HOTSPOT
-
You have a hybrid Microsoft 365 deployment that contains the users shown in the following table.
You need to perform an eDiscovery content search.
Which user's data can be included in the content search? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Exchange mailboxes: User4 only
Teams chat data: User4, User3, and User1 only
Explanation: Content Search in Microsoft Purview can search only Exchange Online mailboxes, not on-premises Exchange mailboxes in a hybrid deployment. However, Teams chat data for users with Teams can be discovered even when their Exchange mailbox is on-premises, because Teams compliance records are supported for those hybrid scenarios. A user without a Teams license has no Teams chat data to search.
Question 136
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains the users and groups shown in the following table.
You create the communication compliance policy as shown in the exhibit. (Click the Exhibit tab.)
Four emails are sent as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Yes
No
Yes
Explanation: Scoped users are members of Dist1 (User1, User2) and Group1 (User3), with User2 explicitly excluded, leaving User1 and User3 supervised. The policy monitors Exchange inbound communications to supervised users. Mail1 (User3→User1) is inbound to supervised User1. Mail2 (User1→User2) is inbound only to excluded User2, so not reviewed. Mail3 (User2→User1) is inbound to supervised User1 even though the sender is excluded.
Question 137
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains two users named User1 and User2.
You create the audit retention policies shown in the following table.
The users perform the following actions:
• User1 renames a Microsoft SharePoint Online site.
• User2 sends an email message.
How long will the audit log records be retained for each action? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: User1 renames a SharePoint site: 6 months
User2 sends an email message: 1 year
Explanation: For SharePoint, the higher-priority matching policy with Activities=None applies to all SharePoint activities for User1, so the 6-month policy overrides lower-priority SiteRenamed policies. User2 isn't targeted by any ExchangeItem retention policy, so with Microsoft 365 E5 the default Audit (Premium) retention is 1 year.
Question 139
You have a Microsoft 365 E5 subscription that contains a device named Device1.
You need to enable Endpoint data loss prevention (Endpoint DLP) for Device1.
What should you do first in the Microsoft Purview compliance portal?
A. Turn on device onboarding.
B. Add a Microsoft Purview Information Protection scanner cluster.
C. Onboard Device1 to Microsoft Purview.
D. Create a Microsoft Purview Information Barriers (IBs) segment.
E. Enable Microsoft Priva Privacy Risk Management.
Show Answer
Correct Answer: A
Explanation: To use Endpoint Data Loss Prevention, the tenant must first enable device onboarding in the Microsoft Purview compliance portal. After device onboarding is turned on, you can onboard eligible devices (or use existing Microsoft Defender for Endpoint onboarding) so Endpoint DLP policies can apply. The other options are unrelated to enabling Endpoint DLP.
Question 140
You have a Microsoft 365 E5 subscription.
You need to prevent users from uploading data loss prevention (DLP)-protected documents to the following third-party websites:
• web1.contoso.com
• web2.contoso.com
The solution must minimize administrative effort.
To what should you set the Service domains setting for Endpoint DLP?
A. contoso.com
B. web*.contoso.com
C. *.contoso.com
D. web1.contoso.com and web2.contoso.com
Show Answer
Correct Answer: D
Explanation: For Endpoint DLP Service domains, specify the exact third-party domains you want to restrict. Wildcards such as *.contoso.com would include additional subdomains beyond the stated requirement, and contoso.com is broader than necessary. Listing web1.contoso.com and web2.contoso.com meets the requirement while avoiding unintended restrictions.
Question 141
You have a Microsoft 365 E5 subscription.
You need to ensure that encrypted email messages sent to an external recipient can be revoked or will expire within seven days.
What should you configure first?
A. a custom branding template
B. a mail flow rule
C. a Conditional Access policy
D. a sensitivity label
Show Answer
Correct Answer: A
Explanation: To use Microsoft Purview Advanced Message Encryption features such as message revocation and expiration, you must first configure a custom branding template. Expiration is available only when using a custom branding template, after which it can be applied through mail flow rules. A mail flow rule alone cannot enable expiration without the branding template. Conditional Access and sensitivity labels do not provide this capability.
Question 142
You have a Microsoft 365 E5 subscription that uses Privacy Risk Management in Microsoft Priva.
You need to review the personal data type instances that were detected in the subscription.
What should you use in the Microsoft Purview compliance portal?
A. Content explorer
B. User data search
C. Content search
D. an eDiscovery case
Show Answer
Correct Answer: A
Explanation: Content explorer in the Microsoft Purview compliance portal is used to view and inspect items that contain detected sensitive information types, including personal data types used by Microsoft Priva Privacy Risk Management. Content search and eDiscovery are for discovery/search workflows, while User data search is intended for data subject request scenarios rather than reviewing detected personal data instances.
Question 143
You have a Microsoft 365 E5 subscription that uses Yammer.
You need to create a Microsoft Purview communication compliance policy that will detect inappropriate images in Yammer conversations.
What should you do first?
A. Configure Hybrid Mode for Yammer.
B. Configure Native Mode for Yammer.
C. Configure the Yammer network admin settings.
D. Assign each user a Yammer license.
Show Answer
Correct Answer: B
Explanation: Microsoft Purview communication compliance supports Yammer (Viva Engage) messages and attachments only when the Yammer network is in Native Mode, which integrates it with Microsoft 365. Configuring Native Mode is therefore the prerequisite before creating a policy to detect inappropriate images in Yammer conversations.
Question 144
You have a Microsoft 365 E5 subscription.
You need to identify personal data stored in the subscription and control the transfer of personal data between users and groups.
Which type of license should you acquire?
A. Microsoft Purview Audit (Premium)
B. Priva Privacy Risk Management
C. Microsoft 365 E5 Compliance
D. Priva Subject Rights Requests
Show Answer
Correct Answer: B
Explanation: Priva Privacy Risk Management is the Microsoft Priva capability designed to discover personal data across Microsoft 365, identify privacy risks such as data overexposure and unnecessary transfers, and help control the handling of personal data. Microsoft 365 E5 already includes many compliance capabilities, but Priva Privacy Risk Management is a separate add-on license. Priva Subject Rights Requests focuses on fulfilling data subject requests, and Purview Audit (Premium) is for advanced auditing, not privacy risk management.
Question 146
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains the users shown in the following table.
You create an assessment named Assesment1 as shown in the following exhibit.
Which users can update the title of Assessment1, and which users can add User5 to the Compliance Manager Readers role group? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Can update the Assessment1 title:
Admin1, Admin2, and User4 only
Can add User5 to the Compliance Manager Readers role group:
Admin1 only
Explanation: Assessment modification is allowed for Global Administrators, Compliance Administrators, and Compliance Manager Administrators, but not Compliance Manager Contributors. Managing Compliance Manager role group membership requires role management privileges available to the Global Administrator in this scenario.
$19
Get all 318 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.