Microsoft Purview: Data Security Investigations – analyze files tied to endpoint DLP alerts
Speed up analysis of exfiltrated content by launching Data Security Investigations (DSI) from endpoint Data Loss Prevention (DLP) alerts. In DSI, define your endpoint DLP query (for example, time range, users, and endpoints). DSI then automatically gathers the related files that triggered the alerts for review (for example, UserA downloaded a file on 3/1/2026). Product Release phase Preview Release date May CY2026Preview date: April CY2026 Platform Web Cloud Instance Worldwide (Standard Multi-Tenant) Created 2026-03-12 23:00:54Z Roadmap ID 558547 Roadmap Link https://www.microsoft.com/microsoft-365/roadmap?id=558547
The post Microsoft Purview: Data Security Investigations – analyze files tied to endpoint DLP alerts appeared first on M365 Admin.
Published on:
Learn moreWe can help you with Microsoft Purview: Data Security Investigations – analyze files tied to endpoint DLP alerts
If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.
Related posts
Microsoft Word for the web: Retirement of the “@” entity insertion experience on the document canvas
Microsoft is retiring the CIQ-based “@” entity insertion on Word for the web’s document canvas by late October 2026, alignin...