Data Loss Prevention (DLP)DLP in SharePoint & OneDrive

DLP in SharePoint & OneDrive

30 mins

Understanding the Concept

SharePoint and OneDrive DLP protects data at rest (stored files) and at the point of sharing. It can block downloads, sharing, and even access to matched files.

DLP for these services depends on the search index - files must be indexed before policy evaluation. New or modified files may have a delay before policies apply.

Sharing link types matter: organization-wide links, specific people links, and anonymous links each have different policy implications.

Key Points

  • File Scanning: Content indexed and scanned for SIT matches
  • Sharing Controls: Block or warn on sharing externally
  • Access Blocking: Can prevent access to matched files entirely
  • Sync Blocking: Prevent syncing matched files to local devices
  • Retention: DLP can trigger retention actions

SharePoint/OneDrive DLP Flow

Step 1

File Upload

User uploads or creates file in SP/OD

Step 2

Indexing

File content indexed by search service

Step 3

Policy Scan

Indexed content scanned against DLP policies

Step 4

Match Detection

SITs detected, confidence calculated

Step 5

Marking

File marked with DLP match, icon shown

Step 6

Action Enforcement

Sharing/access blocked based on policy

Why This Matters in Real Organizations

SharePoint and OneDrive are where most organizational data lives. Without DLP, sensitive files can be shared with anyone with a link. Proper DLP prevents accidental and intentional data exposure.

Common Mistakes to Avoid

Expecting instant policy application (indexing delay)
Not understanding the sync client implications
Ignoring the 'block access' option severity
Forgetting about version history

Interview Tips

  • Explain the indexing dependency
  • Discuss the various enforcement options
  • Mention the user experience for blocked files

Exam Tips (SC-401)

  • Know the different actions available for SP/OD
  • Understand indexing latency implications
  • Know how sensitivity labels interact with DLP

Course Complete!

You've finished all lessons

Previous|Next|HHome