SharePoint Online
Protecting MSU Information in SharePoint
Not all SharePoint sites are private by default. Before storing MSU information, verify who can access your site. Team Sites and Communication Sites use different sharing models and may expose content more broadly than intended if access settings are not reviewed.
Review Site Access
If you already have a SharePoint site, periodically review access to ensure information is only available to the intended audience.
- Open your SharePoint site.
- Select Settings (gear icon).
- Select Site Permissions.
- Review the users and groups that currently have access to the site.
If Your Site Is a Team Site
Team Sites support a Public or Private privacy setting.
- Select Settings > Site Information.
- Review the Privacy settings value.
- Change the site to Private if access should be limited to site members.
Private sites are only accessible to approved members. Public sites allow anyone at MSU to view the site and its content.
Choose the Right Site Type
Team Site
Best for:
- Departments
- Committees
- Project teams
- Working groups
- Collaborative document management
Team Sites are designed for collaboration among a defined group of people and support Public or Private privacy settings.
Communication Site
Best for:
- Department websites
- Resource hubs
- Documentation sites
- Announcements
- Information intended for a broader audience
Communication Sites do not provide the same Public/Private setting found on Team Sites. Access is managed through SharePoint permissions.
Security Note
Always refer to the Data Storage Security Grid to ensure the storage location is appropriate for the data you are storing.
The classification of MSU information should determine where it is stored and who should have access to it. After selecting an appropriate storage location, review site permissions regularly to ensure access remains limited to the intended audience.
Remember
A SharePoint site is only as private as its permissions. Review site access regularly, verify who has access, and confirm the site is appropriate for the information being stored before uploading sensitive or internal content.
General Information
SharePoint Online is a cloud file storage service and collaboration tool offering
1TB of space per SharePoint site, for Group Shared Data and MSU Owned Data that needs to stay at MSU if you separated from
MSU, that does not contain sensitive data. SharePoint Online is available to all MSU faculty, staff, and students.
It is valuable to use for shared work files such as:
- Files being edited by a team.
- Files stored in a Microsoft Teams, Team.
- Shared research
What not to Store in SharePoint Online
- Personal Work Files meant to be accessed by a team or groups of users.
- Personal materials not associated with MSU work.
- Material required to be saved on confidential servers like Knox
- To choose the right location for the data you need to store, please refer to the table found on MSU's Data Storage Security information page
Advantages
- Data does not disappear if you leave MSU.
- Access and share files from a browser, your desktop or mobile device.
- SharePoint reduces the reliance on email and therefore reduces email overload.
- By allowing web-based access, SharePoint Online eliminates the need to email files to yourself or download copies.
- Users can access their Shared Group Data via the web without having to use a VPN to log into their desktop.
IMPORTANT!
When you separate from MSU your OneDrive access is immediately disabled. Your OneDrive
data will be accessible for 30 days, but only by people whom you have shared it with.
After 30 days, the data will be deleted and cannot be recovered.
See the FAQ section for more information on how to transfer Shared Data to SharePoint
and non-shared data to another users OneDrive account before separation.
Tips / Recommendations
- Have a schedule for reviewing and cleaning your SharePoint Documents.
- University records and information must be managed no matter where they are kept. Do not allow any system or repository to become a dumping ground for files!
- When using Office 365 tools, access must be actively managed and reviewed on an ongoing basis. Updating access when changes to unit staffing occurs is critical.
Data Management Best Practices
Data management best practices ensure data quality, accuracy, and security, enabling efficient and compliant operations while reducing risks and costs. They support better decision-making, collaboration, and scalability, and provide a foundation for innovation and effective disaster recovery. Frind more information on Data Managment Best Practices here: https://www.montana.edu/uit/security/datamanagement/index.html
A SharePoint is many things to many people. Here are the two most common.
- Collaboration Center
- Show important visuals, news, and updates with a team or communication site
- Shared Document Library
- Sync and store your files in the cloud so anyone can securely work with you.
SharePoint sites sync to the cloud providing easy, secure access from anywhere.
With SharePoint you can share and collaborate with your internal team, external guests, specific people as well as provide access via a link with an expiration date.
*SharePoint Sites, including Shared Document Libraries are automatically created when a Microsoft Team is created.


