Pass the Microsoft Microsoft Certified: Information Security Administrator Associate SC-401 Questions and answers with CertsForce

Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions
Questions # 1:

You are creating a data loss prevention (DLP) policy that will apply to all available locations except Fabric and Power BI workspaces.

You configure an advanced DLP rule in the policy.

Which type of condition can you use in the rule?

Options:

A.

Sensitive info type


B.

Content search query


C.

Sensitive label


D.

Keywords


Expert Solution
Questions # 2:

HOTSPOT

You plan to create a custom sensitive information type that will use Exact Data Match (EDM).

You need to identify what to upload to Microsoft 365, and which tool to use for the upload.

What should you identify? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 2


Expert Solution
Questions # 3:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have a Microsoft 365 subscription.

You have a user named User1. Several users have full access to the mailbox of User1.

Some email messages sent to User1 appear to have been read and deleted before the user viewed them.

When you search the audit log in the Microsoft Purview portal to identify who signed in to the mailbox of User1, the results are blank.

You need to ensure that you can view future sign-ins to the mailbox of User1.

Solution: You run the Set-AdminAuditLogConfig -AdminAuditLogEnabled $true -AdminAuditLogCmdlets *Mailbox* command.

Does that meet the goal?

Options:

A.

Yes


B.

No


Expert Solution
Questions # 4:

You have a Microsoft 365 tenant that is opt-in for trainable classifiers.

You need to ensure that a user named User1 can create custom trainable classifiers. The solution must use the principle of least privilege.

Which role should you assign to User1?

Options:

A.

Security Administrator


B.

Compliance Administrator


C.

Global Administrator


D.

Security Operator


Expert Solution
Questions # 5:

You have a Microsoft 365 E5 subscription that contains a device named Device1.

You need to enable Endpoint data loss prevention (Endpoint DLP) for Device1.

What should you do first in the Microsoft Purview portal?

Options:

A.

Turn on device onboarding.


B.

Enable Microsoft Priva Privacy Risk Management.


C.

Create a Microsoft Purview Information Barriers (IBs) segment.


D.

Add a Microsoft Purview Information Protection scanner cluster.


E.

Onboard Device1 to Microsoft Purview.


Expert Solution
Questions # 6:

You have a Microsoft 565 subscription that contains 100 users and a Microsoft 365 group named Group1. All users have Windows 11 devices and use Microsoft SharePoint Online and Exchange Online. A sensitivity label named Label! is published as the default label for Group1. You add two sublabels named Sublabel1 and Sublabel2 lo Label1. You need to ensure that the settings in Sublabel 1 are applied by default to Group 1. What should you do?

Options:

A.

Change the order of Sublabel!


B.

Duplicate all the settings from Sublabel! to Label1.


C.

Modify the policy of Label1.


D.

Delete the policy of Label1 and publish Sublabel1.


Expert Solution
Questions # 7:

You are creating a DLP policy named Policy1 that will be applied to the locations as shown in the following exhibit.

Question # 7

Policy1 contains an advanced data loss prevention (DLP) rule named Rule1.

Which two conditions can you use in Rule1? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

Options:

A.

Document property is


B.

Attachment's file extension is


C.

Document size equals or is greater than


D.

Content is shared from Microsoft 365


E.

Content contains


Expert Solution
Questions # 8:

You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. Site1 contains the files shown in the following table.

Question # 8

In the Microsoft Purview portal, you create a content search named Conlent1 and configure the search conditions as shown in the following exhibit.

Question # 8

Which files will be returned by Content1?

Options:

A.

File2.docx only


B.

File3.docx only


C.

File1.docx and File2.docx only


D.

File1 .docx and File3.docx only


E.

File1 .docx, File2.docx, and File3.docx


Expert Solution
Questions # 9:

You have a Microsoft 365 E5 subscription that contains a Microsoft Teams channel named Channel1. Channel1 contains research and development documents.

You plan to implement Microsoft 365 Copilot for the subscription.

You need to prevent the contents of files stored in Channel1 from being included in answers generated by Copilot and shown to unauthorized users.

What should you use?

Options:

A.

data loss prevention (DLP)


B.

Microsoft Purview insider risk management


C.

Microsoft Purview Information Barriers


D.

sensitivity labels


Expert Solution
Questions # 10:

HOTSPOT

You have a Microsoft 365 subscription.

You plan to deploy an audit log retention policy.

You need to perform a search to validate whether the policy will be applied to the intended entries.

Which two fields should you configure for the search? To answer, select the appropriate fields in the answer area.

NOTE: Each correct selection is worth one point.

Question # 10


Expert Solution
Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions