TMP 4
TMP 4
Rui Santos
Senior Program Manager, Microsoft
Thank you!
Where do you start ?
I have Power Apps, now what?
• How“My manager
do I protect just told me;
my environments weconnectors
against have this new thing
misusage ? called
• Power
How Platform
do I protect to manage
my environments I need
against Appsto learn how
oversharing ? to protect it”
• Everyone has Environment Maker Role in Default, what does it mean ?
• My users want to create an Approval process and requires Dataverse, what’s that ?
• Are users importing Solutions with errors in production Environments ?
• How users deploy their App to Production ? Can I have a proper ALM since day one ?
I have Power Apps, now what?
Privacy & • Why Apps and Flows created in SharePoint end up in Default Environment ?
security • I’m using Project for Web and Approvals, which required Dataverse in Default Environment, now
what ?
• What would be the best Environment Strategy to my organization ?
• What are the different roles and responsibilities needed for CoE ?
Nurture & • How can I keep my Environments cleaned, and archive Apps not being used ?
Adoption • Everyone is Environment Maker in Default, what does it mean ?
• How Dataverse Security works ?
• I have my Apps and Flows using SharePoint, how can I migrate to Dataverse ?
• Everyone is Environment Maker in Default, what does it mean ?
Strategy and • What kind of trainings/activities should my users do ?
business values • Are users using Power Apps in meaningful ways ?
Managed Environments
5
1
1. Usage insights
2. Admin digest
3. License reports
6. Solution checker
7. Maker onboarding
7
8. Easy activation
3
9. Pipelines
managedenvforpower 4 9
Default Environment Routing (private preview)
Environment
Pipeline Auto Attachment
Management Time based Env Reset
(Planned)
https://aka.ms/ppassessment
Power Platform @ DB Group
Learnings from scaling to all DB employees
• Data
• Data protection/ privacy
• Labour council
• Management and control
• Community/ Learning & Training
• Three-stages-modell
• Slim, strict and understandable set of rules
• Technical enforcement of rules via PALM app
• Activate Managed Environments in the Default environment for
controlling sharing limits
• Use CoE starter kit for monitoring
Professional Usage
Power Automate
Personal Usage
Power Automate
Power Apps
Differences between the three stages
Personal Usage Team Usage Professional Usage
▪ Locked-in O365, no connectors, no ▪ Same as personal usage ▪ O365 as a basis, further connectors
data in, no data out can be used/ activated
▪ Single-stage-environment Also: ▪ Multi-stage-environment
▪ Connecting and integrating the ▪ The artefact can be used by all ▪ Maintaining access rights and
available services and data of O365 users assigned to the sharepoint privileges of the user in O365 +
▪ The artefact (app) is not considered site or teams channel, serves as a further solution specific access
to be an application (ID, risk data storage rights and privileges
management etc.) ▪ Maintaining access rights and ▪ Responsibility for the app and the
privileges of all sharepoint / teams data remains with the application
▪ Maintaining access rights and channel users the artefact is owner
privileges of the user in O365 assigned to ▪ Data is stored on the personal
▪ Responsibility for the app and the ▪ Responsibility the data remains OneDrive
data remains exclusively with the exclusively with the user, the ▪ The artefact (app) is considered to
user artefact itself needs an owner (= be an application (further duties,
▪ Data is stored on the personal sharepoint site/ teams channel internal policies and obligations
OneDrive owner) apply)
The PALM App…
• Monitors the usage context of an app (artefact), e.g. the transition from
the personal usage to team usage is detected
• Monitors the usage of the connectors
• Automatically deletes artefacts leaving the usage context, apps without
acknowledged terms of use, apps without an owner etc.
The PALM App…
The PALM App…
Establishing a Center of Excellence (CoE)
CoE is designed to drive innovation and improvement
Power Platform CoE set up at DB
Areas of responsibilities
Power Platform CoE set up at DB
Areas of responsibilities
KPIs & statistics
What did we achieve since the rollout
(Professional since February 2021 / Personal since February 2023)