Enable Microsoft Office 365 Message Encryption (OME)

Ensure OME Availability for Email

Question

You have a Microsoft 365 tenant.

You discover that email does NOT use Microsoft Office 365 Message Encryption (OME)

You need to ensure that OME can be applied to email.

What should you do first?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

C.

https://docs.microsoft.com/en-us/microsoft-365/compliance/set-up-new-message-encryption-capabilities?view=o365-worldwide

The correct answer is B. Activate Azure Information Protection.

Office 365 Message Encryption (OME) is a feature of Azure Information Protection, which allows you to encrypt emails and their attachments. If OME is not being used, the first step is to activate Azure Information Protection in your Microsoft 365 tenant.

To activate Azure Information Protection, follow these steps:

  1. Sign in to the Azure portal (https://portal.azure.com) with your Microsoft 365 administrator credentials.

  2. In the left-hand menu, click on "All services", and then search for "Azure Information Protection".

  3. Select "Azure Information Protection" from the results.

  4. Click on the "Activate" button on the Azure Information Protection page.

  5. In the "Activate" pane, review the information, and then click on the "Activate" button.

  6. Wait for the activation process to complete. This may take some time.

Once Azure Information Protection is activated, you can configure OME for your organization. You can use the OME policy template, which is automatically created during Azure Information Protection activation, to define the default settings for OME. You can also create additional policies to meet specific business requirements.

It's worth noting that option A, enabling Microsoft Defender for Office 365, is not related to OME or email encryption. Microsoft Defender for Office 365 is a security solution that helps protect against email threats such as spam, malware, and phishing. Option C, activating Azure Rights Management (Azure RMS), is also not the correct answer. Azure RMS is a separate service that provides information protection for files and documents, but not for email. Option D, creating an Azure key vault, is also not the correct answer. Azure key vaults are used to store and manage cryptographic keys, but they are not directly related to email encryption.