Free SC-400 Exam Braindumps (page: 34)

Page 34 of 76

HOTSPOT (Drag and Drop is not supported)
You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.



You need to onboard the devices to Microsoft Purview. The solution must ensure that you can apply Endpoint data loss prevention (Endpoint DLP) policies to the devices.

What can you use to onboard each device? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

  1. See Explanation section for answer.

Answer(s): A

Explanation:





Box 1: A local script, Group Policy, and Microsoft Endpoint Manager
Onboarding Windows 10 or Windows 11 devices
In this deployment scenario, you'll onboard Windows 10 or Windows 11 devices that have not been onboarded yet.

1.Open the Microsoft Purview compliance portal. Choose Settings > Enable device monitoring.

2.Open the Compliance Center settings page and choose Turn on Windows device monitoring.

3.Choose Device management to open the Devices list.

4.Choose the way you want to deploy to these additional devices from the Deployment method list and then download package.

5.Choose the appropriate procedure to follow from the table below:



Box 2: Microsoft Endpoint Manager only
Onboard and offboard macOS devices into Compliance solutions using Intune for Microsoft Defender for Endpoint customers.
Onboard macOS devices into Microsoft Purview solutions using Microsoft Intune
Use these steps to onboard a macOS device into Compliance solutions if it already has MDE deployed to it.

1. You'll need these files for this procedure.
accessibility - accessibility.mobileconfig
full disk access - fulldisk.mobileconfig

Create system configuration profiles
1. Open the Microsoft Endpoint Manager center > Devices > Configuration profiles.

2. Choose: Create profile.

3. Choose:

Platform = macOS
Profile type = Templates
Template name = Custom

4. Choose Create

5. Etc.


Reference:

https://learn.microsoft.com/en-us/microsoft-365/compliance/device-onboarding-overview?
https://learn.microsoft.com/en-us/microsoft-365/compliance/device-onboarding-offboarding-macos-intune-mde



HOTSPOT (Drag and Drop is not supported)
You have a Microsoft 365 E5 subscription.

You have the alerts shown in the following exhibit.



Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

  1. See Explanation section for answer.

Answer(s): A

Explanation:





Box 1: Investigating, Dismissed, and Resolved
The alert status is Active.
You could change the status of it to investigating or dismissed or resolved.

Note: Clicking on ‘View Details’ will display the alert page with exhaustive information associated with the DLP policy violation, ability to change alert status (Active, Investigating, Dismissed or Resolved), include additional comments and define workflow actions such as assigning alerts to individuals for follow up.

Box 2: Active, Investigation, and Dismissed
The alert status is Resolved.


Reference:

https://learn.microsoft.com/en-us/microsoft-365/compliance/dlp-configure-view-alerts-policies



You are creating a data loss prevention (DLP) policy that will apply to all available locations.

You configure an advanced DLP rule in the policy.

Which type of condition can you use in the rule?

  1. Keywords
  2. Content search query
  3. Sensitive info type
  4. Sensitive label

Answer(s): C

Explanation:

1. On the Customize advanced DLP rules page, you can either start creating a new rule or choose an existing rule to edit. Click Create rule.




2. The Create rule page appears. On the create rule page, provide a name and description for the rule, and then configure the other sections, which are described following the image below.




Conditions
In the condition section, you define the conditions under which the policy will apply to a dataset. Conditions are created in groups. Groups make it possible to construct complex conditions.

1. Open the conditions section, choose Add condition and then Content contains.
This opens the first group (named Default – you can change this).

2. Choose Add, and then choose either Sensitive info types or Sensitivity labels.



When you choose either Sensitive info types or Sensitivity labels, you will be able to choose the particular sensitivity labels or sensitive info types you want to detect from a list that will appear in a sidebar.


Reference:

https://learn.microsoft.com/en-us/power-bi/enterprise/service-security-dlp-policies-for-power-bi



You have a Microsoft 365 subscription that contains a Microsoft SharePoint Online site named Site1.

You need to create a data loss prevention (DLP) policy to prevent the sharing of files that contain source code. The solution must minimize administrative effort.

What should you include in the solution?

  1. an exact data match (EDM) data classification
  2. a sensitive info type that uses a keyword dictionary
  3. a sensitive info type that uses regular expressions
  4. a trainable classifier

Answer(s): B



Page 34 of 76



Post your Comments and Discuss Microsoft SC-400 exam with other Community members:

Priest-Son commented on October 24, 2024
helpful questions also in other forums
UNITED STATES
upvote

Priest commented on April 22, 2024
In the dark depths of exam despair, I prayed for divine guidance. Behold! This website descended like manna from heaven. I studied their guide religiously, took the test, and lo and behold, God smiled upon me with an 87% score. Amen to that! ?? I hope you guys like the funny tone of my review. :-) Best of luck to all you guys.
UNITED KINGDOM
upvote

Namrata commented on July 15, 2023
helpful questions
Anonymous
upvote

Namrata commented on July 15, 2023
Helpful questions
Anonymous
upvote

Namrata commented on July 15, 2023
great questions
Anonymous
upvote