GDPR and Microsoft 365: Streamline your path to compliance

Similar documents
Prepare for GDPR today with Microsoft 365

Accelerate GDPR compliance with the Microsoft Cloud Henrik Mønsted

Mobility Management in the Modern Workplace. How Microsoft Enterprise Mobility + Security protects and streamlines the mobile enterprise

What is Microsoft 365?

Empowering employees in a digital world. How Microsoft 365 Enterprise allows everyone to be creative and work together, securely

Digital Transformation; Thrive and Survive. Panagiotis Kouris OFFICE LINE SA

SOLUTION BRIEF HELPING ADDRESS GDPR CHALLENGES WITH RSA SECURITY ADDRESSING THE TICKING CLOCK OF GDPR COMPLIANCE

Accelerate GDPR compliance with the Microsoft Cloud Samuel Marín Sr. Sales Solutions Specialist

Top 10. best practices for successful multi-cloud management. How the multi-cloud world is changing the face of IT

A QUIET REVOLUTION IN PEOPLE POWER

Microsoft Services. Transform your digital security strategy to 04mitigate business risk

GDPR. Are you ready for the GDPR countdown?

Cloud Content Management for the Enterprise using Microsoft Azure

Certified Identity Governance Expert (CIGE) Overview & Curriculum

THE FUTURE OF WORK HUB

WHITE PAPER EU General Data Protection Regulation Compliance

Azure Marketplace. Service Definition 2018

GDPR 7 questions you should ask technology vendors about GDPR

GDPR: The devil is in the data

Fulfilling CDM Phase II with Identity Governance and Provisioning

SECURE SSO TO OFFICE 365 & OTHER CLOUD APPLICATIONS WITH A CLOUD-BASED AUTHENTICATION SOLUTION

Ready for the GDPR, Ready for the Digital Economy Fast-Track Your Midsized Business for the Digital Economy While Addressing GDPR Requirements

INTEGRATING HORIZON AND CITRIX APPS IN A DIGITAL WORKSPACE

SAP BusinessObjects Business Intelligence

Making a cloud and mobile-first world more secure for customers

General Data Protection Regulation and Episerver Learn how to leverage your organization s data to support GDPR compliance.

Do More with Complete Mobile-Cloud Security from MobileIron Access

SOLUTION BRIEF HELPING PREPARE FOR RISK ASSESSMENT & COMPLIANCE CHALLENGES FOR GDPR WITH RSA SECURITY ADDRESSING THE TICKING CLOCK OF GDPR COMPLIANCE

TRUSTED IDENTITIES TRUSTED DEVICES TRUSTED TRANSACTIONS. Investor Presentation - December 2017

TOP 20 QUESTIONS TO ASK BEFORE SELECTING AN ENTERPRISE IAM VENDOR

IBM Security Investor Briefing 2018

Capgemini Cloud Platform. Migrate, operate, and innovate every aspect of your business in the cloud

Case Study. How Gemalto s Trust ID Network is revolutionizing self-sovereign digital identities by leveraging R3 s Corda blockchain platform

Microsoft 365. Office 365, Windows 10, and EM+S a complete, intelligent, secure solution to empower your employees to become productive

API 360: The Complete API Strategy Model for the Enterprise

Things You Should Know About Marketing Cloud. The world s best platform for 1-to-1 cross-channel digital marketing.

Securely Enabling the Enterprise of Things

SOLUTION BRIEF EU GENERAL DATA PROTECTION REGULATION COMPLIANCE WITH RSA ARCHER

Move to Modern: Your Plan, Your Cloud, Your Transformation Session 111 Tyler Bowman

GO BEYOND MOBILE DEVICE MANAGEMENT WITH A DIGITAL WORKSPACE WHITE PAPER

WINDOWS 10 THE MOVE IS ON

Collaboration Delivering Real Business Outcomes

CDW PARTNER REVIEW GUIDE COLLABORATION

VDI. Citrix Cloud Services Adrian Fish

An opportunity to help their transformation and build your business

Open Banking, PSD2 and the New API Economy

Azure Marketplace. Integration Solutions

Microsoft Azure & Citrix for Financial Services: Simplify your journey to the cloud

Mind the Gap: GDPR Ahead. Rakesh Sancheti. Author. July Vice President and Business Head - Analytics, Europe and Nordic

Microsoft Azure Essentials

Fortune 10 Company Uses DevOps to Drive Efficiency. Transforming a Generations-old Approach with Chef Automate and Habitat

Is SharePoint 2016 right for your organization?

EU-GDPR and the cloud. Heike Fiedler-Phelps January 13, 2018

TAKE BACK CONTROL OF YOUR IT

SailPoint + Microsoft: Better Together

Josèphe Blondaut. ARIS Product Marketing Manager

Software. George Kadifa Executive Vice President HP Software

Microsoft Enterprise Services. Modernizing IT to enable the Digital Workplace

Limitless Creativity in the Cloud

MOBILE SURVEYING & INSPECTIONS APPLICATION. Every dollar you defer on capital projects will cost you 4x as much in reactive maintenance.

