Rolling out
Microsoft Purview: Data Loss Prevention - User Based Aggregation of DLP Alerts
From Microsoft's description: “This feature should consolidate related alert events into a single alert object to: Reduce alert noise, simplify investigation workflows, enhance contextual understanding of violations.”
Enable aggregation of DLP alerts based on common entities user even when multiple rules are matched. This feature should consolidate related alert events into a single alert object to: Reduce alert noise, simplify investigation workflows, enhance contextual understanding of violations.
Affected: Microsoft Purview