HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains the users and groups shown in the following table.
You create the communication compliance policy as shown in the exhibit. (Click the Exhibit tab.)
Four emails are sent as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: User4 can review Mail1: Yes
User4 can review Mail2: No
User4 can review Mail3: Yes
Explanation: Policy scopes Dist1 and Group1, excludes User2, direction = Inbound. Inbound means messages received by scoped users.
Mail1: User3 → User1. User1 is in Dist1 (scoped); inbound applies → reviewable.
Mail2: User1 → User2. User2 is excluded and not the receiver in scope → not reviewable.
Mail3: User2 → User1. Receiver User1 is scoped; sender exclusion doesn’t block inbound to a scoped user → reviewable.
Question 136
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains two users named User1 and User2.
You create the audit retention policies shown in the following table.
The users perform the following actions:
• User1 renames a Microsoft SharePoint Online site.
• User2 sends an email message.
How long will the audit log records be retained for each action? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: User1 renames a SharePoint site: 6 months
User2 sends an email message: 1 year
Explanation: For User1, multiple SharePoint audit retention policies apply. The highest-priority applicable policy is AuditRetention3 (priority 30), which targets SharePoint records for User1 with Activities set to None (meaning all SharePoint activities), resulting in 6 months retention. For User2, no custom audit retention policy applies to Exchange send activities. With a Microsoft 365 E5 license, the default audit log retention is 1 year.
Question 138
You have a Microsoft 365 E5 subscription that contains a device named Device1.
You need to enable Endpoint data loss prevention (Endpoint DLP) for Device1.
What should you do first in the Microsoft Purview compliance portal?
A. Turn on device onboarding.
B. Add a Microsoft Purview Information Protection scanner cluster.
C. Onboard Device1 to Microsoft Purview.
D. Create a Microsoft Purview Information Barriers (IBs) segment.
E. Enable Microsoft Priva Privacy Risk Management.
Show Answer
Correct Answer: A
Explanation: To use Endpoint DLP, device onboarding in the Microsoft Purview compliance portal must be enabled at the tenant level first. This is done by going to Settings > Device onboarding > Devices and selecting **Turn on device onboarding**. Only after this setting is enabled can individual devices like Device1 be onboarded and managed by Endpoint DLP. Other options listed are either unrelated or occur later in the process.
Question 139
You have a Microsoft 365 E5 subscription.
You need to prevent users from uploading data loss prevention (DLP)-protected documents to the following third-party websites:
• web1.contoso.com
• web2.contoso.com
The solution must minimize administrative effort.
To what should you set the Service domains setting for Endpoint DLP?
A. contoso.com
B. web*.contoso.com
C. *.contoso.com
D. web1.contoso.com and web2.contoso.com
Show Answer
Correct Answer: D
Explanation: Endpoint DLP Service domains accepts specific domains or wildcard domains. Using *.contoso.com or contoso.com would also block any other subdomains, which is broader than required. Using web*.contoso.com is not supported as a valid wildcard pattern. To block only web1.contoso.com and web2.contoso.com while minimizing unintended impact, you should explicitly list both domains.
Question 140
You have a Microsoft 365 E5 subscription.
You need to ensure that encrypted email messages sent to an external recipient can be revoked or will expire within seven days.
What should you configure first?
A. a custom branding template
B. a mail flow rule
C. a Conditional Access policy
D. a sensitivity label
Show Answer
Correct Answer: A
Explanation: To allow encrypted emails sent to external recipients to be revoked or to expire after a set time, you must use Microsoft Purview Advanced Message Encryption (OME) with expiration. Expiration and revocation capabilities are only available when a custom branding template is configured and used. Mail flow rules or sensitivity labels can apply encryption, but without a custom branding template, message expiration cannot be enabled.
Question 141
You have a Microsoft 365 E5 subscription that uses Privacy Risk Management in Microsoft Priva.
You need to review the personal data type instances that were detected in the subscription.
What should you use in the Microsoft Purview compliance portal?
A. Content explorer
B. User data search
C. Content search
D. an eDiscovery case
Show Answer
Correct Answer: A
Explanation: To review personal data type instances detected by Microsoft Priva Privacy Risk Management, you use Content explorer in the Microsoft Purview compliance portal. Content explorer shows where sensitive information types and personal data types are detected across locations and items, allowing inspection of the actual instances. The other options focus on searching users, performing general content searches, or legal discovery, not reviewing detected personal data classifications.
Question 142
You have a Microsoft 365 E5 subscription that uses Yammer.
You need to create a Microsoft Purview communication compliance policy that will detect inappropriate images in Yammer conversations.
What should you do first?
A. Configure Hybrid Mode for Yammer.
B. Configure Native Mode for Yammer.
C. Configure the Yammer network admin settings.
D. Assign each user a Yammer license.
Show Answer
Correct Answer: B
Explanation: Microsoft Purview communication compliance can analyze Yammer (Viva Engage) conversations, including images, only when Yammer is configured in Native Mode. Native Mode integrates Yammer fully into Microsoft 365, enabling compliance features such as communication compliance policies. Without Native Mode, Yammer content isn’t available to Purview for inspection, so this must be configured first.
Question 143
You have a Microsoft 365 E5 subscription.
You need to identify personal data stored in the subscription and control the transfer of personal data between users and groups.
Which type of license should you acquire?
A. Microsoft Purview Audit (Premium)
B. Priva Privacy Risk Management
C. Microsoft 365 E5 Compliance
D. Priva Subject Rights Requests
Show Answer
Correct Answer: B
Explanation: Microsoft Priva Privacy Risk Management is specifically designed to identify personal data, assess privacy risks, and control overexposure and data transfers between users and groups. It is an add-on license that can be purchased on top of Microsoft 365 E5. Microsoft 365 E5 Compliance is already included with E5 and does not by itself provide Priva’s privacy risk management capabilities.
Question 144
You have a Microsoft 365 subscription that contains a user named User1.
You need to assign User1 permissions to search Microsoft Office 365 audit logs.
What should you use?
A. the Azure Active Directory admin center
B. the Microsoft Purview compliance portal
C. the Exchange admin center
D. the Microsoft 365 Defender portal
Show Answer
Correct Answer: B
Explanation: Permissions to search Microsoft 365 (Office 365) audit logs are managed through the Microsoft Purview compliance portal. Microsoft has deprecated managing Audit permissions in the Exchange admin center and consolidated audit log access and role assignment in Purview, making it the correct and current location to assign audit log search permissions.
Question 145
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains the users shown in the following table.
You create an assessment named Assesment1 as shown in the following exhibit.
Which users can update the title of Assessment1, and which users can add User5 to the Compliance Manager Readers role group? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Can update the Assessment1 title:
Admin1, Admin2, and User4 only
Can add User5 to the Compliance Manager Readers role group:
Admin1 only
Explanation: Updating an assessment title requires a role that can create or modify Compliance Manager assessments. This includes Global Administrator, Compliance Administrator, and Compliance Manager Administrators, but not Contributors.
Managing role group membership requires the Role Management permission, which is available only to Global Administrators (and Purview/Organization Management admins). In the given users, only Admin1 (Global Administrator) can add users to the Compliance Manager Readers role group.
$19
Get all 316 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.