THE FUTURE OF WORK EDGE

Simplify the way you manage and track your projects. Enabling organisations to create positive impact

Accelerate Your Digital Transformation

The Hybrid Enterprise: Working Across On-premises, IaaS, PaaS and SaaS

FUEL BUSINESS TRANSFORMATION

MIGRATING AND MANAGING MICROSOFT WORKLOADS ON AWS WITH DATAPIPE DATAPIPE.COM

Qlik Sense. Data Sheet. Transform Your Organization with Analytics

IBM Collaboration Solutions Readiness for GDPR IBM Corporation

Executive Summary. CLOUD Choice A STRATEGIC FOUNDATION FOR THE FUTURE OF YOUR BUSINESS. Contact

10 REASONS FOR ARIS. ARIS Product Marketing July Software AG. All rights reserved.

Seamless Application Security: Security at the Speed of DevOps

POWER YOUR DIGITAL JOURNEY TO GREAT

THE FIVE BUILDING BLOCKS OF AN EXCEPTIONAL WEB EXPERIENCE. Your guide to winning the personalization race.

THE POWER ADVANTAGE THE RIGHT TOOL TO MANAGE YOUR COMPLEX PROJECTS

Accelerate Innovation with a Fully Managed Data Platform Across Multiclouds

Realising the business value of IT optimisation and innovation

Technology Management Concepts Phone: Fax:

SUSiEtec The Application Ready IoT Framework. Create your path to digitalization while predictively addressing your business needs

Make Innovation Real with Unique, Leading-edge Software Solutions

ORACLE PROJECT PORTFOLIO MANAGEMENT CLOUD

GIGYA: Connect, Collect, Convert

SOLUTION BRIEF EU GENERAL DATA PROTECTION REGULATION COMPLIANCE WITH RSA ARCHER

Optimizing resource efficiency in Microsoft Azure

DLT AnalyticsStack. Powering big data, analytics and data science strategies for government agencies

How Opaa! Food Management is retaining customers, improving childhood nutrition and empowering teamwork with Microsoft 365.

Modernizing Financial Management for Faster and More-Effective Decision Making

COMPLIANCE TRUMPS RISK

Case Study: Broadcom Limited

WHITE PAPER RSA RISK FRAMEWORK FOR DYNAMIC WORKFORCE MANAGING RISK IN A COMPLEX & CHANGING WORK ENVIRONMENT

Drive success for your business and IT with workplace flexibility

Workforce Dimensions

The past, present and future of service organization control reporting

SAP S/4HANA, THE NEXT GENERATION BUSINESS SUITE

MICROSOFT OPERATIONS MANAGEMENT SUITE (OMS): BEHIND THE CURTAIN

Making intelligent decisions about identities and their access

Your Guide to Office 365 Enterprise E5. The enterprise productivity suite that improves three core business competencies

GDPR COMPLIANCE: HOW AUTOMATION CAN HELP

PEOPLE POWER IMAGINE TECHNOLOGY BUILT AROUND YOU A QUIET REVOLUTION IN

Transcription:

Streamline your path to compliance

GDPR: an overview The General Data Protection Regulation (GDPR) is a new European Union (EU) privacy law that takes effect on May 25,. It is designed to give individuals control over their personal data and is an important effort for protecting individual rights and freedoms. The GDPR applies to any organizations based in the EU and organizations wherever they are located that are selling goods and services in the EU or processing personal data of individuals in the EU. Organizations that are able to comply with GDPR regulations smoothly and readily will strengthen their relationships with customers by protecting the security and privacy of their data, and providing transparency into policies and principles. Additionally, the robust data management capabilities required to achieve compliance can enable businesses to better engage with customers, empower employees, and optimize the creation and delivery of products and services. Microsoft has extensive expertise in protecting data, championing privacy, and complying with complex regulations, and currently complies with both EU-U.S. Privacy Shield and EU Model Clauses. We are committed to GDPR compliance across our cloud services and stand behind our promise with contractual commitments for our cloud services. 2

Empowering customer privacy Companies that are working to meet GDPR requirements, and who recognize the opportunity that achieving compliance represents, need to consider the overall approach, as well as specific capabilities, when evaluating infrastructure platforms and solutions and the partners who provide them. In terms of high-level criteria, having security features and compliance capabilities integrated within the solution architecture itself, and working with partners who have a robust datacenter capacity will help accelerate your journey. Through both our own compliance journey and helping our customers work towards GDPR compliance, we have identified these three focus areas as key to successfully meeting compliance obligations: 01 Assessing and managing compliance risk 02 Protecting personal data 03 Streamlining processes 3

01 Assessing and managing compliance risk GDPR is a perfect example of how compliance requirements can be complex to interpret, difficult to track, and labor-intensive to implement. Assessing and managing your risk environment won t end when you meet your GDPR obligations you ll continue to face new regulations and compliance requirements after the May deadline. Thus, companies need infrastructure and solutions that enable the ability to assess and manage risk and compliance on an ongoing basis. 47% 47% of executives were unsure what data compliance standards applied to their organizations Watch the Compliance Manager Demo video 4 To help organizations better understand their compliance posture, we ve introduced Compliance Manager, a new solution to help you manage your compliance risk from a centralized dashboard. Compliance Manager enables you to conduct a real-time risk assessment of all your Microsoft cloud services, while providing actionable insights to help you streamline compliance processes.

