Jump to content

Recommended Posts

Posted

Has anybody tried this ?

 

I turned on

Prevent sharing of PII data (UK)

This rule will detect files containing UK national health service (NHS) numbers, drivers license numbers or national insurance numbers (NINO) and prevent external sharing of these files.

 

Then have about 200 hits - but it looks like it is picking up and reporting files that are not shared externally, but are shared to users in a parent domain.

Has anyone else seen anything like this?

Posted

Yes. I've turned it on.

It basically stops any file that hits one of those PII requirements from being shared exterally. The share button in Google will turn into a shield a pop-up prompt will appear to alert the user.

  • Thanks 1
Posted

Thanks, I've also been doing some testing. It looks like I get the email when it *detects* sensitive data and prevents it from being shared.

The emails I received are just alerting us that we have sensitive data, not that it is being shared inappropriately - which is the bit that I wasn't clear on. When I attempt to share it outside of the domain Google prevents it.

 

The detection is really good, it found prevented me sharing a document that was a hand written, scanned job application form !

Posted

You can turn off the email alerts if you'd prefer not to get them in the "Actions" area of the Rule. You can still see them from the Audit tab.

 

You can also setup the same filters so people can't attach this content to emails too.

Apps > G Suite > Gmail > Advanced Settings > Compliance

 

You'll need to enable OCR for email attachments and add a Content Compliance rule to outbound email, then add pre-defined expressions (they're the same as the ones PII provide)

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...