Can Microsoft Information Protection apply sensitivity labels and encrypt files in real time?

hccuser 21 Reputation points
2022-02-09T21:43:23.943+00:00

I'm trying to find a workaround to protect files being uploaded into OneDrive from unmanaged devices from thick clients and mobile device apps. Since it is not possible to block them with Microsoft Defender for Cloud Apps session control policies (they don't work for thick clients or mobile apps), I am trying to find an alternative to an access policy that blocks everything to force web browser access.

I found this blog post where it seems that MIP can help with the thick client control: 2011039

Is it possible for MIP to apply sensitivity labels and file encryption real time for files coming in from thick clients and mobile apps? If so, this would be a good balance since any sensitive information will be encrypted and locked down based on the MIP policies. If not, does anyone have any methods they have used to try to fill in this gap?

Thanks.

Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
560 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Vasil Michev 119.9K Reputation points MVP Volunteer Moderator
    2022-02-10T08:08:51.88+00:00

    You can use auto-label policies: https://learn.microsoft.com/en-us/microsoft-365/compliance/apply-sensitivity-label-automatically?view=o365-worldwide
    Or run a flow that stamps a label on each file post-upload.

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.