How do you manage an already complex compliance landscape 5 when standards and regulations are constantly changing?

02 Protecting personal data Protecting personal data is at the heart of GDPR. These protections are what your customers want, and in fact what they need if they are going to participate fully in the digital economy. Complying with such far-reaching regulations goes well beyond any collection of point solutions, let alone a single solution. Companies need to think in terms of an infrastructure and solutions platform that will help them meet customer expectations and GDPR obligations across three key solution areas: Identity and access management Information protection Threat protection 6

How do you manage & protect personal data in a world where: Jan 58% Identity and access of individuals have accidentally sent sensitive information to the wrong person 81% of corporate breaches involve weak or stolen passwords management Protecting your organization at the front door is your first line of defense, and that means you need to control who gets in, while also empowering users to be productive using any application (including third-party), on any device, from anywhere. Addressing the vulnerability of passwords and the productivity impact of multiple credentials on users is key to improving the effectiveness of your first line of defense. For example, we ve designed our Identity and Access Management solution and technologies to use capabilities such as Multi-Factor Authentication, Conditional Access, Biometric Verification, and Single Sign-On to secure access to devices, apps, and cloud services while simplifying access for users. 7 300K new malware samples are created and spread every day

Information protection Companies need infrastructure and solutions that address four primary elements of successful information protection: detecting sensitive data, both at rest and in transit; classifying sensitive data into distinct categories so that custom controls such as policies and actions can be applied; providing appropriate levels of security based on how data has been classified; and lastly, monitoring how sensitive information is used and distributed and being able to respond to unexpected activity or events. Because you have data being created and shared across boundaries devices, apps, and cloud services it s imperative that you re able to protect that data throughout its entire lifecycle and across your environment. We ve developed our information protection solutions to provide an integrated classification, labeling and protection experience, enabling more persistent protection of your data wherever it is across devices, apps, cloud services and on-premises. In the spirit of working towards providing a more integrated and unified classification, labeling, and protection model, today we also have a shared labeling schema that will be used across Office 365 and Azure Information Protection. This means that the same default labels will be used across both Office 365 and Azure Information Protection eliminating the need to create labels in two different places. The common labeling model also helps ensure that sensitive labels regardless of where they were created are recognized and understood across Azure Information Protection, Office 365 Advanced Data Governance, Office 365 DLP, and Microsoft Cloud App Security. Finally, we ve integrated machine learning capabilities into our information protection solutions such as Advanced Data Governance and Cloud App Security to help you automatically classify and set policies to protect your data. 8

We analyze: Jan 450B authentications per month across our cloud services Threat protection 400B emails scanned for spam and malware Over 1B enterprise and consumer devices updated monthly 18B+ Bing scans per month. With the increase in number and sophistication of cyberattacks, cyber threats have become a CEO level issue. Companies need strong defenses across four critical areas of vulnerability: user identity, applications and data, devices, and infrastructure. To better protect these critical areas, we built the Microsoft Intelligent Security Graph (ISG), which serves as the connective tissue across Microsoft security solutions. ISG enables our solutions to bring in unified preventative measures that improve the efficiency of protecting, detecting, and responding to security incidents. For example, when we detect a new piece of malware though Office 365 Advanced Threat Protection, we share that information with services like Windows Defender ATP and Advanced Threat Analytics, enabling our solutions to collectively work to protect user identities, apps and data, devices, and infrastructure against advanced persistent threats. 9

03 Streamline processes The GDPR is also an opportunity for companies to make sure their compliance program is as efficient as possible. GDPR requires companies to be able to provide customers access to their personal data, which means you must be able to search and quickly identify personal data, export the results, and accurately record the process. A streamlined process benefits the company in terms of productivity while providing a better experience for the customer. We ve built audit-ready tools into our solutions, enabling you to streamline your reporting process. For example, Office 365 Content Search, an ediscovery tool with new and improved scaling and performance capabilities, lets you search for over 80 different sensitive data types as well as create custom types. Content Search lets you run very large ediscovery searches across Office 365 applications and non-office 365 data, providing improved consistency and efficiencies. 10

Choosing a platform you can trust, and verify 11 We ve taken a principled approach to building privacy, security, compliance, and transparency into everything we do, which means that they are integrated into the products and services you use every day. We ve brought the best of Windows 10, Office 365, and Enterprise Mobility + Security together into a solution called Microsoft 365, to deliver an integrated, complete solution that empowers everyone to be creative and work together, securely. The significant investments Microsoft has made in security are realized in several areas through Microsoft 365. First, the Microsoft cloud has the largest certified compliance portfolio, with services architected to be secure by design, the most extensive global datacenter footprint in the industry, a breadth of integrated solutions that leverage AI, as well as our global partner ecosystem.

Learn more about how Microsoft 365 can help you empower your customers privacy and achieve GDPR Learn more about Microsoft 365 and GDPR 12 compliance fast.