HOTSPOT
-
You have a Microsoft 365 subscription that contains the users shown in the following table.
You have the information barrier (IB) segments shown in the following table.
You apply the IB policies shown in the following table.
You create the new IB policies shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: User2 can initiate communication with User1: No
User1 can initiate communication with User4: Yes
You can apply all the policies after creating Policy3 and Policy4: Yes
Explanation: User2 (Investments) is explicitly blocked from communicating with HR by Policy3, so cannot contact User1. User4 is not in any IB segment, so User1 (HR) can communicate with User4. The allow and block policies defined do not conflict with each other, so all policies can be applied together.
Question 21
HOTSPOT
-
You have a Microsoft 365 E5 subscription that contains the users shown in the following table.
You have the eDiscovery cases shown in the following table.
The eDiscovery cases have the members shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Admin1 can remove himself from Case2: No
Admin1 can remove Admin3 from Case3: No
Admin2 can remove Admin3 from Case2: Yes
Explanation: Only eDiscovery Administrators can remove members from a case. Admin1 is only an eDiscovery Manager, so cannot remove members (including himself) from any case. Admin2 is an eDiscovery Administrator and can remove members from cases they can access, including Case2.
Question 22
You have a Microsoft 365 subscription that contains the users shown in the following table.
You review the audit retention period of each user.
Which users' audit logs are retained for nine months?
A. User3 only
B. User1 and User3
C. User2 and User3
D. User1, User2, and User3
Show Answer
Correct Answer: A
Explanation: Microsoft 365 audit log retention depends on the license. Standard audit retention is 90 days for licenses like Microsoft 365 E3 and F3 unless Advanced Audit is added. Microsoft 365 E5 includes Advanced Audit by default, which provides a longer retention period (nine months by default). Therefore, only User3 has audit logs retained for nine months.
Question 23
You have a Microsoft 365 E5 subscription.
You use the following services:
• Microsoft Teams
• Microsoft Entra ID
• Microsoft OneDrive
• Microsoft Exchange Online
• Microsoft SharePoint Online
Which two services can you monitor by using Microsoft Purview communication compliance? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
A. SharePoint Online
B. Exchange Online
C. Microsoft Entra ID
D. OneDrive
E. Teams
Show Answer
Correct Answer: B, E
Explanation: Microsoft Purview communication compliance is designed to monitor user communications across supported messaging services. It integrates with Exchange Online to monitor email content and with Microsoft Teams to monitor chats, channel messages, and other Teams communications. It does not monitor SharePoint Online, OneDrive, or Microsoft Entra ID activities for communication compliance scenarios.
Question 24
DRAG DROP
-
You have a Microsoft 365 E5 subscription.
You need to meet the following requirements:
• Prevent the sharing of files between the users in a department named department and the users in a department named department2.
• Generate an alert if a user downloads large quantities of sensitive customer data.
Which type of policy should you use for each requirement? To answer, drag the appropriate policy types to the correct requirements. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Prevent sharing between department1 and department2:
Information barrier policy
Generate an alert for large downloads of sensitive customer data:
Insider risk management policy
Explanation: Information barrier policies block communication and file sharing between defined user segments such as departments.
Insider risk management policies detect risky user activities, including mass downloads of sensitive data, and can generate alerts.
Question 25
You have a Microsoft 365 E5 subscription that contains a retention policy named RP1 as shown in the following table.
You place a preservation lock on RP1.
You need to modify RP1.
Which two actions can you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
A. Decrease the retention period of the policy.
B. Delete the policy.
C. Increase the retention period of the policy.
D. Disable the policy.
E. Remove locations from the policy.
F. Add locations to the policy.
Show Answer
Correct Answer: C, F
Explanation: When a retention policy is placed under a preservation lock, only additive (non-reducing) changes are allowed. You cannot delete or disable the policy, decrease the retention period, or remove locations because those actions would reduce retention scope. You can increase the retention period and add new locations, as both actions expand or maintain the scope of retention.
Question 26
HOTSPOT
-
You have a Microsoft 365 E5 subscription.
You plan to create the Microsoft Priva Privacy Risk Management policies shown in the following table.
Which policies can you apply to Microsoft Exchange Online email, and which policies can you apply to Microsoft SharePoint Online sites? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Exchange Online email:
Policy2 and Policy3 only
SharePoint Online sites:
Policy1, Policy2, and Policy3
Explanation: In Microsoft Priva Privacy Risk Management, Exchange Online supports Data transfers and Data minimization policies, but not Data overexposure. SharePoint Online supports all three policy types: Data overexposure, Data transfers, and Data minimization.
Question 27
You have a Microsoft 365 E5 subscription that contains the groups shown in the following table.
You need to create a Privacy Risk Management policy in Microsoft Priva.
To which groups can you apply the policy?
A. Group1 only
B. Group1 and Group2 only
C. Group1, Group2, and Group3 only
D. Group1, Group3, and Group4 only
E. Group1, Group2, Group3, and Group4
Show Answer
Correct Answer: A
Explanation: Privacy Risk Management policies in Microsoft Priva can be scoped to individual users and Microsoft 365 (Office 365) Groups only. Other group types such as security groups, distribution groups, or dynamic groups are not supported. Therefore, only Group1 is eligible.
Question 28
HOTSPOT
-
You have a Microsoft 365 E5 subscription the uses Microsoft Priva.
You plan to create the Privacy risk management policies shown in the following table.
Which policies can send email notifications, and which policies can show policy tips in Microsoft Teams when a policy match is detected? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Can send email notifications:
Policy2 and Policy3 only
Can show policy tips in Teams:
Policy1 and Policy2 only
Explanation: In Microsoft Priva risk management, email notifications are supported for Data transfers and Data minimization policies, but not for Data overexposure. Policy tips in Microsoft Teams are supported for Data overexposure and Data transfers policies, while Data minimization does not support Teams policy tips.
Question 29
HOTSPOT
-
You have a Microsoft 365 E5 subscription.
You plan to use the Microsoft Purview compliance portal to map human resources (HR) data for use with insider risk management policies.
You need to add a data connector to import the HR data.
What should you do first, and in which format should you import the data? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Show Answer
Correct Answer: Register an app in Microsoft Entra ID.
CSV
Explanation: Importing HR data for Insider Risk Management requires an HR data connector. The prerequisite is registering an app in Microsoft Entra ID to authenticate the upload process. HR data is uploaded using a supported CSV file format.
$19
Get all 316 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.