Free SC-400 Exam Braindumps (page: 33)

Page 32 of 76

You have a Microsoft 365 tenant that uses 100 data loss prevention (DLP) policies.
A Microsoft Exchange administrator frequently investigates emails that were blocked due to DLP policy violations.
You need recommend which DLP report the Exchange administrator can use to identify how many messages were blocked based on each DLP policy.
Which report should you recommend?

  1. Third-party DLP policy matches
  2. DLP policy matches
  3. DLP incidents
  4. False positive and override

Answer(s): B


Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/dlp-learn-about-dlp?view=o365-worldwide



You have a data loss prevention (DLP) policy configured for endpoints as shown in the following exhibit.



From a computer named Computer1, a user can sometimes upload files to cloud services and sometimes cannot. Other users experience the same issue.
What are two possible causes of the issue? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  1. The computers are NOT onboarded to the Microsoft 365 compliance center.
  2. The Copy to clipboard action is set to Audit only.
  3. There are file path exclusions in the Microsoft 365 Endpoint data loss prevention (Endpoint DLP) settings.
  4. The Access by unallowed apps action is set to Audit only.
  5. The unallowed browsers in the Microsoft 365 Endpoint data loss prevention (Endpoint DLP) settings are NOT configured.

Answer(s): C,E



You are planning a data loss prevention (DLP) solution that will apply to computers that run Windows 10. You need to ensure that when users attempt to copy a file that contains sensitive information to a USB storage device, the following requirements are met:
If the users are members of a group named Group1, the users must be allowed to copy the file, and an event must be recorded in the audit log.
All other users must be blocked from copying the file. What should you create?

  1. two DLP policies that each contains one DLP rule
  2. one DLP policy that contains one DLP rule
  3. one DLP policy that contains two DLP rules

Answer(s): A



Your company has a Microsoft 365 tenant.
The company performs annual employee assessments. The assessment results are recorded in a document named AssessmentTemplate.docx that is created by using a Microsoft Word template. Copies of the employee assessments are sent to employees and their managers. The assessment copies are stored in mailboxes, Microsoft SharePoint Online sites, and OneDrive for Business folders. A copy of each assessment is also stored in a SharePoint Online folder named Assessments.
You need to create a data loss prevention (DLP) policy that prevents the employee assessments from being emailed to external users. You will use a document fingerprint to identify the assessment documents. The solution must minimize effort.
What should you include in the solution?

  1. Create a fingerprint of 100 sample documents in the Assessments folder.
  2. Create a sensitive info type that uses Exact Data Match (EDM).
  3. Import 100 sample documents from the Assessments folder to a seed folder.
  4. Create a fingerprint of AssessmentTemplate.docx.

Answer(s): D


Reference:

https://docs.microsoft.com/en-us/microsoft-365/compliance/document-fingerprinting?view=o365-worldwide






Post your Comments and Discuss Microsoft SC-400 exam with other Community members: