The session kicked off with an introduction to the MS-4017 course, focused on managing Microsoft 365 Copilot at the tenant level. It's a technical course aimed at administrators who have experience with Microsoft Entra ID and Microsoft 365. The goal is to understand how to configure Copilot, manage expectations, and cover a mix of technical and conceptual aspects.
A significant portion of the session was dedicated to security and compliance, highlighting the critical role of Microsoft Purview. Purview, formerly known as the compliance center, is a powerful solution for information protection, including sensitivity labeling and data loss prevention. It helps ensure that sensitive information used by Copilot is identified and protected. The importance of aligning with regulations like GDPR and ISO standards was also emphasized, with Purview offering assessment tools to help organizations achieve compliance.
The concept of Zero Trust was discussed as a central pillar for security, emphasizing "never trust, always verify". This includes explicit verification, the principle of least privilege, and assuming breaches. Applying "just-in-time access" and "just-enough access" principles were highlighted as key to reducing the risk of data leaks.
The session then moved to SharePoint Advanced Management. It's crucial to ensure data in SharePoint is well-organized, secure, and has the correct permissions before fully leveraging Copilot. The importance of managing content governance, limiting oversharing, and cleaning up unused sites with potentially sensitive information was underscored. SharePoint Administrators play a key role and require specific permissions to manage these settings. Permissions can be set at the site, page, folder, and even individual file level.
Preparing your data for Copilot is another critical step. This involves eliminating redundant, outdated, and trivial data (ROT). Cleaning up old versions of documents and ensuring consistent naming conventions are essential for Copilot to provide accurate and relevant responses. Tagging files with keywords acts as metadata, making it easier for Copilot to retrieve specific information. Establishing clear governance and security policies for Microsoft 365 and Copilot is also vital, with designated individuals or teams responsible for data quality.
Understanding Copilot licensing is crucial for implementation. Copilot is an add-on to existing Microsoft 365 licenses, requiring at least a Microsoft 365 Enterprise E3 or E5 license, or specific Office Enterprise E3 or E5 licenses. Best practices for license assignment involve monitoring usage and ensuring that licenses are allocated to those who actively benefit from Copilot.
The session also touched upon extending Copilot capabilities. Copilot Studio allows for the creation of custom copilots and agents with specific functionalities, connecting to various data sources and automating processes. This is distinct from the core Microsoft 365 Copilot, which focuses on employee productivity within Microsoft 365 applications. Connectors and plugins can further extend Copilot's reach to external data sources like Salesforce and Service Now.
Finally, the discussion clarified the different types of Copilot:
In this episode, we explore one of the most transformative regulatory frameworks in the world of technology: the EU Artificial Intelligence Act. As AI systems rapidly evolve and integrate into every aspect of our lives—from healthcare and education to justice and cybersecurity—the need for robust governance, transparency, and ethical oversight has never been more urgent.
Join Néstor Reverón, cloud and AI educator at Microsoft and certified Expert in Law and Artificial Intelligence (University of Barcelona), as he unpacks the key provisions of the EU AI Act, its alignment with the GDPR, and what it means for developers, organizations, and governments. We discuss risk classifications, conformity assessments, transparency requirements, AI ethics, and the emerging challenges of General Purpose AI (GPAI).
This episode is a must-listen for professionals at the intersection of law, cloud computing, and emerging technologies. Learn how to build and deploy AI responsibly in a way that respects fundamental rights, promotes innovation, and ensures legal compliance.
🔍 Topics covered:
Risk-based classification of AI systems
Role of the European AI Office, AESIA, and regulatory sandboxes
Data governance, transparency, and accountability
AI Liability Directive and cybersecurity obligations
Practical steps for building AI compliance programs
The role of AI trainers and cloud educators in this new era
🎙️ Let’s move beyond compliance — toward a future where AI is responsible, explainable, and human-centered.
#AIRegulation #EUAIAct #EthicalAI #GDPR #AICompliance #ResponsibleInnovation #CloudTraining #ArtificialIntelligence #MicrosoftTrainer #Podcast
In this episode, we dive deep into the critical world of corporate data security and compliance within the Microsoft 365 environment. Our expert guide, Nestor Reveron, walks us through the essential pillars of safeguarding sensitive information and fostering a secure workplace:
•Communication Compliance: Discover how to monitor and manage communication channels like email and Microsoft Teams to ensure they align with regulatory standards and internal policies. Learn to identify risky keywords and patterns, set up alerts for potential violations, and train your team on responsible communication practices.
