Cegeka Careers Language Why Cegeka Back
Trinity of Innovation

5G, Artificial Intelligence and hybrid cloud: all breakthrough technologies in and by themselves. But their real potential?

Discover the future with us
Icons_Navigation_Cegeka&Society

Cegeka & Society

We develop innovative solutions with a positive impact on the environment, people, and society.

Icons_Navigation_Why Cegeka

Why Cegeka

As a family-owned IT solutions provider, we work In close cooperation with our customers.

Icons_Navigation_Our Story

About Us

Our strong values form the cornerstone of our identity and are at the baseline of our success.

Icons_Navigation_Annual Report

Annual Report

Dive into the details of our growth. Read the full report and learn more about our continued success.

More Cegeka

Our Management

Corporate News

Contact & Locations

Solutions Back
Solutions
Hybrid Cloud

Hybrid Cloud

Explore the added value of cloud adoption for your business

Data solution

Data & AI

Discover our different data solutions to help you become a data-driven company.

RegulatoryCompliance_Visuals_Navigation (1)

Regulatory Compliance

Ensure GDPR & GxP compliance with our comprehensive solutions.

Cyber Security & Networking Solution

Cyber Security & Networking

With cyber resilience, your organisation becomes a bit more secure with each day.

Digital Workplace Solution

Digital Workplace

Hybrid workplaces that increases productivity and reduces costs

Testing_Visuals_IconNavigation (1)

Testing Solutions

Experts in testing, program development, automation, training, and certification.

Applications Solution

Applications

Building the applications to embed growth, innovation and agility

Business Solutions

Business Solutions

Transform your business with Microsoft Dynamics ERP and CRM, integrated with Microsoft’s Power Platform.

website_navigation_dms_cegeka_uk

Disclosure Management System

Transformation and implementation of our information disclosure product

5G_Citymesh

5G & Mobile Private Networks

Expertise and development experience to bring all the advantages of 5G

Products and platform solutions

Products & Platforms

Software solutions that optimize business processes and drive success.

Services Back
Services
Website_Navigation_IT_Team_Extension_3

IT Team Extension

The best IT professionals to support your projects

AgileCoaching_Blog_The applicability of Agile and Scrum

Agile and DevOps Services

Your guide on your journey towards sustainable value delivery

Outsourcing Services

Outsourcing & Managed Services

Outsourcing your IT helps you to focus on your strategy.

Website_Navigation_Consultancy

Consultancy

The right skills and attitude to support the IT projects at your office

Website_Navigation_Projects

Projects

Integrating the right digital solutions for your IT project

Industries Back
Industries

Our industry-tailored services are designed to address specific challenges and opportunities across different industries

Website_Navigation_Finance_and_Insurance-1

Finance & Insurance

Take a major step towards cloud computing to increase effectiveness through the use of AI and big data.

Industries_Federal_Social_Government_Headervisual_General_1000x800px

Federal & Social Government

Embrace digitalization and harness the power of data to make citizens' lives easier, work smarter and boost efficiency.

Website_Navigation_Telecom_UK

Telecom

Unlock the potential of 5G and IoT to deliver faster, smarter, and more reliable services.

Insights Back
Knowledge is our backbone

We believe in sharing our insights and expertise with you. Explore our resources and learn more about our products, services and industry trends.

Icons_Navigation_Case Studies

Case Studies

Step into the world of our delighted customers and see how we helped them achieve their goals.

Icons_Navigation_News Items

Corporate News

Stay in the loop with our company news, announcements, awards and events.

Icons_Navigation_Blogs

Blogs

Read our latest articles on topics ranging from technology, innovation, business and beyond.

Icons_Navigation_Webinars

Webinars

Be part of the action with our live or on-demand webinars, where our experts share invaluable knowledge.

Icons_Navigation_Ebooks

E-books & Whitepapers

Download our guides and reports on various aspects of technology and business.

Icons_Navigation_Events

Events

Find out where we are going to be next, and register for our upcoming events.

CTG Academy

Academy

Enhance your skills with our expert-led training courses, tutorials, and certifications at our Academy.

Join our Academy
Back
Select language

English - United Kingdom

Corporate (English)

Austria (German)

Belgium (Dutch)

Belgium (French)

Denmark (English)

Germany (German)

Greece (Greek)

Italy (Italian)

Romania (English)

Sweden (English)

The Netherlands (Dutch)

United Kingdom (English)

Let’s get in touch
Cegeka Why Cegeka
Trinity of Innovation

5G, Artificial Intelligence and hybrid cloud: all breakthrough technologies in and by themselves. But their real potential?

Discover the future with us
Icons_Navigation_Cegeka&Society

Cegeka & Society

We develop innovative solutions with a positive impact on the environment, people, and society.

