Microsoft

SC-400 Free Practice Questions — Page 4

Question 31

You have a Microsoft 365 subscription. You are evaluating whether to use the Microsoft Purview auditing solutions shown in the following table. You plan to implement Microsoft Purview Audit (Standard). Which solutions can you use?

A. Solution2 only
B. Solution3 only
C. Solution1 and Solution2 only
D. Solution2 and Solution3 only
E. Solution1, Solution2, and Solution3
Show Answer
Correct Answer: A
Explanation:
Based on Microsoft Purview Audit licensing, Microsoft Purview Audit (Standard) supports only the capabilities included in the standard audit offering. The evaluated solutions in the referenced table resolve to only Solution2 being usable with Audit (Standard).

Question 32

HOTSPOT - You have a Microsoft 365 E5 subscription that contains the sensitive information types (SITs) shown in the following table. A user sends the email messages shown in the following table. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

Illustration for SC-400 question 32 Illustration for SC-400 question 32 Illustration for SC-400 question 32
Show Answer
Correct Answer: No Yes Yes
Explanation:
SIT1 requires the regex match and the keyword 'product' within 15 characters; here they are farther apart, so it does not match. SIT2 matches the 12-digit account number; the excluded value does not prevent matching a different valid number. SIT3 uses the built-in credit card function, which detects the card number ending in 0023 together with supporting credit-card context.

Question 33

DRAG DROP - You have a Microsoft 365 E5 subscription. You need to configure the Microsoft Priva Privacy Risk Management policies to generate alerts for the following scenarios: • Scenario1: A user shares a Microsoft SharePoint Online document library link with a user in a different country. • Scenario2: A user from the sales department emails personal data to a user in a different country. • Scenario3: The personal data stored on a Microsoft SharePoint Online site was NOT modified during the last 120 days. Which policy template should you use for each scenario? To answer, drag the appropriate policy templates to the correct scenarios. Each template may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.

Illustration for SC-400 question 33
Show Answer
Correct Answer: Scenario1: Data transfers Scenario2: Data transfers Scenario3: Data minimization
Explanation:
Data transfers policies detect cross-border or cross-boundary sharing/transmission of personal data (including SharePoint sharing and email). Data minimization identifies personal data that is no longer needed or has been inactive for a defined period, such as 120 days without modification.

Question 34

DRAG DROP - You have a Microsoft 365 E5 subscription. You plan to update the overall compliance score for the Microsoft 365 environment. You resolve improvement actions that have a Testing type of Manual and discover that the compliance score fails to update. You need to ensure that the compliance score for manual improvement actions is updated. Which three actions should you perform in sequence from Microsoft Purview Compliance Manager? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Illustration for SC-400 question 34
Show Answer
Correct Answer: From Improvement actions, export the actions. Modify the improvement action items in the exported file. From Improvement actions, select Update actions.
Explanation:
Manual testing improvement actions are updated by exporting the actions to Excel, editing the required fields, and then uploading/updating the actions so Compliance Manager recalculates the compliance score.

Question 35

You have a Microsoft 365 E5 subscription. You plan to use Microsoft Purview insider risk management. You need to create an insider risk management policy that will detect data theft from Microsoft SharePoint Online by users that submitted their resignation or are near their employment termination date. What should you do first?

A. Configure Office indicators.
B. Configure an HR data connector.
C. Configure a Physical badging connector.
D. Onboard devices to Microsoft Defender for Endpoint.
Show Answer
Correct Answer: B
Explanation:
To detect risky activity by users who have resigned or are approaching termination, Insider Risk Management must first have HR lifecycle event data. Configuring an HR data connector imports resignation and termination information, enabling policies that target these users. Office indicators, physical badging, and Defender for Endpoint are optional signals but do not provide employment status events required for this scenario.

Question 36

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a Microsoft 365 subscription that contains 1.000 user mailboxes. An administrator named Admin1 must be able to search for the name of a competing company in the mailbox of a user named User5. You need to ensure that Admin1 can search the mailbox of User5 successfully. The solution must prevent Admin1 from sending email messages as User5. Solution: You assign the eDiscovery Manager role to Admin1, and then create an eDiscovery case. Does this meet the goal?

A. Yes
B. No
Show Answer
Correct Answer: A
Explanation:
Assigning the eDiscovery Manager role allows Admin1 to create and manage eDiscovery cases and search mailbox content, including User5's mailbox, without granting mailbox permissions such as Send As. Creating an eDiscovery case enables the content search while not permitting Admin1 to send email as User5.

