Workflow for protecting sensitive data with Trellix DLP – SaaS

Prev Next

Trellix DLP – SaaS features and policy components make up a protection process that fits into this overall workflow.

The Trellix DLP – SaaS protection process
The Trellix DLP – SaaS protection process


Use Trellix DLP – SaaS to monitor the data and user actions on the network. You can use predefined rules or create a basic policy.

  1. Create classifications from the Classification console.

    Classify and define sensitive data by configuring classifications and definitions. For more information, see Classifying your data

  2. Track how and where the files containing sensitive content are used with tags or registered documents. For more information, see Tracking how and when sensitive content is used.

  3. Protect sensitive data by applying rules with DLP Policy Manager.

    Protect data with scans and rules. Configure the action to take when sensitive data is discovered, accessed, or transmitted. For more information, see Protecting sensitive data with rules and policies.

  4. Analyze the Trellix Data Loss Prevention – SaaS incidents from Protection Workspace.

    Review incidents and analyze scan results to see potential policy violations. Use this information to begin creating an effective policy. You can manage the incidents by grouping and working with incidents, which can be escalated to other departments, such as legal or Human Resources. You can also create reports with dashboards and queries. For more information, see Reviewing and managing incidents to fine-tune your policies.

Getting Started with DLP — The DLP Getting Started feature enables you to configure any of the Trellix DLP – SaaS products quickly and run the policies immediately after installation. This option allows you to add shared network location details and create your first Trellix DLP – SaaS rule and policy.

For more information, see Getting started with DLP in the Installation Guide.