Knowledge Hub · Security

How can FirstNet stop sensitive data leaving through Microsoft 365, email and AI tools?

Microsoft 365 Security & Compliance · Answered by FirstNet Technology Services

Short answer

Data loss prevention (DLP) controls detect and block sensitive information, such as personal information covered by POPIA, payment data or credentials, as it moves through web, SaaS, email, endpoints and AI interactions. Netskope DLP, delivered by FirstNet, applies these controls from one policy engine, including prompts sent to AI tools.

In detail

How a DLP rollout typically runs:

  • Discovery: which data matters most, where it lives and which channels it leaves through
  • Policy design for the first use case, such as SaaS uploads or AI prompts
  • A pilot with a smaller group of users before production
  • Tuning after go-live to balance protection with usability
  • Reporting on DLP alerts, either reviewed by FirstNet or sent to your SIEM

Within Microsoft 365, FirstNet can also apply sensitivity labels, encryption and retention as part of its Microsoft 365 security work.

DLP supports your compliance goals but does not guarantee compliance on its own; outcomes depend on your setup, governance and operation.

Many organisations start with one high-risk channel and extend DLP to endpoint and email once the first policies are proven.

Source: FirstNet Microsoft 365 Security & Compliance service page →

Didn’t answer your question?

Call