Updated: July 11, 2020 (May 20, 2013)

  Sidebar

Office 365 and Compliance Standards

My Atlas / Sidebar

255 wordsTime to read: 2 min
Wes Miller by
Wes Miller

Wes Miller analyzes and writes about Microsoft’s security, identity management, and systems management technologies. Before joining Directions on Microsoft, Wes... more

Customers may need to work with Microsoft to assess their information security and privacy rights, and their security and privacy limitations under multitenant deployments of Office 365. For example, Microsoft has stated that it must comply with U.S. federal law and, as a result, could not guarantee that data hosted in the European Union (EU) would not leave the European Economic Area if requested by the U.S. government under the U.S. Patriot Act. Similarly, organizations should consider whether they use export-controlled information and how export regulations might affect their use of Office 365.

While Microsoft has not provided public documentation describing how the multitenant services are structured and segregated to ensure data security, privacy, compliance, and reliability, the company has worked with auditors to attest to the services’ compliance with certain privacy and security standards, including the following:

  • EU Model Clauses, which address international transfers of data

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now