Brazil, Australia, Zurich, Yokohama
Integration
Provides out-of-the-box integration to import DLP incidents from Microsoft Purview (OneDrive, SharePoint, Teams, Exchange Online) and other event types as well. This app can be used in combination with Data Loss Prevention Incident Response app to automate DLP incident remediation workflow for incidents generated by Microsoft Purview. This app also provides the ability to automatically release emails quarantined by Microsoft Purview post an approval workflow.
- Import DLP incidents created for OneDrive, SharePoint, Exchange Online, and Teams.
- Ability for DLP analysts to view matched sensitive data types, confidence score, match count, and the text snippet that violated the policy (matched text snippets are not stored in ServiceNow).
- Ability for DLP analysts to download the evidence file/email.
- Added correlation ID within the DLP incident table to map the integration ID to the DLP incidents.
Fixed :
1) Unique Blob Storage File Names for Microsoft DLP
- Updated the external Blob Storage file naming convention for Microsoft DLP to include instance-specific details. This ensures that when multiple ServiceNow instances are configured to use the same Microsoft DLP source, each instance stores files with unique names, preventing encryption and decryption conflicts across instances.
2) Correct Match Count Display for DLP Endpoint Incidents
- Resolved an issue where the Match Count field in the Details section of DLP Endpoint incidents always displayed 0, even when a valid Match Count was available in the SIT Info tab. The Details section now correctly displays the actual Match Count.
Not applicable for this application version.
- Required plugins and products.
- Dependencies.
- Properties that need to be created or set to activate the content pack.
- Affected business rules.
- Affected script includes.
- .jar files that need to get uploaded, if applicable.