How end users can classify their own files

Prev Next

Workers whose jobs require routine creation of files that contain sensitive data can be assigned manual classification permission. They can classify the files as they create them as part of their normal workflow.

Users working on Windows or Mac computers with Trellix DLP Endpoint can classify files manually. Files classified manually are supported by Trellix DLP Discover, Trellix DLP Network Prevent, and Trellix DLP Network Monitor rules.

In this example, a health-care provider knows that all patient records must be considered confidential under HIPAA rules. Workers creating or editing patient records are given manual classification permissions.

For details about product features, usage, and best practices, click ? or Help.

  1. Create a user group or groups for workers who create or edit patient records.

    1. In ePO - On-prem, select MenuData ProtectionClassification.

    2. On the Definitions tab, select Source/DestinationEnd User Group.

    3. Select ActionsNew Item, replace the default name with a meaningful name such as PHI User Group, and add users or groups to the definition.

    4. Click Save.

  2. Create a PHI (Protected Health Information) classification.

    1. In the Classification module, on the Classification tab, select [Sample] PHI [built-in] in the left pane, then select ActionsDuplicate Classification.

      An editable copy of the sample classification appears.

    2. Edit the Name, Description, and Classification Criteria fields as required.

    3. In the Manual Classification field, click Edit.

    4. In the Additional Actions section, select the classification type.

      By default, Manual classification only is selected.

    5. Select ActionsSelect End-User Groups.

    6. In the Choose from existing values window, select the group or groups you created previously, then click OK.

    7. Go back to the Classification tab and select ActionsSave Classification.

Workers who are members of the assigned groups can now classify the patient records as they are created. To do so, right-click on the file, select Data Protection, and select the appropriate option.

Note

Only selected options (step 2.d) appear in the menu.