Skip to content
Work
Implementations

AI processing of content assets.

Purview classification limits what the agent sees to permitted content only, so using AI does not widen the security risk.

Professional services organization, thousands of documents in several formats and systems

The challenge

A typical organization has a huge amount of content: reports, contracts, memos and attachments collected over the years from different systems and formats. Some of it is sensitive and some public, but no one has ever marked which is which. When Copilot and agents start rolling out, this suddenly becomes a security question: in principle the agent might retrieve and show anything, including content the user should not have access to.

How the solution is built

The solution does not start with restricting the agent but with classifying the material. First, what content is sensitive, who owns it and who should really have access to it is worked through. With Microsoft Purview, a classification is built that marks the content’s sensitivity level and access rights machine-readably, not as a note written into the document’s name.

Only after this is the agent technically limited to seeing only the material the asker has a right to. This means the same agent gives different users different answers to the same question, depending on what they can access. Not because the agent is inconsistent, but because the access rights behind it genuinely differ.

What the solution aims for

The use of AI expands without the security risk expanding with it. The organization can show what material the agent has access to and what it does not, instead of trusting that no one notices a wrong hit.

What everyday work looks like
100%

of the material is classified and its ownership documented before the agent goes into use

0

hits on material the asker has no right to is the solution's technical target state

Weeks

is what the classification takes, not months, when it is limited to the material that matters

The goal: the organization knows exactly what the agent can see, and what it can never reach.

This could be you

Could this work for you too?

The same model scales to organizations of every size. Tell us about your situation, and we'll take a look together.

More examples