•Insider Risk Management: Uncover the proactive steps to identify and mitigate potential threats from within your organization. Explore tools and strategies for detecting data leaks, unauthorized access, and suspicious activities. Understand how to leverage real-time signals, machine learning, and integrated workflows to protect your most valuable assets.
•Information Barriers: Explore the concept of creating secure data silos within your organization. Learn how to set up information barriers to restrict communication between specific departments or groups, preventing conflicts of interest, safeguarding sensitive data, and ensuring compliance with regulations like GDPR.
•Microsoft Privacy: Delve into the features and functionalities of Microsoft Privacy, a powerful solution within Microsoft Purview for protecting employee data.
Understand how to configure policies to automatically identify and safeguard personal information, empower individuals to manage their data, and maintain compliance with privacy regulations.Join us for this insightful session as we unravel the complexities of corporate security and compliance in the digital age.
Learn to implement practical solutions and strategies to fortify your organization's defenses and cultivate a culture of security awareness
In this episode, explore the intricacies of data retention and compliance within the Microsoft Purview ecosystem.
•Retention based on events: Learn how to leverage event-based retention policies, enabling the automatic retention or deletion of data based on specific triggers like project closure or employee departure.
•Service-based retention: Delve into the concept of service-based retention, such as mailbox holds, to preserve critical data and prevent loss, particularly in scenarios involving legal matters or sensitive information.
•Compliance Manager: Discover the power of Compliance Manager, a centralized and automated solution for evaluating and enhancing your organization's compliance posture. Understand how to create assessments based on industry regulations like the Gramm-Leach-Bliley Act.
•Content Search: Explore the capabilities of content search within Microsoft Purview. Learn how to perform targeted searches, refine results using keywords and filters, and export findings for further analysis. Understand the limitations of content search as a recovery tool.
•eDiscovery: Discover the advanced features of eDiscovery, particularly in its premium iteration, offering enhanced capabilities for custodian management, advanced integrations for complex data, and sophisticated filtering and analysis tools.
•Case Management: Gain insights into managing legal or investigative cases within Microsoft Purview. Learn about creating, closing, and reopening cases, applying legal holds to preserve data, and exporting results for review and analysis.By mastering these concepts, you'll be well-equipped to navigate the complexities of data retention, compliance, and eDiscovery within Microsoft Purview, ensuring your organization remains secure and compliant
This podcast episode delves into the crucial topic of data loss prevention (DLP) within the Microsoft Purview ecosystem. DLP policies are essential for organizations to identify, monitor, and protect sensitive information from unauthorized access, use, or disclosure.
The episode explores the various components of DLP within Microsoft Purview:
•Sensitive Information Types: Learn how to define and customize sensitive information types like credit card numbers, employee IDs, and passport information to tailor protection to specific needs.
•Policy Creation and Customization: Explore the process of creating custom DLP policies and rules to define conditions and actions based on the detected sensitive information. The podcast explains how to configure policies to block sharing of credit card numbers in emails and Teams chats, notify users attempting to share sensitive data, and even quarantine files containing specific information.
•Endpoint DLP: Discover the capabilities of endpoint DLP to extend protection to Windows and macOS devices. Understand how to configure policies to restrict data transfer via Bluetooth, prevent printing of sensitive documents, and control data sharing with cloud storage services like Dropbox or Google Drive.
•Integration with Microsoft Defender for Endpoint: Learn how integrating DLP policies with Microsoft Defender for Endpoint provides comprehensive protection by monitoring and controlling activities related to sensitive data on devices.
•File Plan and Retention Labels: Explore the concept of a file plan within record management to structure and document data classification, retention, and deletion policies. The podcast explains how to create and apply retention labels to ensure compliance with industry regulations and legal requirements, using examples like retaining financial records for a specific period.
This episode is essential listening for IT professionals, security administrators, and anyone responsible for protecting sensitive data within their organization. By understanding and implementing the robust DLP features offered by Microsoft Purview, you can significantly strengthen your organization's security posture and ensure compliance with data protection regulations.
In this episode, we dive into the core concepts and essential tools for information protection in enterprise environments using Microsoft 365. Learn how the SC-400: Information Protection Administrator certification equips administrators to plan and implement compliance and risk controls with Microsoft Purview. What you’ll discover: What is Microsoft Purview, and how does it enhance data security? Initial setup: audit activation, search configuration, and data barriers. Hands-on labs to master data loss prevention policies and lifecycle management. This episode is perfect for professionals seeking to enhance their skills in cybersecurity, compliance, and cloud data management. Don’t miss this practical guide to leveraging Microsoft tools for enterprise-level security!