Question 37

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a Microsoft 365 subscription that contains 1.000 user mailboxes. An administrator named Admin1 must be able to search for the name of a competing company in the mailbox of a user named User5. You need to ensure that Admin1 can search the mailbox of User5 successfully. The solution must prevent Admin1 from sending email messages as User5. Solution: You modify the permissions of the mailbox of User5, and then create an eDiscovery case. Does this meet the goal?

A. Yes
B. No
Show Answer
Correct Answer: B
Explanation:
No. To perform mailbox content searches, Admin1 should be granted the appropriate eDiscovery (Microsoft Purview/eDiscovery Manager) permissions and use an eDiscovery case. Modifying User5's mailbox permissions is not required for eDiscovery searches and does not contribute to the stated goal. While mailbox permission changes need not grant Send As, the proposed solution includes an unnecessary mailbox permission modification, so it does not meet the goal as stated. Sources: https://www.coursehero.com/file/p68s38ce/Question-15-Note-This-question-is-part-of-a-series-of-questions-that-present-the https://www.certlibrary.com/exam/70-774

Question 38

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have a Microsoft 365 subscription that contains 1.000 user mailboxes. An administrator named Admin1 must be able to search for the name of a competing company in the mailbox of a user named User5. You need to ensure that Admin1 can search the mailbox of User5 successfully. The solution must prevent Admin1 from sending email messages as User5. Solution: You start a message trace, and then create a Data Subject Request (DSR) case. Does this meet the goal?

A. Yes
B. No
Show Answer
Correct Answer: B
Explanation:
No. A message trace only tracks email flow and does not grant the ability to search mailbox contents. A Data Subject Request (DSR) case is used for privacy requests, not for performing mailbox content searches by an administrator. To search User5's mailbox, Admin1 should be granted the appropriate eDiscovery/Content Search permissions (or a role such as eDiscovery Manager) without mailbox delegation or Send As permissions, which prevents sending mail as User5.

Question 39

SIMULATION - Use the following login credentials as needed: To enter your username, place your cursor in the Sign in box and click on the username below. To enter your password, place your cursor in the Enter password box and click on the password below. Microsoft 365 Username: Microsoft 365 Password: ********** If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab. The following information is for technical support purposes only: Lab Instance: 12345678 - You are investigating a data breach. You need to retain all Microsoft Exchange items in the mailbox of Alex Wilber that contain the word Falcon and were created in the year 2021. To complete this task, sign in to the appropriate admin center.

Show Answer
Correct Answer: Microsoft Purview compliance portal → eDiscovery (Standard) or Content search → Create a search/retention hold for mailbox Alex Wilber. Locations: Exchange mailbox = Alex Wilber. Query: Falcon AND ((sent:2021) OR (received:2021)). Place the search results on hold (retain items).
Explanation:
Exchange does not use the generic Created property for mail. Use Sent and/or Received date constraints for 2021, search for the keyword Falcon, scope to Alex Wilber's mailbox, and enable retention/hold for the matching items.

Question 40

You have a Microsoft 365 E5 subscription that contains a Microsoft SharePoint Online site named Site1. Site contains resumes saved as Microsoft Word documents. A new collection of resumes is loaded to Site1 every three months. You plan to implement records management. The solution must meet the following requirements: • The resumes must be retained for two years. • The retention period must start at the end of the quarter during which the resumes were loaded. • The resumes must have a retention label applied that identifies the documents as regulatory records. You need to create a file plan in the CSV format that you will use to create the retention labels. Which retention type should you specify in the file plan?

A. CreationAgeInDays
B. TaggedAgeInDays
C. EventAgeInDays
D. ModificationAgeInDays
Show Answer
Correct Answer: C
Explanation:
The retention period must start at the end of the quarter in which the resumes were loaded, which is not based on creation, modification, or label application dates. This requires an event-based retention label. In a file plan CSV, the retention type should be EventAgeInDays, allowing the retention clock to start when the specified event (such as end of quarter) is triggered. The label can also be configured as a regulatory record.

$19

Get all 318 questions with detailed answers and explanations

  • Instant download HTML + PDF delivered the moment payment clears.
  • Secure Stripe checkout we never see or store your card details.
  • 7-day refund if files are defective see our refund policy.