Managing Microsoft 365 Copilot and Third-Party Generative AI: Securing Data, Monitoring Usage, and Mitigating Risks with Purview and Defender

NikkiChapple 0 views 49 slides Sep 27, 2025
Slide 1
Slide 1 of 49
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12
Slide 13
13
Slide 14
14
Slide 15
15
Slide 16
16
Slide 17
17
Slide 18
18
Slide 19
19
Slide 20
20
Slide 21
21
Slide 22
22
Slide 23
23
Slide 24
24
Slide 25
25
Slide 26
26
Slide 27
27
Slide 28
28
Slide 29
29
Slide 30
30
Slide 31
31
Slide 32
32
Slide 33
33
Slide 34
34
Slide 35
35
Slide 36
36
Slide 37
37
Slide 38
38
Slide 39
39
Slide 40
40
Slide 41
41
Slide 42
42
Slide 43
43
Slide 44
44
Slide 45
45
Slide 46
46
Slide 47
47
Slide 48
48
Slide 49
49

About This Presentation

Title | Managing Microsoft 365 Copilot and Third-Party Generative AI: Securing Data, Monitoring Usage, and Mitigating Risks with Purview and Defender

Presenter | Nikki Chapple, 2 x MVP and Principal Cloud Architect at CloudWay

Event | Commsverse 2025

Format | In person, Deep Dive Technical Sessio...


Slide Content

Managing Microsoft 365
Copilot & Third-Party
Generative AI Usage with
Purview and Defender
Nikki Chapple | MVP

About Me
Nikki Chapple
Expert in Microsoft 365 & Purview
NikkiChapple.com
All Things M365 Compliance Video
Podcast

Agenda
•How do we assess which Gen AI Apps are risky?
•How can we find out what Gen AI Apps are used?
•How can we block access to unwanted Gen AI apps?
•How do we keep track of new Gen AI Apps?
Part A Defender for Cloud Apps
•How can I track our Gen AI Usage?
•Can I see what sensitive data is shared with Gen AI Apps?
•Can I see who is using which Gen AI App and for what purpose?
Part B Data Security Management for AI

The Issue
of AI users are bringing their own AI tools to work
AI at Work Is Here. Now Comes the Hard Part - 2024 Work Trend Index Annual Report

Defender for Cloud
Apps

How do we assess
which Gen AI Apps
are risky?
Defender for Cloud Apps > Cloud App Catalog

View Gen AI App Catalog 1123
Apps

Assess the risk of an App

How can we find out
what Gen AI Apps are
used?
Defender for Cloud Apps > Cloud Discovery

Discover what Gen Ai Apps are
being used

How can we block
access to unwanted
Gen AI apps?

Sync Unsanctioned Apps to
Defender for Endpoint

Block URLs on Managed Devices

Get Notified of New apps

How do we keep
track of new Gen AI
Apps?
Defender for Cloud Apps > Policy Management

Data Security
Posture Management
for AI

Prerequisites
Audit enabled
Devices
onboarded
Purview Extension
deployed
Licensing
E5 Compliance
Copilot licenses
not required
Configuration
eDLP Polices
IRM policies
(optional)
RBAC
Compliance
Admin – configure
policies
Security reader –
view
IRM – view Risky
user info
Set Up

How can I track our
Gen AI Usage?
Data Security Posture Management for AI

View Copilot Usage

View 3
rd
Party Gen AI Usage

Current list
457 domains

Can I see what sensitive
data is shared with Gen
AI Apps?

View your custom SITs
Track Sensitive data

Track labelled data

Track Insider Risk

Can I see who is using
which Gen AI App and
for what purpose?
DSPM for AI > Activity Explorer

View Copilot Prompt & Response

Who is accessing which App

View DLP Triggers

Summary

Summary
•How to assess which Gen AI Apps are risky
•How to find out what Gen AI Apps are used
•How to block access to unwanted Gen AI apps
•How to keep track of new Gen AI Apps
Part A Defender for Cloud Apps
•How to track our Gen AI Usage
•See what sensitive data is shared with Gen AI Apps
•See who is using which Gen AI App and for what purpose
Part B Data Security Management for AI

Nikki Chapple

Thank you to this year’s Sponsors