{"id":18386,"date":"2025-02-13T09:05:00","date_gmt":"2025-02-13T17:05:00","guid":{"rendered":"https:\/\/www.microsoft.com\/insidetrack\/blog\/?p=18386"},"modified":"2026-08-17T10:40:07","modified_gmt":"2026-08-17T17:40:07","slug":"empowering-employees-with-the-microsoft-power-platform-at-microsoft","status":"publish","type":"post","link":"https:\/\/www.microsoft.com\/insidetrack\/blog\/empowering-employees-with-the-microsoft-power-platform-at-microsoft\/","title":{"rendered":"Empowering employees with the Microsoft Power Platform at Microsoft"},"content":{"rendered":"\n

At Microsoft, our employees are using the Microsoft Power Platform to bring their ideas and visions to life. It\u2019s our low-code development suite that anyone\u2014not just developers\u2014can us to create apps, automate workflows, and analyze data.<\/p>\n\n\n\n

In Microsoft Digital, the company\u2019s IT organization, we\u2019ve implemented a Power Platform governance strategy and vision that is empowering our employees to build solutions that are improving how they get their work done, including crafting their own AI agents with Microsoft 365 Copilot and Copilot Studio<\/a>.<\/p>\n\n\n\n

How are we doing this?<\/p>\n\n\n\n

With proper governance mechanisms that keep them safe while letting their creativity flow\u2014and our employees are running with it, creating innovative and dynamic solutions that are streamlining our processes and enhancing our productivity.<\/p>\n\n\n\n

And that\u2019s exactly the point\u2014the Power Platform<\/a> democratizes development, allowing the citizen developer in all of us to come out and play. For us, this is an essential ingredient for fostering the kind of innovation that can and will continue to drive our company forward.  <\/p>\n\n\n\n

Our strategic approach to governance on the Power Platform<\/h2>\n\n\n\n

Locking in on the right approach to governance is pivotal.<\/p>\n\n\n\n

\u201cGovernance provides essential guardrails, by ensuring that we have visibility into what is being built and enforcing policies to maintain security and compliance with the Power Platform,” says Aisha Hasan, a senior product manager in Microsoft Digital. “Governance allows us to balance the freedom to innovate with the need to protect our tenant from risks.\u201d<\/p>\n\n\n\n

Governance is a key strategic enabler to our approach.<\/p>\n\n\n\n

With the wide variety of users at Microsoft developing solutions in the Power Platform, it’s vital they understand how to develop within governance parameters and deploy their solutions effectively. This ensures that while innovation flourishes, it does so within a framework that maintains security and compliance.<\/p>\n\n\n\n

Starting at the top with environments<\/h3>\n\n\n\n

Power Platform environments are the foundation for providing structure and organization with our Power Platform tenant.<\/p>\n\n\n\n

“Our governance approach is rooted in a holistic environment strategy,” Hasan says. “We’re applying policies at the environment (or container) level to assess and manage risk uniformly and at scale.”<\/p>\n\n\n\n

We use an intentional environment structure to enable good governance practices, and we apply our policies and rules to that structure to ensure that every single environment is governed to our standards. This approach avoids broadly shared environments that are difficult to govern effectively.<\/p>\n\n\n\n

\"A<\/figure>\n\n\n\n
\n

\u201cWe\u2019re routing developers out of the default environment. It’s about getting away from that \u2018big bucket\u2019 approach. We want every flow, bot, and app to be in an environment that is purpose-built and intentionally configured.”<\/p>\nAisha Hasan, senior product manager, Microsoft Digital<\/cite><\/blockquote>\n\n\n\n

Every environment in our tenant has a specific purpose and we ensure we have the proper information about each environment to maintain proper governance. Every environment in our tenant is tied to an owner who is accountable for everything within that environment. This ownership model ensures clear responsibility and accountability.<\/p>\n\n\n\n

To enable this specific approach to environments, we make clear distinctions.<\/p>\n\n\n\n

First, the default environment<\/em>\u2014a built-in environment that comes with every single Power Platform tenant\u2014is not the default.<\/p>\n\n\n\n

\u201cWe\u2019re routing developers out of the default environment,\u201d Hasan says. \u201cIt\u2019s about getting away from that \u2018big bucket\u2019 approach. We want every flow, bot, and app to be in an environment that is purpose-built and intentionally configured.\u201d<\/p>\n\n\n\n

To streamline the process and ensure proper governance, we\u2019ve turned on automated routing. This means that if anyone tries to use the default environment, they\u2019re automatically routed to a specific environment type instead, according to their use case and our environment groupings. This helps in managing the lifecycles of our environments and ensures that every Power Platform solution is in the right place with the right governance.<\/p>\n\n\n\n

Shifting to environment routing<\/h2>\n\n\n\n
\"Placing
Using environment routing to move away from default and shared environments.<\/em><\/figcaption><\/figure>\n\n\n\n

We group environments based on their usage and apply specific rules to each group. There are groups for personal productivity, team collaboration, and enterprise development; each with its own set of rules and compliance requirements and tied to a specific environment type in the Power Platform.<\/p>\n\n\n\n

Personal productivity<\/strong> environments are designed for individual use, where users can create and experiment with applications and automations without the need for extensive governance. These environments are typically developer environments, which are highly restricted in terms of sharing capabilities. Users can build apps, flows, and other solutions for their personal productivity, but they can’t share these solutions with others. This ensures that any experimentation or personal projects remain isolated and don’t impact the broader organization.<\/p>\n\n\n\n

Team collaboration<\/strong> environments are intended for team-based projects and workflows. These environments are usually built within Dataverse for Teams, which integrates with Microsoft Teams. Dataverse for Teams environments are tied to a Microsoft 365 group, which helps manage governance and lifecycle through the group’s settings. These environments are perfect for team productivity solutions that are used within a specific team but aren’t meant to be shared companywide. While Dataverse for Teams environments have some quirks and limitations, they provide a balance between flexibility and governance, making them suitable for moderate governance and security controls.<\/p>\n\n\n\n

Enterprise development<\/strong> environments are used for large-scale, enterprise-level projects that require stringent governance and compliance. These environments are typically sandbox or production environments and are subject to a rigorous request and approval process. Users must provide detailed information about their project, including data sensitivity, regulatory requirements, and business justification. These environments are governed by stricter usage policies, custom ownership policies, and regular security reviews. The goal is to ensure that any enterprise-level solutions are secure, compliant, and properly managed.<\/p>\n\n\n\n

Using groups, roles, and policies<\/h3>\n\n\n\n

Microsoft runs on trust, and our success depends on earning and maintaining it. Our Secure Future Initiative<\/a> ensures that security is first in everything that we do, and that extends to how we govern the Power Platform.<\/p>\n\n\n\n

Our governance strategy revolves around applying controls at the environment level. We categorize environments, using the three main groups already identified. There are specific security controls and approaches in place in each group:<\/p>\n\n\n\n

\n
\n
\n

Group<\/strong><\/p>\n<\/div>\n\n\n\n

\n

Purpose<\/strong><\/strong><\/p>\n<\/div>\n\n\n\n

\n

Security controls<\/strong><\/strong><\/p>\n<\/div>\n<\/div>\n\n\n\n

\n
\n

Personal productivity<\/p>\n<\/div>\n\n\n\n

\n

Individual use<\/p>\n<\/div>\n\n\n\n

\n