Free SC-400 Exam Braindumps (page: 30)

Page 29 of 76

You need to protect documents that contain credit card numbers from being opened by users outside your company. The solution must ensure that users at your company can open the documents.

What should you use?

  1. a sensitivity label policy
  2. a sensitivity label
  3. a retention policy
  4. a data loss prevention (DLP) policy

Answer(s): D


Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/dlp-learn-about-dlp?view=o365-worldwide



You have a Microsoft 365 tenant that contains a Microsoft SharePoint Online site named Site1.

You have the users shown in the following table.



You create a data loss prevention (DLP) policy for Site1 that detects credit card number information. You configure the policy to use the following protection action:

-When content matches the policy conditions, show policy tips to users and send them an email notification.

You use the default notification settings.

To Site1, User1 uploads a file that contains a credit card number.

Which users receive an email notification?

  1. User1 and User2 only
  2. User1 and User4 only
  3. User1, User2, User3, and User4
  4. User1 only
  5. User1 and User3 only

Answer(s): E



You have a data loss prevention (DLP) policy that applies to the Devices location. The policy protects documents that contain United States passport numbers.

Users report that they cannot upload documents to a travel management website because of the policy.

You need to ensure that the users can upload the documents to the travel management website. The solution must prevent the protected content from being uploaded to other locations.

Which Microsoft 365 Endpoint data loss prevention (Endpoint DLP) setting should you configure?

  1. Unallowed browsers
  2. File path exclusions
  3. Unallowed apps
  4. Service domains

Answer(s): D

Explanation:

You can control whether sensitive files protected by your policies can be uploaded to specific service domains from Microsoft Edge.
-If the list mode is set to Block, then user will not be able to upload sensitive items to those domains. When an upload action is blocked because an item matches a DLP policy, DLP will either generate a warning or block the upload of the sensitive item.
-If the list mode is set to Allow, then users will be able to upload sensitive items only to those domains, and upload access to all other domains is not allowed.


Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/endpoint-dlp-using?view=o365-worldwide



You have a Microsoft 365 tenant that has devices onboarded to Microsoft Defender for Endpoint as shown in the following table.



You plan to start using Microsoft 365 Endpoint data loss protection (Endpoint DLP).

Which devices support Endpoint DLP?

  1. Device5 only
  2. Device2 only
  3. Device1, Device2, Device3, Device4, and Device5
  4. Device3 and Device4 only
  5. Device1 and Device2 only

Answer(s): B


Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/endpoint-dlp-learn-about?view=o365-worldwide






Post your Comments and Discuss Microsoft SC-400 exam with other Community members: