MC947048 – (Updated) Microsoft Purview | Insider Risk Management- Risky AI usage

cloudscout.one Icon

check before: 2024-12-01

Product:

Copilot, Purview Communication Compliance, Purview Insider Risk Management

Platform:

Online, Web, World tenant

Status:

In development

Change type:

Admin impact, New feature, Updated message, User impact

Links:

394281

Details:

Summary:
Microsoft Purview Insider Risk Management will soon roll out risky AI usage detections. Public Preview starts in early December 2024, and General Availability begins mid-June 2025. Admins can prepare by using analytics, creating policies, and leveraging new Generative AI indicators. More details can be found [here](https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview).

Details:
Updated March 6, 2025: We have updated the rollout timeline below. Thank you for your patience.
Coming soon, Microsoft Purview Insider Risk Management will be rolling out risky AI usage detections
This message is associated with Microsoft 365 Roadmap ID 394281
[When this will happen:]
Public Preview: We will begin rolling out early December 2024 and expect to complete by mid-December 2024.
General Availability (Worldwide): We will begin rolling out mid-June 2025 (previously mid-August) and expect to complete by late August (previously late February).

Change Category:
XXXXXXX ... free basic plan only

Scope:
XXXXXXX ... free basic plan only

Release Phase:
General Availability, Preview

Created:
2024-12-03

updated:
2025-03-07

Public Preview Start Date

XXXXXXX ... free basic plan only

Task Type

XXXXXXX ... free basic plan only

Docu to Check

XXXXXXX ... free basic plan only

MS How does it affect me

XXXXXXX ... free basic plan only

MS Preperations

XXXXXXX ... free basic plan only

MS Urgency

XXXXXXX ... free basic plan only

MS workload name

XXXXXXX ... free basic plan only

linked item details

XXXXXXX ... free basic plan only

summary for non-techies**

XXXXXXX ... free basic plan only

Direct effects for Operations**

Risky AI Usage Detection
Without proper preparation, the rollout of risky AI usage detections may lead to increased false positives, causing unnecessary alerts and potential alarm among users.
   - roles: Admins, Compliance Officers
   - references: https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview

User Privacy Concerns
The introduction of new detection mechanisms without adequate communication may raise privacy concerns among users, leading to distrust in the system and reluctance to use AI tools.
   - roles: End Users, HR Managers
   - references: https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281

Operational Disruption
If admins are unprepared for the new policies and analytics tools, it could result in operational disruptions, affecting the organization's ability to manage insider risks effectively.
   - roles: IT Operations, Security Analysts
   - references: https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview

Configutation Options**

XXXXXXX ... paid membership only

Opportunities**

Enhanced Risk Detection Capabilities
With the introduction of risky AI usage detections, organizations can better identify and mitigate insider threats related to AI applications. This will enhance overall security posture by preventing data leakage and protecting intellectual property.
   - next-steps: Develop and implement policies specifically targeting risky AI usage, utilizing the analytics and activity explorer features to monitor and respond to incidents.
   - roles: IT Security Manager, Compliance Officer, Data Protection Officer
   - references: https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview, https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281

Policy Customization and Governance
Admins can create tailored policies for risky AI usage based on their organization's specific governance requirements. This allows for a more aligned approach to risk management and compliance.
   - next-steps: Engage stakeholders to define internal policies, then utilize the policy creation tools within Purview to implement these customized policies.
   - roles: Compliance Officer, Policy Administrator, IT Manager
   - references: https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview, https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281

User Training and Awareness
The rollout of AI risk management features provides an opportunity to enhance user training programs around the responsible use of AI technologies. This can help reduce unintentional insider risks.
   - next-steps: Develop training materials and workshops focused on AI usage policies and the implications of risky AI interactions, ensuring all employees understand the potential risks.
   - roles: HR Training Coordinator, IT Training Specialist, Compliance Officer
   - references: https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview, https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281

Potentional Risks**

XXXXXXX ... paid membership only

Data Protection**

XXXXXXX ... paid membership only

IT Security**

XXXXXXX ... paid membership only

Hypothetical Work Council Statement**

XXXXXXX ... paid membership only

DPIA Draft**

XXXXXXX ... paid membership only

explanation for non-techies**

XXXXXXX ... free basic plan only

** AI generated content. This information must be reviewed before use.

a free basic plan is required to see more details. Sign up here


A cloudsocut.one plan is required to see all the changed details. If you are already a customer, choose login.
If you are new to cloudscout.one please choose a plan.