Dive deep into Microsoft Sentinel, a comprehensive security information and event management (SIEM) tool that’s revolutionizing cloud-native security. In this episode, we cover how Sentinel integrates with Azure, providing a powerful, fully managed solution for security events, threat detection, and automated responses. Learn about key features such as security orchestration, automation with playbooks, and its seamless connection to Azure’s Log Analytics for enhanced threat intelligence. We also discuss best practices for deployment, insights into Sentinel’s competitive position in the security landscape, and how it leverages machine learning and AI to streamline incident detection and response. Perfect for IT professionals seeking to enhance their security operations and manage compliance in multi-cloud environments.
In this episode, we take an in-depth look at Microsoft Defender for Cloud and its many features, focusing on how to enhance security posture in hybrid and multicloud environments. We cover essential configurations to protect applications, databases, and servers using various Defender plans, including Defender for Servers and Defender for App Services. Additionally, we discuss cost optimization strategies within Azure, such as disk management and serverless resource utilization. We also highlight tools like Log Analytics and Sentinel for advanced monitoring and incident detection, as well as the recent integration of native vulnerability management capabilities in Azure. This episode is perfect for security professionals and cloud administrators looking to maximize the efficiency of their environments secured with Microsoft Defender
In this session, we dive deep into Microsoft Defender for Cloud and its integration with other Azure services like Log Analytics and Azure Arc. Through hands-on labs, we explore how Defender for Cloud helps enhance security across various Azure resources. We'll cover the essential setup for Log Analytics Workspace, Data Collection Roles, and delve into security management across on-premises and multi-cloud environments with Azure Arc. Join us for a practical walkthrough that includes setting up resources, understanding compliance features, and using Log Analytics for comprehensive monitoring. Perfect for IT professionals looking to bolster their security knowledge in Azure!
This is a transcription of a virtual training course on Microsoft Security products. The instructor, Nestor Reveron, provides guidance on activating laboratory environments, explaining features of Microsoft Defender for Identity, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, and Microsoft Defender for Cloud Apps. Reveron also highlights the importance of assigning roles and permissions within these security tools to control access and ensure proper management. The transcription covers a wide range of topics, including threat detection, incident response, vulnerability management, and data protection.
Comprehensive Summary of Microsoft 365 Copilot
Microsoft 365 Copilot is an AI-powered tool that enhances productivity and efficiency across various Microsoft applications. It leverages Large Language Models (LLMs) combined with data from Microsoft Graph and Microsoft 365 applications. This integration allows Copilot to convert natural language into powerful productivity tools by understanding user input and generating relevant responses.
Here's a breakdown of Copilot's functionality across different applications:
Word:
PowerPoint:
Excel:
Microsoft Teams:
Outlook:
Microsoft 365 Business Chat:
To maximize Copilot's effectiveness, it's crucial to provide well-crafted prompts. These prompts should include:
Using these elements in prompts will guide Copilot to deliver accurate and relevant results, enhancing productivity and efficiency across Microsoft 365 applications.
Microsoft emphasizes ethical and responsible AI development. Their commitment to principles like fairness, reliability, privacy, security, inclusiveness, transparency, and accountability ensures Copilot's responsible design and deployment.