Icons_Navigation_Why Cegeka

Why Cegeka

As a family-owned IT solutions provider, we work In close cooperation with our customers.

Icons_Navigation_Our Story

About Us

Our strong values form the cornerstone of our identity and are at the baseline of our success.

Icons_Navigation_Annual Report

Annual Report

Dive into the details of our growth. Read the full report and learn more about our continued success.

More Cegeka

Our Management

Corporate News

Contact & Locations

Solutions
Solutions
Hybrid Cloud

Hybrid Cloud

Explore the added value of cloud adoption for your business

Data solution

Data & AI

Discover our different data solutions to help you become a data-driven company.

RegulatoryCompliance_Visuals_Navigation (1)

Regulatory Compliance

Ensure GDPR & GxP compliance with our comprehensive solutions.

Cyber Security & Networking Solution

Cyber Security & Networking

With cyber resilience, your organisation becomes a bit more secure with each day.

Digital Workplace Solution

Digital Workplace

Hybrid workplaces that increases productivity and reduces costs

Testing_Visuals_IconNavigation (1)

Testing Solutions

Experts in testing, program development, automation, training, and certification.

Applications Solution

Applications

Building the applications to embed growth, innovation and agility

Business Solutions

Business Solutions

Transform your business with Microsoft Dynamics ERP and CRM, integrated with Microsoft’s Power Platform.

website_navigation_dms_cegeka_uk

Disclosure Management System

Transformation and implementation of our information disclosure product

5G_Citymesh

5G & Mobile Private Networks

Expertise and development experience to bring all the advantages of 5G

Products and platform solutions

Products & Platforms

Software solutions that optimize business processes and drive success.

Services
Services
Website_Navigation_IT_Team_Extension_3

IT Team Extension

The best IT professionals to support your projects

AgileCoaching_Blog_The applicability of Agile and Scrum

Agile and DevOps Services

Your guide on your journey towards sustainable value delivery

Outsourcing Services

Outsourcing & Managed Services

Outsourcing your IT helps you to focus on your strategy.

Website_Navigation_Consultancy

Consultancy

The right skills and attitude to support the IT projects at your office

Website_Navigation_Projects

Projects

Integrating the right digital solutions for your IT project

Industries
Industries

Our industry-tailored services are designed to address specific challenges and opportunities across different industries

Website_Navigation_Finance_and_Insurance-1

Finance & Insurance

Take a major step towards cloud computing to increase effectiveness through the use of AI and big data.

Industries_Federal_Social_Government_Headervisual_General_1000x800px

Federal & Social Government

Embrace digitalization and harness the power of data to make citizens' lives easier, work smarter and boost efficiency.

Website_Navigation_Telecom_UK

Telecom

Unlock the potential of 5G and IoT to deliver faster, smarter, and more reliable services.

Insights
Knowledge is our backbone

We believe in sharing our insights and expertise with you. Explore our resources and learn more about our products, services and industry trends.

Icons_Navigation_Case Studies

Case Studies

Step into the world of our delighted customers and see how we helped them achieve their goals.

Icons_Navigation_News Items

Corporate News

Stay in the loop with our company news, announcements, awards and events.

Icons_Navigation_Blogs

Blogs

Read our latest articles on topics ranging from technology, innovation, business and beyond.

Icons_Navigation_Webinars

Webinars

Be part of the action with our live or on-demand webinars, where our experts share invaluable knowledge.

Icons_Navigation_Ebooks

E-books & Whitepapers

Download our guides and reports on various aspects of technology and business.

Icons_Navigation_Events

Events

Find out where we are going to be next, and register for our upcoming events.

CTG Academy

Academy

Enhance your skills with our expert-led training courses, tutorials, and certifications at our Academy.

Join our Academy
Corporate (English) Austria (German) Belgium (Dutch) Belgium (French) Denmark (English) Germany (German) Greece (Greek) Italy (Italian) Romania (English) Sweden (English) The Netherlands (Dutch) United Kingdom (English) Careers Let’s get in touch
Home Discover our latest blogs Discover our latest blogs With these data security steps, you can start using Copilot safely
Cyber Security & Networking
4 minutes reading

With these data security steps, you can start using Copilot safely

Did you bite the bullet and jump on the generative AI train by implementing Copilot widely? Nice! But keep in mind that there are some data-related risks. Thorough preparation is a must to avoid derailing the train. Thanks to the following data security steps, you will soon be able to use Copilot safely and compliantly.

Hans Kompanje

Hans Kompanje

August 01, 2024

Nipping Copilot risks in the bud 

If you don't have your data security in order, then using generative AI tools such as Copilot leads to various risks. Think of dark data with sensitive content appearing in responses. Or outputs with factually incorrect information. Still, there is no reason to despair. With the right data security measures, you can drastically reduce the risks.

