gives security teams the tools to track classification trends, analyze risks, and respond to potential threats, ensuring sensitive data remains protected while enabling safe collaboration.
12+
13+
## References
14+
15+
- [Learn about data classification](/purview/data-classification-overview?azure-portal=true)
16+
- [Get started with data explorer](/purview/data-classification-data-explorer?azure-portal=true)
17+
- [Get started with content explorer](/purview/data-classification-content-explorer?azure-portal=true)
18+
- [Get started with activity explorer](/purview/data-classification-activity-explorer?azure-portal=true)
19+
- [Labeling activities that are available in Activity explorer](/purview/data-classification-activity-explorer-available-events?azure-portal=true)

learn-pr/wwl-sci/purview-review-monitor-data-classification/index.yml renamed to learn-pr/wwl-sci/purview-review-analyze-data-classification/index.yml

Lines changed: 12 additions & 12 deletions
Original file line numberDiff line numberDiff line change
@@ -1,15 +1,15 @@
11
### YamlMime:Module
2-
uid: learn.wwl.purview-review-monitor-data-classification
2+
uid: learn.wwl.purview-review-analyze-data-classification
33
metadata:
4-
title: Protect sensitive data in a digital world
5-
description: "Protect sensitive data in a digital world."
6-
ms.date: 03/10/2025
4+
title: Review and analyze data classification and protection
5+
description: "Review and analyze data classification and protection."
6+
ms.date: 03/13/2025
77
author: wwlpublish
88
ms.author: riswinto
99
ms.topic: module
1010
ms.service: purview
1111
hidden: false
12-
title: Protect sensitive data in a digital world
12+
title: Review and analyze data classification and protection
1313
summary: Discover how Microsoft Purview helps organizations classify, protect, and monitor sensitive data across cloud, endpoint, and AI environments. This module explores strategies for securing data through classification, labeling, encryption, and proactive risk management.
1414
abstract: |
1515
After completing this module, you'll be able to:
@@ -36,12 +36,12 @@ subjects:
3636
- information-protection-governance
3737
- security
3838
units:
39-
- learn.wwl.purview-review-monitor-data-classification.introduction
40-
- learn.wwl.purview-review-monitor-data-classification.information-protection-reports
41-
- learn.wwl.purview-review-monitor-data-classification.analyze-classified-data
42-
- learn.wwl.purview-review-monitor-data-classification.monitor-review-actions
43-
- learn.wwl.purview-review-monitor-data-classification.knowledge-check
44-
- learn.wwl.purview-review-monitor-data-classification.summary
39+
- learn.wwl.purview-review-analyze-data-classification.introduction
40+
- learn.wwl.purview-review-analyze-data-classification.information-protection-reports
41+
- learn.wwl.purview-review-analyze-data-classification.analyze-classified-data
42+
- learn.wwl.purview-review-analyze-data-classification.monitor-review-actions
43+
- learn.wwl.purview-review-analyze-data-classification.knowledge-check
44+
- learn.wwl.purview-review-analyze-data-classification.summary
4545

