Free Microsoft SC-401 Exam Questions (page: 9)

View Related Case Study

HOTSPOT (Drag and Drop is not supported)

You have a Microsoft 365 E5 subscription that contains the sensitive information types (SITs) shown in the following table.



You plan to create the policies shown in the following table and assign them to a Microsoft SharePoint Online site.



Which policies can use SIT1, and which policies can use SIT2? To answer, select the appropriate options in the answer area.

Note: Each correct selection is worth one point.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:




Box 1: DLP1 and Sensitivity1 only.
SIT1 is of type Fingerprint.

SITs created from document fingerprinting can be used as a detection method in DLP policies scoped to Exchange, SharePoint, OneDrive, Teams, and Devices. [DLP1]

MIP [Microsoft Purview] auto-labeling can use document fingerprinting as a detection method in Exchange, SharePoint, and OneDrive.

--
Microsoft Purview [MIP], Automatically apply a sensitivity label to Microsoft 365 data [Sensitivity1]

Note:
DLP1 is a Data loss prevention (DLP) policy. [Yes]
Retention1 is a Retention label auto-labeling policy. [No]
Sensitivity1 is a Sensitivity label auto-labeling policy. [Yes]

Box 2: DLP1, Retention1, and Sensitivity1
SIT2 is of type Regular expression.

Note:
DLP1 is a Data loss prevention (DLP) policy. [Yes]
Retention1 is a Retention label auto-labeling policy. [Yes]
Sensitivity1 is a Sensitivity label auto-labeling policy. [Yes]


Reference:

https://learn.microsoft.com/en-us/purview/sit-document-fingerprinting https://learn.microsoft.com/en-us/purview/apply-sensitivity-label-automatically



View Related Case Study

You have a Microsoft 365 subscription that contains two Microsoft SharePoint Online sites named Site1 and Site2.

You plan to use policies to meet the following requirements:

Add a watermark of Confidential to a document if the document contains the words Project1 or Project2.


Retain a document for seven years if the document contains credit card information.


Add a watermark of Internal Use Only to all the documents stored on Site2.


Add a watermark of Confidential to all the documents stored on Site1.


You need to recommend the minimum number of sensitive info types required.

How many sensitive info types should you recommend?

  1. 1
  2. 2
  3. 3
  4. 4

Answer(s): C

Explanation:

(1) Add a watermark of Confidential to a document if the document contains the words Pro-ject1 or Project2.
(2 - Retention) Retain a document for seven years if the document contains credit card infor-mation.
(3) Add a watermark of Internal Use Only to all the documents stored on Site2.
(1 the same can be used ) Add a watermark of Confidential to all the documents stored on Site1.


Reference:

https://learn.microsoft.com/en-us/purview/sit-sensitive-information-type-learn-about



View Related Case Study

HOTSPOT (Drag and Drop is not supported)

You have a Microsoft 365 E5 subscription that contains the sensitive information types (SITs) shown in the following table.



A user sends the email messages shown in the following table.



For each of the following statements, select Yes if the statement is true. Otherwise, select No.

Note: Each correct selection is worth one point.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:




Box 1: Yes
Yes - SIT1 will identity and match the content in Email1.

Prd:1234 will match the regular expression of SIT1.

Box 2: Yes
Yes - SIT2 will identity and match the content in Email2.

111-111-1111 will match the exclusion of SIT2.
However, 123456789012 will match the regular expression of SIT2.

Note: Sensitive information type additional checks
Here are the definitions and some examples for the available additional checks.

* Exclude specific matches: This check lets you define keywords to exclude when detecting matches for the pattern you're editing. For example, you might exclude test credit card numbers like '4111111111111111' so that they're not matched as a valid number.

Box 3: No
No - SIT3 will identity and match the content in Email3.

The full credit card number is not inclued in Email3.

Note:
Sensitive information types (SIT) can use functions as primary elements for identifying sensitive items. For example, the Credit Card Number SIT uses the Func_credit_card function to detect credit card number.


Reference:

https://learn.microsoft.com/en-us/purview/sit-regex-validators-additional-checks#sensitive-information-type- regular-expression-validators https://learn.microsoft.com/en-us/purview/sit-functions



View Related Case Study

You have a Microsoft 365 E5 subscription that contains two users named User1 and User2.

On January 1, you create the sensitivity label shown in the following table.



On January 2, you publish Label1 to User.

On January 3, User1 creates a Microsoft Word document named Doc1 and applies Label1 to the document.

On January 4, User2 edits Doc1.

On January 15, you increase the content expiry period for Label1 to 28 days.

When will access to Doc1 expire for User2?

  1. January 23
  2. January 24
  3. January 25
  4. January 31

Answer(s): B



View Related Case Study

HOTSPOT (Drag and Drop is not supported)

You have a Microsoft 365 E5 tenant that contains a trainable classifier named Classifier1. You need to increase the accuracy of Classifier1. The solution must use the principle of least privilege.

Which feature should you use and to which role group should you be added? To answer, select the appropriate options in the answer area.

Note: Each correct selection is worth one point.

Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:




Box 1: Content Explorer
Increase classifier accuracy
Classifiers, like sensitive information types (SIT) and trainable classifiers are used in various kinds of policies to identify sensitive information. Like most such models, sometimes they identify an item as being sensitive that isn't. Or, they may not identify an item as being sensitive when it actually is. These are called false positives and false negatives.

This article shows you how to confirm whether items matched by a classifier are true positive (a Match) or a false positive (Not a match) and provide Match/Not a match feedback. You can use that feedback to tune your classifiers to increase accuracy. You can also send redacted versions of the document as well as the Match, Not a Match feedback to Microsoft if you want to help increase the accuracy of the classifiers that Microsoft provides.

The Match, Not a match experience is available in:

* -> Content Explorer
Sensitive Information Type Matched Items page
Trainable Classifier Matched Items page
Microsoft Purview Data Loss Prevention (DLP) Alerts page

Box 2: Compliance data administrator
Permissions
In order to get access to the content explorer tab, an account must be assigned membership in any one of these roles or role groups.

Microsoft 365 role groups
Global administrator
Compliance administrator
Security administrator
*-> Compliance data administrator


Reference:

https://learn.microsoft.com/en-us/microsoft-365/compliance/data-classification-increase-accuracy https://learn.microsoft.com/en-us/microsoft-365/compliance/data-classification-content-explorer






Post your Comments and Discuss Microsoft SC-401 exam prep with other Community members:

SC-401 Exam Discussions & Posts