Endpoint Groups & Department Tags
Edit ArticleOrganize workstations by department, location, or risk profile to apply targeted policies.
Sentinel Operations Team
4 min read
Updated August 28, 2026
v3.2Different departments have different security requirements. For example, Finance laptops might require strict USB blocking, while Engineering laptops require custom developer directory exclusions.
Policy Configuration — Application & USB Monitoring
Policy Engine
Policy:Global Corporate Standard v2
EnforcedUSB Storage Enforcement
Policy Mode: Read-Only Enforced
Prompt User Alert: Enabled
Log File Copies: Enabled (All Sizes)
Directory Watch Patterns
✓ C:\Users\*\Documents\**
✓ C:\CompanyData\**
✗ Exclude: C:\Windows\**
1USB Storage Control Mode
2Directory Watch Patterns
Figure 2.1: Policy management screen for configuring process whitelists, browser telemetry, and USB block rules.
Tags:#Groups#Tags#Department Policies
Was this documentation page helpful?
Your technician feedback helps our team continuously improve Sentinel guides.