Important notes:
Resumen del Curso MS 4005: Crear Mensajes Eficaces para Microsoft 365 Copilot Introducción y Objetivos del Curso: 1. Introducción y Objetivo del Curso Este curso está diseñado para enseñar a los usuarios cómo crear prompts efectivos y específicos para Microsoft 365 Copilot, mejorando así la productividad en aplicaciones como Word, Excel, PowerPoint, Teams, Outlook y OneNote. Se enfatiza la importancia de definir con claridad el objetivo, contexto, fuentes y expectativas en cada prompt para obtener respuestas precisas y útiles de Copilot. 2. Descripción General de Microsoft 365 Copilot Capacidades: Copilot transforma la experiencia de usuario en Microsoft 365 mediante la integración de IA para facilitar tareas como creación de contenido, análisis de datos, resúmenes y gestión de productividad. Funcionamiento de la IA: Utiliza modelos de lenguaje grandes (LLM) y datos de Microsoft Graph para generar respuestas contextuales. Por ejemplo, puede resumir correos, ayudar en la creación de presentaciones, reformular textos y gestionar notas de reuniones. Seguridad de Datos: Microsoft 365 Copilot cumple con los estándares de privacidad y seguridad de datos, garantizando que la integración de IA sea segura en los flujos de trabajo de la organización. 3. Uso de Copilot en Aplicaciones de Microsoft 365 Word: Asiste en la redacción, resumen y formato de documentos. Los usuarios aprenden a crear prompts específicos para resumir o formatear contenido. Excel: Ayuda en el análisis de tendencias de datos, generación de resúmenes y visualización de información. PowerPoint: Facilita la creación de diapositivas, resumir contenido y mejorar el diseño de las presentaciones. Teams y Outlook: Mejora la productividad al resumir reuniones y correos. Copilot también ayuda a identificar puntos clave y gestionar tareas. Business Chat: Proporciona un acceso centralizado a información de correos, documentos y notas de reuniones mediante IA. 4. Creación de Prompts Efectivos El curso se enfoca en estructurar los prompts con cuatro elementos esenciales: Objetivo: Definir la tarea o el propósito. Contexto: Proporcionar antecedentes o información situacional. Fuentes: Especificar documentos o fuentes de datos relevantes. Expectativas: Clarificar el formato o tono de la salida esperada. Se ofrecen ejemplos y escenarios para ilustrar cómo los prompts detallados producen mejores respuestas de Copilot, adaptadas a diversas tareas y aplicaciones. 5. Compromiso de Microsoft con la IA Responsable Microsoft sigue principios de IA responsable como equidad, confiabilidad, privacidad, inclusión, transparencia y responsabilidad. Copilot cumple con estos principios, garantizando una asistencia confiable y respetuosa con la privacidad del usuario y alineada con la ética corporativa. 6. Ejercicios Interactivos y Prácticas Se incluyen ejercicios prácticos para que los usuarios desarrollen prompts en diferentes aplicaciones de Microsoft 365. Los participantes practican el resumen de documentos, la obtención de insights de datos en Excel y la creación de presentaciones en PowerPoint, reforzando las técnicas de redacción de prompts. En resumen, el curso MS-4005 tiene como objetivo ayudar a los usuarios a aprovechar al máximo Microsoft 365 Copilot mediante prompts efectivos y detallados, brindando escenarios prácticos y una comprensión profunda de cómo las herramientas de IA pueden optimizar la productividad en Microsoft 365.
ISO 42001: A Framework for Ethical and Responsible AI Governance ISO 23894: A Detailed Approach to AI Risk Management Benefits of Integrating ISO 42001 and ISO 23894 In conclusion, ISO 42001 and ISO 23894 complement the EU AI Act by providing practical guidance for organizations to manage AI systems safely, transparently, and responsibly. Implementing these standards demonstrates a commitment to ethical AI practices and facilitates compliance with the EU AI Act, promoting trust and confidence in AI technologies.
Cursos en LinkedIn recomendados para mejorar el perfil: Rock Your LinkedIn Profile Connect to opportunity with LinkedIn https://www.linkedin.com/learning/rock-your-linkedin-profile/connect-to-opportunity-with-linkedin?u=0 ChatGPT Prompts for Jobseekers Using AI to write an effective LinkedIn profile https://www.linkedin.com/learning/chatgpt-prompts-for-jobseekers/using-ai-to-write-an-effective-linkedin-profile?u=0 Datos de contacto: Twitter: https://twitter.com/nestorreveron LinkedIn: https://aka.ms/nestor Page: https://nestorreveron.com
Página de empleos de MIcrosoft: https://careers.microsoft.com/v2/global/en/home.html Cómo postularse a empleos en Microsoft desde su página: https://youtu.be/vJA_hcQp6No Datos de contacto: Twitter: https://twitter.com/nestorreveron LinkedIn: https://aka.ms/nestor Page: https://nestorreveron.com
Página de empleos de MIcrosoft: https://careers.microsoft.com/v2/global/en/home.html Datos de contacto: Twitter: https://twitter.com/nestorreveron LinkedIn: https://aka.ms/nestor Page: https://nestorreveron.com
