CrowdStrike Makes Falcon Data Security for SaaS Generally Available for Microsoft 365

· Original article ↗

Summary

CrowdStrike’s generally available service discovers and classifies sensitive data in Microsoft 365’s SharePoint, OneDrive, and Copilot, and can apply protections such as sensitivity labels, access controls, and sharing restrictions.

Key points

  • The service covers SharePoint, OneDrive, and Copilot without requiring an additional sensor.
  • It continuously discovers and classifies sensitive data, including PII, health information, and payment card data, using built-in and custom patterns.
  • It can apply Microsoft Sensitivity Labels that activate protections such as encryption, access controls, sharing restrictions, watermarks, and limits on AI access.
  • It highlights exposure risks such as anonymous links, external sharing, overly broad access, and regulated data stored in unexpected locations.
  • Findings can feed into CrowdStrike Falcon Next-Gen SIEM for investigation alongside other security telemetry.
  • Integration with Falcon Privileged Access supports time-limited access to sensitive SharePoint content, with access removed when the approved period ends.

Article Details

Event Type
General availability of Falcon Data Security for SaaS
Impact
CrowdStrike says the product can discover and classify sensitive data in Microsoft 365, identify exposure risks, and apply policy-based protections across SharePoint, OneDrive, and Microsoft Copilot. These are stated capabilities; the article reports no specific security incident or measured impact.

Vendors

Products

Related Articles