Timely detection of SharePoint permission changes is critical for security. Permission changes can enable users to get access to sensitive data that they shouldn’t have, or even to copy, modify, delete and distribute confidential information. Permission changes can be an indication of external or internal attackers attempting to exfiltrate sensitive data. Therefore, ongoing tracking of SharePoint permission changes is crucial to minimizing the risk of data leaks and compliance violations.
Netwrix Auditor for SharePoint tracks and reports on changes to farm configuration, user content and security, as well as modifications to permissions and permission inheritance, group membership and security policies. It provides all the details IT administrators need, including who made each change to permissions, when and where it was made, which SharePoint group was affected, and the before and after values. IT staff can also subscribe to these reports, which will be automatically delivered via email, to stay constantly aware of any SharePoint permission changes.