https://www.microsoft.com/en-us/store/b/copilotpro https://support.microsoft.com/en-us/copilot-pro Aprende como activar Copilot Pro en tus aplicaciones de Microsoft 365. "¿Estás listo para explorar el futuro de la productividad y la inteligencia artificial con Microsoft? En este video, desglosamos todo lo que necesitas saber sobre Microsoft Copilot Pro y Microsoft 365 Copilot. Aprenderás las diferencias clave, los beneficios únicos y cómo cada versión puede transformar tu manera de trabajar. Microsoft Copilot Pro y Microsoft 365 Copilot están diseñados para revolucionar la productividad, pero cada uno tiene sus particularidades. Ya sea que estés buscando una integración más profunda con herramientas específicas de Microsoft o una solución más adaptada a las necesidades de tu empresa, te guiaremos a través de las características que hacen a cada versión especial. Desde la automatización de tareas hasta el análisis de datos avanzado y la creación de contenido dinámico, descubrirás cómo estos asistentes inteligentes pueden hacerte más eficiente y creativo en tu trabajo. Además, compartiremos ejemplos prácticos para que veas cómo aplicar estas herramientas en situaciones reales. No importa si eres un profesional de TI, un gerente de proyectos, o simplemente alguien interesado en las últimas tecnologías de Microsoft, este video te proporcionará una comprensión clara de qué Copilot se adapta mejor a tus necesidades y cómo empezar a sacarle el máximo provecho. ¡Acompáñanos en este viaje hacia una productividad revolucionada con la inteligencia artificial de Microsoft! Datos de contacto: Twitter: https://twitter.com/nestorreveron LinkedIn: https://aka.ms/nestor Page: https://nestorreveron.com
Video de este podcasts en YouTube: https://youtu.be/M6mVIq1rIoo
Podcast Mode: Aprenderemos usando la plataforma de Microsoft Learn, estaré leyendo todo el contenido disponible esta gran plataforma y a la vez, estaré agregando mis comentarios al respecto de cada tema. Trataré de narrarlo para que usted de forma auditiva pueda aprender mientras conduce, trabaja o realiza cualquier otra actividad donde no pueda ver constantemente una pantalla.
Video de este podcasts en YouTube: https://www.youtube.com/watch?v=-bA2jTcXWbc
Podcast Mode: Aprenderemos usando la plataforma de Microsoft Learn, estaré leyendo todo el contenido disponible esta gran plataforma y a la vez, estaré agregando mis comentarios al respecto de cada tema. Trataré de narrarlo para que usted de forma auditiva pueda aprender mientras conduce, trabaja o realiza cualquier otra actividad donde no pueda ver constantemente una pantalla.
Video de este podcast en YouTube: https://www.youtube.com/watch?v=-bA2jTcXWbc
Podcast Mode: Aprenderemos usando la plataforma de Microsoft Learn, estaré leyendo todo el contenido disponible esta gran plataforma y a la vez, estaré agregando mis comentarios al respecto de cada tema. Trataré de narrarlo para que usted de forma auditiva pueda aprender mientras conduce, trabaja o realiza cualquier otra actividad donde no pueda ver constantemente una pantalla.
Learning path: 1/4 Microsoft Security, Compliance, and Identity Fundamentals: Describe the concepts of security, compliance, and identity
Este video es uno de los dos módulos que se incluyen este Learning Path:
* Describe security and compliance concepts - 8 Unidades (Este video)
* Describe identity concepts - 8 Unidades
SP 800-145: The NIST Definition of Cloud Computing - https://csrc.nist.gov/publications/detail/sp/800-145/final
Material del video: https://docs.microsoft.com/en-us/learn/modules/describe-security-concepts-methodologies/
Microsoft Certification: study materials, practice tests and special offers: https://global3.mindhub.com/shop/microsoft
Microsoft Learn: https://docs.microsoft.com/en-us/learn/
Microsoft training and certifications: https://aka.ms/SecurityTrainCertDeck
Certification poster: https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE2PjDI
¿Qué implica la creación de certificaciones de Microsoft?: https://techcommunity.microsoft.com/t5/microsoft-learn-blog/what-goes-into-creating-microsoft-certifications/ba-p/1469346
Microsoft technical documentation: https://docs.microsoft.com/en-us/?WT.mc_id=Security_BoM-wwl
Build great solutions with the Microsoft Azure Well-Architected Framework: https://docs.microsoft.com/en-us/learn/paths/azure-well-architected-framework/?WT.mc_id=Security_BoM-wwl
Azure Architecture Center: https://docs.microsoft.com/en-us/azure/architecture/?WT.mc_id=Security_BoM-wwl
Microsoft Security Technical Content Library: https://www.microsoft.com/en-us/security/content-library/Home/Index?culture=en-US
Microsoft Entra (Azure AD): https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad/bd-p/Azure-Active-Directory?WT.mc_id=Security_BoM-wwl
Datos de contacto:
Anchor: https://anchor.fm/nestorreveron
Twitter: https://twitter.com/nestorreveron
LinkedIn: https://aka.ms/nestor
Page: https://nestorreveron.com
https://www.linkedin.com/showcase/microsoft-security/
https://twitter.com/msftsecurity