Exam Details

  • Exam Code
    :SC-400
  • Exam Name
    :Microsoft Information Protection Administrator
  • Certification
    :Role-based
  • Vendor
    :Microsoft
  • Total Questions
    :309 Q&As
  • Last Updated
    :May 11, 2024

Microsoft Role-based SC-400 Questions & Answers

  • Question 41:

    You receive an email that contains a list of words that will be used few a sensitive information type.

    You need to create a file that can be used as the source of a keyword dictionary.

    In which format should you save the list?

    A. an XLSX file that contains one word in each cell of the first row

    B. a ISV file that contains words separated by tabs

    C. a JSON file that that an element tor each word

    D. a text file that has one word on each line

  • Question 42:

    You have a Microsoft 365 tenant that uses the following sensitivity labels:

    1.

    Confidential

    2.

    Internal

    3.

    External

    The labels are published by using a label policy named Policy1.

    Users report that Microsoft Office for the wen apps do not display the Sensitivity button. The Sensitivity button appears in Microsoft 365 Apps that are installed locally.

    You need to ensure that the users can apply sensitivity labels to content when they use Office for the web apps.

    Solution: You modify the scope of the Confidential label.

    Does this meet the goal?

    A. Yes

    B. No

  • Question 43:

    You have a Microsoft 365 tenant that uses the following sensitivity labels:

    1.

    Confidential

    2.

    Internal

    3.

    External

    The labels are published by using a label policy named Policy1.

    Users report that Microsoft Office for the wen apps do not display the Sensitivity button. The Sensitivity button appears in Microsoft 365 Apps that are installed locally.

    You need to ensure that the users can apply sensitivity labels to content when they use Office for the web apps.

    Solution: You run the Execute-AzureAdLabelSync cmdlet.

    Does this meet the goal?

    A. Yes

    B. No

  • Question 44:

    Your company has a Microsoft 365 tenant that uses a domain named Contoso.com.

    You are implementing data loss prevention (DIP).

    The company's default browser in Microsoft Edge.

    During a recent audit, you discover that some user use Firefox and Google Chromo browsers to upload files labeled as Confidential to a third party Microsoft SharePoint Online site that has a URL of https://m365x076709.sharepoint .

    Uses are blocked from uploading the confidential files to the site from Microsoft Edge.

    You need to ensure that the users cannot upload files labels as Confidential from Firefox and Google Chrome to any cloud services.

    NOTE: Each correct selection is worth one point.

    A. From the Microsoft 3G5 Endpoint data loss prevention (Endpoint DLP) settings, add Firefox and Google Chrome to the unallowed browsers list.

    B. Create a DIP policy that applies to the Devices location.

    C. From the Microsoft 365 Endpoint data loss prevention (Endpoint) DLP settings, add contoso.com as an allowed service domain.

    D. From the Microsoft 365 compliance center, onboard the dcvu.es.

    E. From the Microsoft J6b Endpoint data loss prevention (Endpoint) DLP settings, add: m36Sx0767W-sharepomt.com as a blacked service domain.

  • Question 45:

    You are planning a data loss prevention (DLP) solution that will apply to computers that run Windows 10.

    You need to ensure that when users attempt to copy a file that contains sensitive information to a USB storage device, the following requirements are met:

    1.

    If the users are members of a group named Group1, the users must be allowed to copy the file, and an event must be recorded in the audit log.

    2.

    All other users must be blocked from copying the file. What should you create?

    A. one DLP policy that contains one DLP rule

    B. two DLP policies that each contains on DLP rule

    C. one DLP policy that contains two DLP rules

  • Question 46:

    Your company has a Microsoft 365 tenant.

    The company performs annual employee assessments.

    The assessment results are recorded in a document named Assessment I cmplatc.docx that is created by using Microsoft Word template.

    Copies of the employee assessments are sent to employees and their managers.

    The assessment copies are stored in mailboxes, Microsoft SharePoint Online sites, and OneDrive for Business folders. A copy of each assessment is also stored in a SharePoint Online folder named Assessments.

    You need to create a data loss prevention (DLP) policy that prevents the employee assessments from being emailed to external users.

    You will use a document fingerprint to identify the assessment documents.

    What should you include in the solution?

    A. Create a fingerprint of 100 sample documents in the Assessments folder.

    B. Create a sensitive info type that uses Exact Data Match (EDM).

    C. Import 100 sample documents from the Assessments folder to a seed folder.

    D. Create a fingerprint of AssessmentTemplate.docx.

  • Question 47:

    Your company has a Microsoft 365 tenant that uses a domain named contoso.

    The company uses Microsoft Office 365 Message Encryption (OMI ) to encrypt email sent to users in fabrikam.com.

    A user named User1 erroneously sends an email to user2@fabrikam

    You need to disable [email protected] from accessing the email.

    What should you do?

    A. Run the New-ComplianceSearchAction cmdlet.

    B. Instruct User1 to delete the email from her Sent Items folder from Microsoft Outlook.

    C. Run the Get-MessageTrace Cmdlet.

    D. Run the Set-OMEMessageRevocation Cmdlet.

    E. instruct User1 to select Remove external access from Microsoft Outlook on the web.

  • Question 48:

    You implement Microsoft 365 Endpoint data loss prevention (Endpoint DLP).

    You have computers that run Windows 10 and have Microsoft 365 Apps installed. The computers are joined to Azure Active Directory (Azure AD).

    You need to ensure that Endpoint DLP policies can protect content on the computers.

    Solution: You onboard the computers to Microsoft Defender fur Endpoint.

    Does this meet the goal?

    A. Yes

    B. No

  • Question 49:

    You plan to implement sensitivity labels for Microsoft Teams.

    You need to ensure that you can view and apply sensitivity labels to new Microsoft Teams sites.

    What should you do first?

    A. Run the Set-sposite cmdlet.

    B. Configure the EnableMTPLabels Azure Active Directory (Azure AD) setting.

    C. Create a new sensitivity label scoped to Groups and sites.

    D. Run the Execute-AzureAdLabelSync cmdtet.

  • Question 50:

    You have a data loss prevention (DLP) policy that applies to the Devices location. The policy protects documents that contain States passport numbers.

    Users reports that they cannot upload documents to a travel management website because of the policy.

    You need to ensure that the users can upload the documents to the travel management website. The solution must prevent the protected content from being uploaded to other locations.

    Which Microsoft 365 Endpoint data loss prevention (Endpoint DLP) setting should you configure?

    A. Unallowed apps

    B. File path exclusions

    C. Service domains

    D. Unallowed browsers

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SC-400 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.