• Gemini Adoption Series: Gemini AI Security and Privacy

    • Safeguarding Your Data with Gemini's Advanced Solutions

 

Gemini AI Security and Privacy: Safeguarding Your Data with Gemini


Jeremy Sanders from Promevo presents a privacy and security webinar focused on Gemini for Google Workspace and Workspace Apps. The webinar covers the comprehensive control users have over their data within Google Workspace, ensures that data is not used for external model training or ads, and highlights the compliance certifications acquired by Gemini, such as SOC 1, 2, 3, HIPAA, and FedRAMP High.

Sanders explains how Gemini restricts access to data based on user permissions and discusses security features like Data Loss Prevention (DLP), Information Rights Management (IRM), and client-side encryption. He also provides insights on monitoring data interactions through security investigation tools and emphasizes the importance of context-aware access levels and customer-side encryption (CSE). The webinar concludes with resources for further exploration and secure implementation of Gemini.

Topics & Timeline

 
Audio Summary generated by NotebookLM
Gemini Workspace Security and Privacy
10:00

Helpful Links 

Recorded Demos:

Looking to Increase Your Gemini Adoption?

 

Transcript


​[00:00:00] Jeremy Sanders: Hello everyone. Welcome to the privacy and Security webinar for Gemini, for Workspace and Workspace Apps.

My name is Jeremy Sanders. I'm a customer engineer here at Promevo and I will be presenting the webinar today.

In this webinar, we will have a security overview of what Google Workspace admin controls there are for Gemini.

So let's get straight into the security overview for Gemini, for Google Workspace.

Within Google Workspace, with Gemini, you have complete control over your organization's data. You also have the choice of what you want to do with that data. Your data is not going to be used to train Gemini models outside of your domain without permission, and your data is not being sold or used for ads targeting.

You're in complete control. You have the control to identify and protect all of your data within your organization's Google Workspace environment. Your existing workspace security policies are going to automatically apply, so think along the lines of DLP. Those will also apply within Gemini, and you also get the state compliant.

Google workspace for Gemini was one of the first AI solutions to attain SOC 1, 2, 3, and a few of the ISO certifications that you can see listed on the screen here. We can also help you meet your HIPAA and FedRAMP high compliance with these compliance standards that Google for Workspace with Gemini has .

So going a bit deeper into your data is your data. So you'll see at the top here we have the customer data boundary and we also have the Google Workspace Trust Boundary. Gemini is only going to access files that a user has access to. For example, if we go out and a user ask Gemini, Hey, what was the CEO's Christmas bonus for this year?

And they don't have access to that file. Gemini's not gonna return them a result.

However, let's just say the user does have access to a file. So what'll happen here is the user's gonna put in that prompt and it's going to go the Gemini, it's going to use whatever model has been chosen within the application. It's gonna generate a tailored response, and there will be another check there that make sure that the data security controls and data handling practices are automatically applied.

And then on the left side of your screen, you'll see. What you would get out of that as a response from Gemini. So Gemini also includes a double check on search. What that'll do is use Google search to help ground the data and the response that it gives out from Gemini. It's important to note that Gemini does not share your prompts or generated responses with other users or organizations.

It has client side encryption, so your data within Gemini and any other generative AI models is encrypted and Gemini isn't going to use any of the data or prompts that it has to train the models outside of your domain without your permission.

Within Google Workspace Admin, you'll also be able to control your sensitive data from oversharing. We'll see up here at the top, the Gemini only retrieves relevant content that the user has permission to access to. So when we think of the built into controls AI classification, D-L-P-I-R-M, that is all gonna help identify, classify, and protect access to the sensitive data that your users may be able to put into Gemini and client side encryption also helps prevent access to the most sensitive of data.

Like I spoke about not too long ago about compliance with Gemini for Google Workspace. You'll see here on the right, we have quite a few compliance certifications that Gemini for Google Workspace has acquired. So one's of note here, hipaa, SOC one, two, and three, ISO and FedRAMP High.

And here on this slide we can take a look at the, all the certifications that Gemini for Google Workspace currently has, and then we can also see on the right where some of the other models that are currently out there stack up against it when it comes to security compliance.

Another feature of Gemini for Google Workspace is that you get to decide how you wanna roll out Gemini to your organization. You could turn off the Gemini app NotebookLM for specific OU or groups. You can also do this for the workspace applications as well. Whenever you're rolling this out, you get to choose who you want to have this at first, and then you can roll out to the rest of your organization or leave it as is.

For most organizations though, the Gemini in workspace apps, the Gemini app and NotebookLM are turned on by default. Along with all the compliance certifications, Google also has a new privacy hub with all the information that is currently available about the available admin controls for Gemini, for Google Workspace, we'll go. You'll see the link on the screen. We'll go ahead and send that in the email alongside this webinar so you're able to go take a look and learn more about the available admin controls that Google for Workspace currently has for Gemini.

Within Google Workspace, you'll have multiple ways to have complete control over your data client side, encryption, being able to use encryption keys and act as an arbiter for access of all of your data context to where access it's going to be able to control where customers are able to access their data using IP device and geographic origin access controls, which narrows the provider access by only approving certain groups of Google support

Presenter

jeremy sanders

Jeremy Sanders

Customer Engineer, Workspace & Gemini, Promevo
Gemini Workspace Security and Privacy Audio Summary
10:00

Choose your Google Workspace edition. Try it free for 14 days.

Every plan includes
  • Gmail
  • Drive
  • Meet
  • Calendar
  • Chat
  • Docs
  • Sheets
  • Slides
  • Keep
  • Sites
  • Forms

Business Starter

$6
USD

/ user / month

Get In Touch

blueCheckmark Custom and secure business email

blueCheckmark 100 participant video meetings

blueCheckmark 30 GB cloud storage per user

blueCheckmark Security and management controls

blueCheckmark Standard Support

Business Standard

$12
USD

/ user / month

Get In Touch

blueCheckmark Custom and secure business email

blueCheckmark 150 participant video meetings + recordings

blueCheckmark 2 TB cloud storage per user

blueCheckmark Security and management controls

blueCheckmark Standard Support (paid upgrade to Enhance Support)

Business Plus

$18
USD

/ user / month

Get In Touch

blueCheckmark Custom and secure business email + eDiscovery, retention

blueCheckmark 250 participant video meetings + recordings, attendance tracking

blueCheckmark 5 TB cloud storage per user

blueCheckmark Enhanced security and management controls, including Vault and advanced endpoint management

blueCheckmark Standard Support (paid upgrade to Enhance Support)

Enterprise

Contact Sales for Pricing

Get In Touch

blueCheckmark Custom and secure business email + eDiscovery, retention, S/MIME encryption

blueCheckmark 250 participant video meetings + recordings, attendance tracking noise cancellation, in-domain live streaming

blueCheckmark As much storage as you need

blueCheckmark Advanced security and management and compliance controls, including Vault, DLP, data regions, and enterprise endpoint management

blueCheckmark Enhanced Support (paid upgrade to Premium Support)


Business Starter, Business Standard, and Business Plus plans can be purchased for a maximum of 300 users. There is no minimum or maximum user limit for Enterprise plans.

Contact Sales