Task 4
You need to block users from sending emails containing information that is subject to Payment Card Industry Data Security Standard (PCI OSS). The solution must affect only emails.
To block users from sending emails containing information subject to thePayment Card Industry Data Security Standard (PCI DSS), you can create aData Loss Prevention (DLP) policyinMicrosoft Exchange Online. Here's how:
Create a Custom DLP Policy:
Log in to theMicrosoft Exchange Online admin center.
Navigate toData loss prevention>Policy.
Create a new custom policy specifically for PCI DSS compliance.
Define Conditions:
In the policy settings, define conditions that identify sensitive data related to PCI DSS. For example:
Keywords: Include terms like ''credit card,'' ''debit card,'' or specific card number formats.
Regular Expressions (Regex): Craft expressions to match credit card patterns (e.g.,\b\d{4}-\d{4}-\d{4}-\d{4}\bfor Visa/Mastercard).
Sensitive Information Types: Use built-in or custom sensitive information types related to payment cards.
Choose Actions:
Specify the actions to take when sensitive data is detected in emails:
Block: Prevent the email from being sent.
Notify Sender: Inform the sender that sensitive data is not allowed via email.
Add Disclaimer/Watermark: Optionally add a disclaimer or watermark to the email.
Apply the Policy to Emails Only:
Ensure that the policy is configured to apply only toemails(not other communication channels).
Exclude internal communication if necessary.
Test and Monitor:
Enable the policy intest modeinitially to validate its effectiveness.
Monitor logs and adjust the policy as needed.
Krystina
4 months agoRosalind
4 months agoDemetra
3 months agoNatalya
3 months agoNu
5 months agoDelsie
5 months agoLynelle
5 months agoMammie
5 months agoJutta
5 months agoRobt
5 months agoKimbery
5 months agoElouise
4 months agoArthur
4 months agoIzetta
4 months agoKent
5 months agoRosenda
5 months agoAdell
5 months ago