Adding a CloudSOC group to the DLP's application detection configuration's group section can help refine the scanning scope and apply it to a selected group. The group entered in the DLP should match the name displayed in the CloudSOC Groups section.
For example, to add an Active Directory that is synced with CloudSOC through DSS, all the values in the Name columns should be copied:
The CloudSOC admin can click on the group name and double-click the name on the right pop-up window:
Then DLP admin needs to enter "Event Log Readers Event Log Readers (CN=Builtin,DC=hdalton,DC=pcslabs,DC=org)" in the DLP.