First of all: many of the steps we mention below should also be taken for data use in general. Copilot only requires, as the following roadmap shows, some additional efforts. Partly because the tool can access all data and documents within a user's Microsoft environment to generate outputs, even if the user is unaware of them. 

Step 1: discover data 

To protect data, you first need to know more about the how, what, where and why of that data. In the discovery phase, you investigate where the data resides. You'll also look at data quality, (the classification and labeling of) sensitive data, access rights and the lifecycle of data (even that Copilot will generate).

Purview is an all-in-one solution for data management, data governance and data security that is perfect for Copilot. With this centralized platform, you can provide data visibility and risk mapping within the discovery phase, among other things. Copilot can also intentionally or unintentionally (and provided you have configured it) contribute to data protection itself. For example by providing insight into the risks of dark data containing personal or confidential information.

Step 2: classification and labelling 

After the exploration, it is time to classify and label your data. When classifying, you establish the sensitivity and value of data. This is how you build the foundation for further protection measures. Do you label data based on these classifications? Then from now on, all employees will know how to handle the data.

Copilot can, of course, generate responses and commands for applications based on information in prompts and uploaded files. But also based on other data. If that data is not correctly classified and labelled, there is a risk that sensitive information could unintentionally and wrongly appear in responses.

Step 3: Apply concrete data security measures 

Do you know all the ins and outs of your data and are you done with classification and labelling? Then take concrete data security measures to ensure data access and integrity. Consider, for example, access management and automated content validation. In addition, prevent certain sensitive information from leaving the organization, for example, by not allowing sensitive information to be stored in places accessible to anyone or shared externally.

Step 4: Protect during full lifecycle 

Suppose you write a project proposal with help from Copilot. In it, you include sensitive information such as customer data or business strategy. What you certainly don't want in such a case is for this information to become freely available when storing the content in another environment.

With Purview, you can control that. Labels such as “sensitive” or “confidential” remain valid throughout the data lifecycle. Within all your productivity tools. And across your entire environment, whether on-prem, in the cloud or hybrid. Plus: not only do the labels remain intact for existing data Copilot works with, but also for the outputs it generates. And then again for all subsequent steps, such as storing the created content in another environment.

With Purview's automated content validation, you can easily detect and correct misinformation in your existing data. When Copilot works with accurate and consistent data, you prevent misinformation from leading to bad decisions. By the way, validation also applies to outputs from Copilot. Purview can automatically detect incorrect and unsafe content in responses and attach labels to them.

Last but not least within this step: the comprehensive features for compliance checks and auditing help you use Copilot guaranteed to be secure and compliant.

Establish policies and procedures. 

An important aspect within this step: establish robust rules and procedures. For example, how will you handle sensitive data such as personal data and intellectual property? An essential data governance measure is also setting up controls, monitoring and incident management.

All rules, procedures and controls should be explicitly focused on Copilot (and, where applicable, also on other generative AI tools in your landscape).

Step 5: Knowledge, culture and awareness through adoption 

Adoption is not only necessary for users to get maximum value from Copilot. With training, you also ensure that employees have sufficient knowledge of the rules, procedures and best practices surrounding data security and Copilot. What's more, the trainings contribute to an organizational culture in which data protection is considered an important asset. 

Is your organization Copilot-ready? 

In short: if you want to be able to use Copilot safely and compliantly, you need a nice set of data security measures. With our Data Security Engagement - in close collaboration with Cegeka - you can find out if your organization is ready for large-scale use of Copilot. 

The assessment creates visibility and insights. Dark data and sensitive data are exposed and risks identified, for example. You might discover that some employees have unauthorized access to sensitive data. Or that they exhibit anomalous (and therefore suspicious) behaviour.

Microsoft Purview as the foundation 

For Data Security Engagement, we use Microsoft Purview. This centralized platform allows you to gain 360° visibility into your data landscape. Cegeka helps to set up and configure Purview. Then you experience what it's like to gain data insights within your own environment.

Once Purview has been running for a few weeks, we have a good picture of all your (sensitive and confidential) data and the risks. We then incorporate the results of the scan into a final presentation. 

The assessment is also good for gaining knowledge about issues such as dark data, sensitive data and anomalous behaviour. After the process, there is a solid foundation. That is the starting point for the concrete data security measures you need to realize for safe and compliant Copilot use. A large part of those measures you simply realize with Purview.

Are you interested in Copilot? 

Are you interested in learning more about our pragmatic way of implementing Copilot? Watch our webinar of Cegeka’s own early adoption of Copilot below

Hans Kompanje

Hans Kompanje

Competence Center Lead Cyber Security

More of Hans Kompanje articles

Get in touch