Data Loss Prevention (DLP), is a system designed to detect a potential data breach/leakage incident in a timely manner and prevent it. When this happens, sensitive data such as personal or company information (credit card details, social security numbers, and so on) is disclosed to unauthorized users either with malicious intent or by mistake. This has always been crucial for most companies as loss of sensitive data can be very damaging for a business. Since Exchange 2013, and further improved in 2016, Microsoft has made it possible to enforce compliance requirements for such data and control how it is used in email. DLP is the feature that allows administrators to manage sensitive data in Exchange.
In this recipe, we will look at how we can configure DLP using the Shell to help prevent accidental data leakage.