Cisco IT has applied split tunneling for known trusted Internet connected services, such as Office 365, iCloud, MacOS Updates, OneDrive, SharePoint, Windows Update, Windows Azure related FQDNs, Box, and CiscoTV. For these applications, the VPN client sends that traffic directly through the Internet without the need for it to be sent to the Cisco VPN headend first.
Although split tunneling can improve the performance of applications that do not require the VPN tunnel (such as Internet access), it can increase risk because the client is unprotected by central site security mechanisms when it connects to the other networks. Be thoughtful when choosing which applications to route over the VPN tunnel and which ones to route straight to the Internet. Or determine whether split tunneling is even an option for your organization..
See the following for more on split tunneling:
VPN Split Tunneling Guidelines