Views:

Learn how data policies identify the managed endpoint groups containing sensitive data, the sensitive data classification rules to apply, and the actions to take when sensitive data movement is detected.

You can create data policies to monitor local devices and files for sensitive data. Data policies use the rules created in Sensitive Data Classification to determine what action to take when unauthorized sensitive data movement occurs.
Note
Note
Data policies monitor local devices and files, not cloud assets. To monitor cloud assets for sensitive data, you must enable Data Security Posture on connected AWS accounts or Azure subscriptions. For more information, see Get started with Data Security Posture.
The following table details the actions you can take on the Data Policy screen:

Action Details
Create a data policy
Click Create Policy.
For more information, see Create a data policy.
View the number of Sensitive Data Classification rules currently being applied by a policy
Expand a data policy. In the Selected rule category section, hover over the number beside a rule category to see a list of actively applied rules.
Note
Note
The Selected rule category area shows the number of rules that are currently triggered by the policy, not a list of all the rules included in the policy. To view a list of all rules, click the policy name to view the sensitive data classification rules.
View the response actions in a data policy
Expand a data policy. In the Selected channel type area, hover over the number beside a channel type to see the configured response actions.
View and update the configuration of a data policy
Click a data policy name in the list to view configuration details and update the configuration.
For more information, see Create a data policy.
Enable endpoint data sensor on managed endpoints
Click Enable Endpoint Data Sensor to configure an endpoint policy to detect and trace the movement of sensitive data.
Delete a data policy
Click the Delete icon (trash_icon=GUID-47cf6867-6315-438e-8670-86ff36f22a28.png) beside the data policy you want to delete.
Additional actions
  • Filter the list of data policies by creator.
  • Use the search function to find policies by policy name.