4646
badge:
47-
uid: learn.wwl.purview-review-monitor-data-classification.badge
47+
uid: learn.wwl.purview-review-analyze-data-classification.badge
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-review-analyze-data-classification.information-protection-reports
3+
title: Review classification and protection insights
4+
metadata:
5+
title: Review classification and protection insights
6+
description: "Review classification and protection insights."
7+
ms.date: 03/13/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 7
14+
content: |
15+
[!include[](includes/information-protection-reports.md)]
Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-review-analyze-data-classification.introduction
3+
title: Introduction
4+
metadata:
5+
title: Introduction
6+
description: "Introduction."
7+
ms.date: 03/13/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 1
14+
content: |
15+
[!include[](includes/introduction.md)]
Lines changed: 75 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,75 @@
1+
### YamlMime:ModuleUnit
2+
uid: learn.wwl.purview-review-monitor-data-classification.knowledge-check
3+
title: Knowledge check
4+
metadata:
5+
title: Knowledge check
6+
description: "Knowledge check"
7+
ms.date: 03/13/2025
8+
author: wwlpublish
9+
ms.author: riswinto
10+
ms.topic: unit
11+
azureSandbox: false
12+
labModal: false
13+
durationInMinutes: 5
14+
quiz:
15+
title: "Check your knowledge"
16+
questions:
17+
- content: "A security analyst in your organization needs to track how sensitive data is being accessed and shared across Microsoft 365 services. They want to filter activities based on users, sensitivity labels, and policy violations. Which Microsoft Purview tool should they use?"
18+
choices:
19+
- content: "Activity Explorer"
20+
isCorrect: true
21+
explanation: "Correct: Activity Explorer helps track user activity, data access, and policy violations within Microsoft 365."
22+
- content: "Data Explorer"
23+
isCorrect: false
24+
explanation: "Incorrect: Data Explorer provides visibility into classified data but doesn't track user activity."
25+
- content: "Microsoft Purview Audit"
26+
isCorrect: false
27+
explanation: "Incorrect: Microsoft Purview Audit provides forensic activity logs but isn't designed for interactive data movement analysis."
28+
29+
- content: "Your compliance team needs a way to review where sensitive data is stored and how it's classified across Microsoft 365. They want to see applied sensitivity labels and retention labels in a centralized view. Which tool should they use?"
30+
choices:
31+
- content: "Activity Explorer"
32+
isCorrect: false
33+
explanation: "Incorrect: Activity Explorer focuses on tracking user actions and policy violations, not reviewing stored data."
34+
- content: "Microsoft Purview Data Loss Prevention (DLP)"
35+
isCorrect: false
36+
explanation: "Incorrect: DLP prevents data sharing violations but doesn't provide a view of labeled data."
37+
- content: "Content Explorer"
38+
isCorrect: true
39+
explanation: "Correct: Content Explorer helps review labeled data across Microsoft 365, displaying classification details for files."
40+
41+
- content: "Your organization wants to track trends in sensitivity label adoption, encryption usage, and policy enforcement across Microsoft 365 and external storage locations. Which Microsoft Purview feature provides this high-level overview?"
42+
choices:
43+
- content: "Data Explorer"
44+
isCorrect: false
45+
explanation: "Incorrect: Data Explorer focuses on reviewing labeled data, but it doesn't provide a broad summary of protection trends."
46+
- content: "Information Protection Reports"
47+
isCorrect: true
48+
explanation: "Correct: Information Protection Reports provide insights into classification, encryption, and policy effectiveness across multiple environments."
49+
- content: "Microsoft Purview Audit"
50+
isCorrect: false
51+
explanation: "Incorrect: Microsoft Purview Audit provides detailed event logs but isn't designed for monitoring classification trends."
52+
53+
- content: "A security administrator wants to analyze how users are applying sensitivity labels and whether labeled data is being downgraded or removed. They need to drill down into specific files and locations. Which Microsoft Purview tool should they use?"
54+
choices:
55+
- content: "Activity Explorer"
56+
isCorrect: false
57+
explanation: "Incorrect: Activity Explorer tracks user actions but doesn't provide a detailed view of labeled files."
58+
- content: "Data Explorer"
59+
isCorrect: true
60+
explanation: "Correct: Data Explorer allows security teams to investigate labeled content, track label changes, and analyze classification patterns."
61+
- content: "Microsoft Purview Insider Risk Management"
62+
isCorrect: false
63+
explanation: "Incorrect: Insider Risk Management identifies risky user behavior but doesn't focus on tracking label usage."
64+
65+
- content: "Your organization's security team wants to proactively detect unusual data activity, such as large-scale downloads of sensitive files. They want an AI-powered tool that can analyze patterns and surface potential risks. Which feature should they use?"
66+
choices:
67+
- content: "Microsoft Security Copilot in Activity Explorer"
68+
isCorrect: true
69+
explanation: "Correct: Security Copilot in Activity Explorer helps detect anomalies and investigate unusual data access patterns."
70+
- content: "Information Protection Reports"
71+
isCorrect: false
72+
explanation: "Incorrect: Information Protection Reports provide insights into classification trends but don't analyze real-time security risks."
73+
- content: "Microsoft Purview Data Loss Prevention (DLP)"
74+
isCorrect: false
75+
explanation: "Incorrect: DLP helps prevent policy violations but doesn't use AI to detect unusual activity."

0 commit comments

Comments
 (0)