A Compliance conversation with Joanne Klein

Sarah Haase
REgarding 365
Published in
2 min readFeb 24, 2021

--

We’re thrilled to have our friend and fellow MVP Joanne Klein join us on Episode 45 of the Microsoft 365 Voice podcast. Joanne specializes in Compliance and Microsoft Information Protection (MIP) and has great guidance to offer organizations as they traverse the Compliance space. Here are a few of the topics covered in this episode:

  • There are always new things to learn. Joanne shared a bit about her background in the Compliance space and gave us some insights into the learning she’s doing as part of her new role as a Global Black Belt for Microsoft.
  • Think “big picture” first. Joanne recommends organizations start their Compliance journey with broad discussions on goals and key drivers. Laying a foundation that outlines organizational risk tolerance and data security needs will help you make detailed Compliance decisions (e.g. retention schedules, automatic archiving) down the road.
  • End-users are key to your success. New automation capabilities can help auto-tag documents and apply retention labels, but technology alone can’t close all your Compliance and security gaps. To ensure your content is labeled and secured appropriately, you need your end-users to play an active role. Ensuring they know how to label content (and how to choose the correct label) is a key part of your Compliance success story.
  • “Perfect is the enemy of good.” Content tagging isn’t an exact science. There is no perfect strategy (or ideal set of labels) that will ensure all your content is tagged appropriately. Even if you use auto-classification, there is still a margin of error for content to be mislabeled. Set realistic expectations on what you can achieve with appropriate controls, automation, and end-user education.
  • Identify who your decision-makers are. Build a RACI model to define who is responsible, accountable, consulted, and informed about your Compliance decisions. Do you have a Compliance Manager? Is the Compliance team driving decisions? What role does your security team have?

We hope you enjoy the conversation.

Have a Microsoft 365 question? Submit it online! Your question may be featured in a future podcast episode.

Originally published at http://blog.splibrarian.com on February 24, 2021.

--

--

Corporate collaboration evangelist & librarian | Microsoft MVP | Office 365 enthusiast | SharePoint Saturday Twin Cities organizer