Jeremy Moskowitz at Microsoft Ignite

Endpoint Protector Customers — Let’s Talk AI Data Protection at Ignite 2025 (San Francisco)

Hey everyone — Jeremy here, VP of Endpoints at Netwrix.

If you’re going to Microsoft Ignite 2025 in San Francisco, find me at the
Netwrix booth (#5526 R) — I’ll be walking customers through the newest enhancement to Endpoint Protector:

Copilot is now everywhere — Windows 11, New Outlook, New Teams, Office ribbons, shell right-clicks, and soon, workflow automations.

It’s not “a tool they go to.”
It’s in their workflow.

So we introduced Data Loss Prevention for LLMs in Endpoint Protector. It gives you:

  • Visibility into what users type, paste, attach, or upload into Copilot

  • Policy enforcement on whether the data they’re trying to use should be allowed

  • Role-based, data-based, and content-based rules — not a blanket block

This is:
Allow Copilot.
But keep sensitive data where it belongs.

And yes, this also applies to the other guys too: ChatGPT, Google Gemini, Claude, Grok & DeepSeek

But Copilot is the game-changer, because it’s now native in the operating system… and we cover the embedded app in the latest Windows 11 version !

This is not URL filtering.
This is not blinding users with “block all AI.”
This is policy-aware protection at the moment of interaction.

Why This Matters

Because today, data exfiltration has a new shape:

Not just USB / not just your ports and devices.
Not just cloud drives.
Not just email forwarding.

It’s: “Paste it into the chatbot so it can help me.”

And if your security strategy doesn’t account for that yet — now it can.

TL;DR: EPP can help you monitor when sensitive data is used in AI prompts, allowing you to block these transactions … while still enabling end-users to use LLMs for non-sensitive (non-corporate) data.

And If This Got You Thinking…

…about the other side of the endpoint problem.

Because protecting data leaving the device is one thing.

But ensuring the device itself is configured securely, consistently, and sanely — is the other half.

That’s where Endpoint Policy Manager (formerly PolicyPak) comes in:

  • Remove Local Admin Rights on Windows & Mac: without user rebellion

  • Reduce GPOs

  • Transition GPOs to the cloud

  • Deploy software from the Winget and Microsoft store (and magically keep them updated.)

  • And a lot, lot more.

Most customers who get serious about data control eventually realize:

You also need sane, stable, predictable device configuration.

And that’s the EPM conversation for existing EPP customers.

Come See It Live

Microsoft Ignite 2025 — San Francisco
Netwrix Booth #5526 R

Stop by. Tell me what your environment looks like.

We’ll talk about AI, data safety, and endpoint sanity in a way that makes sense in the real world.

See you there —
Jeremy
VP, Endpoints — Netwrix

3 Likes