Why Compliance Legal and Regulatory requirements Organizational governance requests Internal and external threats Today’s Challenges Duplicate solutions to store and evaluate the data Add-ons and plug-ins for the user Complex and fragmented experience Customer Asks Lower the cost Give me one experience Make it easier to manage Leave the end user alone
Empower the User Outlook, Word, PowerPoint, SharePoint, Mobile Apps, etc. Exchange, SharePoint, Lync, AD, File Server, third parties, etc. Exchange/ SharePoint Enable the Compliance OfficerEasy for IT Compliance built into workloads IT already deploys (Exchange, SharePoint) End users workflow unchanged in the Office Client Experiences One console for the Compliance Officer spanning all the workloads and data sources In Place and Extensible Exchange, SharePoint, Windows
Build compliance into the Exchange and SharePoint Index or Ingest to extend beyond these workloads Unify compliance experience and configuration across the suite Exchange SharePoint Others Traditional Archive eDiscovery and Compliance Bloomberg Immutable Exchange Lync 3rd Party Archives … Immutable SharePoint
Bring the data home Ingestion Migrations from third party stores, more formats Go Big, Go Fast, Unify One Compliance Centre, Scale, Mobile Device Protection Built in (not bolt on) Compliance for Office In-Place Archiving Unified Experience Extensible Platform In-Place Immutability and in-place search, preservation, deletion Immutable Exchange Lync File shares Immutable SharePoint Bloomberg Immutable Exchange Lync 3rd Party Archives File Shares Immutable SharePoint Immutable Exchange Immutable SharePoint
Enable Compliance Officers New Compliance Center
Exchange In-Place Archive Outlook OWA Retain folder hierarchy Primary Immutable Deletions Inbox Purges Versions Audits Deleted Items … Archive Immutable Deletions “Inbox” Purges Versions Audits … User A ……
Exchange Deletion Policies SharePoint Document Deletion Policies
Exchange PreservationSharePoint Preservation
Content analysis Get Content Regex Analysis Function Analysis Additional Evidence Verdict Policy Tips Outlook and OWA Document Fingerprinting Protect intellectual property like patents, company confidential information, and other standardized form content Today: Prevent risk with DLP
Office 365 Message Encryption IRM (RMS) Prevents sensitive information from being printed, forwarded, or copied by unauthorized people inside the organization S/MIME Sign and encrypt messages to users using certificates Encrypt messages to any SMTP address
Today: Multi-Mailbox Search in EAC
FFO/EOP UCC – eDiscovery console Policy Store Policy WebService Policy cmdlet eDiscovery Results Sync Process Policy DAL eDiscovery cmdlets eDiscovery DAL Workload (Exchange) Backend Arbitration Mailbox (per tenant policy store) eDiscovery Results Store (per tenant) eDiscovery Results Service Policy Sync Service Backend 1 Backend N DAR Exchange Search Tasks 3 rd Party Data Sources … Federated Query Infra Workload (Sharepoint) Backend Policy Store (per tenant policy store) eDiscovery Results Store (per tenant) eDiscovery Results Service Policy Sync Service Backend 1 Backend N DAR SP Search Tasks Discovery Store (Aggregated result counts, metadata, case management etc)
Exchange Auditing SharePoint Auditing
FFO/EOP UCC – Auditing console Policy Store Policy WebService Policy cmdlet Policy DAL Workload (SharePoint) Backend Policy Store (per tenant policy store) Policy Sync Service Content FE SP Content Front End Node Audit Storage (EXO) Audit Long Term Storage FFO/EOP UCC – Auditing console Reporting cmdlets Reporting UX Reporting Web Service Content BE SQL Workload (Exchange) Backend Arbitration Mailbox (per tenant policy store) Local Queue, Uploader (per BE server) Policy Sync Service Backend 1 Backend N Exchange Auditing Hook Audit Upload Web Service Local Queue, Uploader (per BE server)
O365 Compliance usage 2 million users on hold (200K added monthly since Dec 2013) Million+ archives 45 million using MRM Delete “..Microsoft’s rapid rise to the archiving shortlist since the introduction of Exchange Server 2010 is remarkable” Archiving added to this year’s Gartner Magic Quadrant Small /Medium Orgs looking for cost- effective compliance Highly regulated/litigated customers deploying O365 for Office
Who is using Microsoft Compliance? Questions of Faith Is Exchange Archiving really immutable? Will Exchange Archives scale to TB of data? Will Discovery scale? Can Microsoft guarantee Compliance? What about third party vendors? Will they still work? If I go to O365, will my data be secure? From attacks, from subpoenas? Questions of Feature But what about offline access to the archive? What about a read-only archive? Can I get guaranteed deletion of content? Can I get Review and Predictive Coding?
Archiving – Unlimited Archives, Ingestion eDiscovery – Scale, Search and Comply Compliance Auditing Mobile Device Protection Unified Compliance Public Folder, Modern Groups Compliance
eDiscovery and Organizational Search in Exchange, Monday, March 31, Time: 1:15 PM - 2:30 PM Data Loss Prevention in Exchange, Outlook and OWA, Monday, March 31, Time: 2:45 PM - 4:00 PM Preserve, Delete, and Archive in Exchange, Tuesday, March 31, Time: 10:45 AM - 12:00 PM How Microsoft legal department does eDiscovery, Tuesday, April 1, Time: 3:00 PM - 4:15 PM Experts Unplugged: eDiscovery & Archiving (Auditing and Device Protection), Tuesday, April 1, Time: 1:30 PM - 2:45 PM Managing Risk: How Auditing can help you be in the know Tuesday, April 1, Time: 4:45 PM - 6:00 PM Retention policies in the Real World: notes from the field Wednesday, April 2, Time: 8:30 AM - 9:45 AM