change history

DatePropertyoldnew
2025-03-07MC MessagesUpdated February 28, 2025: We have updated the rollout timeline below. Thank you for your patience.
Coming soon, Microsoft Purview Insider Risk Management will be rolling out risky AI usage detections
This message is associated with Microsoft 365 Roadmap ID 394281
[When this will happen:]
Public Preview: We will begin rolling out early December 2024 and expect to complete by mid-December 2024.
General Availability (Worldwide): We will begin rolling out mid-August 2025 (previously mid-February) and expect to complete by late August (previously late February).
Updated March 6, 2025: We have updated the rollout timeline below. Thank you for your patience.
Coming soon, Microsoft Purview Insider Risk Management will be rolling out risky AI usage detections
This message is associated with Microsoft 365 Roadmap ID 394281
[When this will happen:]
Public Preview: We will begin rolling out early December 2024 and expect to complete by mid-December 2024.
General Availability (Worldwide): We will begin rolling out mid-June 2025 (previously mid-August) and expect to complete by late August (previously late February).
2025-03-07MC Last Updated02/28/2025 18:06:462025-03-06T15:50:15Z
2025-03-07MC prepareBelow are some of the steps admin can take
Get insights into risky AI usage at an organization level in an anonymized form using analytics
Create Risky AI usage policy to track risky prompts and sensitive responses in M365 Copilot, Copilot Studio
The activity explorer in alerts gives a single threaded view of prompt, response along with the sensitive information present
Use the new Generative AI indicators in adaptive protection for user risk score
Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage, and security violations. Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.
Main Admin link: Learn about insider risk management policy templates | Microsoft Learn
https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview
https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281
Below are some of the steps admin can take
Get insights into risky AI usage at an organization level in an anonymized form using analytics
Create Risky AI usage policy to track risky prompts and sensitive responses in M365 Copilot, Copilot Studio
The activity explorer in alerts gives a single threaded view of prompt, response along with the sensitive information present
Use the new Generative AI indicators in adaptive protection for user risk score
Microsoft Purview Insider Risk Management correlates various signals to identify potential malicious or inadvertent insider risks, such as IP theft, data leakage, and security violations. Insider Risk Management enables customers to create policies based on their own internal policies, governance, and organizational requirements. Built with privacy by design, users are pseudonymized by default, and role-based access controls and audit logs are in place to help ensure user-level privacy.
Main Admin link: Learn about insider risk management policy templates | Microsoft Learn
https://www.microsoft.com/microsoft-365/roadmap?rtc=1%26filters=&searchterms=394281
2025-03-07MC SummaryMicrosoft Purview Insider Risk Management will roll out risky AI usage detections. Public Preview starts in early December 2024, and General Availability begins mid-August 2025. This update helps admins identify risky AI activity in generative AI apps, including M365 Copilot, Copilot Studio, and ChatGPT Enterprise. Admins should prepare by creating policies and using new analytics and indicators.Microsoft Purview Insider Risk Management will soon roll out risky AI usage detections. Public Preview starts in early December 2024, and General Availability begins mid-June 2025. Admins can prepare by using analytics, creating policies, and leveraging new Generative AI indicators. More details can be found [here](https://learn.microsoft.com/purview/insider-risk-management-policy-templates#risky-ai-usage-preview).
2025-03-01MC MessageTagNamesNew feature, User impact, Admin impactUpdated message, New feature, User impact, Admin impact
2025-03-01MC SummaryMicrosoft Purview Insider Risk Management will roll out risky AI usage detections. Public Preview starts in early December 2024, and General Availability begins mid-August 2025. This update helps admins identify risky AI activity in generative AI apps, including M365 Copilot, Copilot Studio, and ChatGPT Enterprise. Admins should prepare by creating policies and using new analytics and indicators.
2025-03-01MC Last Updated12/03/2024 00:52:352025-02-28T18:06:46Z
2025-03-01MC MessagesComing soon, Microsoft Purview Insider Risk Management will be rolling out risky AI usage detections
This message is associated with Microsoft 365 Roadmap ID 394281
[When this will happen:]
Public Preview: We will begin rolling out early December 2024 and expect to complete by mid-December 2024.
General Availability (Worldwide): We will begin rolling out mid-February 2025 and expect to complete by late February 2025
Updated February 28, 2025: We have updated the rollout timeline below. Thank you for your patience.
Coming soon, Microsoft Purview Insider Risk Management will be rolling out risky AI usage detections
This message is associated with Microsoft 365 Roadmap ID 394281
[When this will happen:]
Public Preview: We will begin rolling out early December 2024 and expect to complete by mid-December 2024.
General Availability (Worldwide): We will begin rolling out mid-August 2025 (previously mid-February) and expect to complete by late August (previously late February).
2025-03-01MC TitleMicrosoft Purview | Insider Risk Management- Risky AI usage(Updated) Microsoft Purview | Insider Risk Management- Risky AI usage
2025-03-01MC End Time05/30/2025 09:00:002025-10-06T09:00:00Z

Last updated 1 month ago

Share to MS Teams

Login to your account

Welcome Back, We Missed You!