SC-400 Training & Certification Get Latest Microsoft Certified: Information Protection Administrator Associate Updated on Oct 19, 2025
Certification Training for SC-400 Exam Dumps Test Engine
Microsoft SC-400 Exam is intended for professionals who work with Microsoft 365 services, including Microsoft Teams, SharePoint, and OneDrive. SC-400 exam is also ideal for IT professionals who work with security and compliance technologies, such as Azure Information Protection, Microsoft Cloud App Security, and Microsoft Intune. Candidates who pass the exam will receive the Microsoft Certified: Information Protection Administrator Associate certification, which is recognized in the industry as a mark of excellence in data protection.
NEW QUESTION # 127
You are creating a data loss prevention (DLP) policy that will apply to all available locations.
You configure an advanced DLP rule in the policy.
Which type of condition can you use in the rule?
- A. Content search query
- B. Sensitive label
- C. Keywords
- D. Sensitive info type
Answer: D
Explanation:
With all locations selected the sensitive info type is the only option left.
NEW QUESTION # 128
You are reviewing policies for the SharePoint Online environment.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE:Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/retention?view=o365-HYPERLINK
"https://docs.microsoft.com/en-us/microsoft-365/compliance/retention?view=o365-worldwide"worldwide
NEW QUESTION # 129
You enable archive mailboxes for all the users at your company.
The Default MRM Policy is shown in the MRM exhibit.
A Microsoft 365 retention label policy is shown in the Label Policy exhibit.
You need to identify the following:
* How many years until an email is archived?
* What should you modify to change the retention period for archiving?
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/retention?view=o365-worldwide#the-principles-of-r
NEW QUESTION # 130
You create a sensitivity label as shown in the Sensitivity Label exhibit.
You create an auto-labeling policy as shown in the Auto Labeling Policy exhibit.
A user sends the following email:
From: [email protected]
To: [email protected]
Subject: Address List
Message Body:
Here are the lists that you requested.
Attachments:
<<File1.docx>>
<<File2.xml>>
Both attachments contain lists of IP addresses.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/apply-sensitivity-label-automatically?view=o365-worldwide
NEW QUESTION # 131
You create a data loss prevention (DLP) policy. The Advanced DLP rules page is shown in the Rules exhibit.
The Review your settings page is shown in the review exhibit.
You need to review the potential impact of enabling the policy without applying the actions.
What should you do?
- A. Edit the policy, remove the Restrict access to the content and Send incident report to Administrator actions, and then select Yes, turn it on right away.
- B. Edit the policy, remove all the actions in DLP rule 1, and select Yes, turn it on right away.
- C. Edit the policy, remove all the actions in DLP rule 1, and select I'd like to test it out first.
- D. Edit the policy, and then select I'd like to test it out first.
Answer: D
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/create-a-dlp-policy-from-a-template?view=o365- worldwide
NEW QUESTION # 132
You have a Microsoft 365 E5 subscription.
You are evaluating Data Protection Baseline compliance by using Compliance Manager.
You need to identify improvement actions that meet the following requirements:
* Provide data loss prevention (DLP) policy recommendations.
* Provide Data Protection Baseline recommendations.
Which filter should you use for each requirement? To answer, select the appropriate options in the answer area.
Answer:
Explanation:
Explanation
NEW QUESTION # 133
You have a Microsoft SharePoint Online site that contains the following files.
Users are assigned roles for the site as shown in the following table.
Which files can User1 and User2 view? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://social.technet.microsoft.com/wiki/contents/articles/36527.implement-data-loss-prevention-dlp-in-sharepo Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
NEW QUESTION # 134
You plan to implement a sensitive information type based on a trainable classifier. The sensitive information type will identify employment contracts.
You need to copy the required files to Microsoft SharePoint Online folders to train the classifier.
What should you use to seed content and test the classifier? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 135
You have a Microsoft 365 E5 tenant.
You create sensitivity labels as shown in the Sensitivity Labels exhibit.
The Confidential/External sensitivity label is configured to encrypt files and emails when applied to content.
The sensitivity labels are published as shown in the Published exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/sensitivity-labels?view=o365-worldwide
NEW QUESTION # 136
You have a Microsoft 365 subscription that contains a Microsoft SharePoint site named Site1. For Site1, users are assigned the roles shown in the following table.
You publish retention labels to Site1 as shown in the following table.
You publish retention labels to Site1 as shown in the following table.
You have the files shown in the following table.
For each of the following statement, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 137
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 E5 subscription.
You need to identify resumes that are stored in the subscription by using a built-in trainable classifier.
Solution: You create a data loss prevention (DLP) policy.
Does this meet the goal?
- A. Yes
- B. No
Answer: B
NEW QUESTION # 138
You have a Microsoft 365 subscription.
You are evaluating whether to use the Microsoft Purview auditing solutions shown in the following table.
You plan to implement Microsoft Purview Audit (Standard) Which solutions can you use?
- A. Solution3 only
- B. Solution 1 and Solution2 only
- C. Solution1, Solution2, and Solution3
- D. Solution2 only
- E. Solution2 and Solution3 only
Answer: D
NEW QUESTION # 139
You have the files shown in the following table.
You configure a retention policy as shown in the following exhibit.
The current date is January 1, 2021.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
Answer:
Explanation:
NEW QUESTION # 140
You have the files shown in the following table.
You configure a retention policy as shown in the exhibit.
The start of the retention period is based on when items are created. The current date is January 01, 2021.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Text Description automatically generated
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/retention-policies-sharepoint?view=o365-worldwide
NEW QUESTION # 141
Hotspot Question
You have a Microsoft 365 E5 subscription.
You are implementing insider risk management.
You need to create an insider risk management notice template and format the message body of the notice template.
How should you configure the template? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 142
You need to recommend a solution that meets the compliance requirements for viewing DLP tooltip justifications.
What should you recommend?
- A. Configure an Azure logic app to route DLP notification emails to the compliance department.
- B. Configure a Microsoft Power Automate workflow to route DLP notification emails to the compliance department.
- C. Instruct the compliance department users to review the DLP incidents report.
- D. Instruct the compliance department users to review the False positive and override report.
Answer: D
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-3 HYPERLINK "https://docs.microsoft.com/en-us/microsoft-365
/compliance/view-the-dlp-reports?view=o365-worldwide"65/compliance/view-the-dlp-reports?view=o365- worldwide
NEW QUESTION # 143
You have a Microsoft 365 E5 subscription.
You need to meet the following requirements:
* Prevent the sharing of files between the users in a department named department1 and the users in a department named department2.
* Generate an alert if a user downloads large quantities of sensitive customer data.
Which type of policy should you use for each requirement? To answer, drag the appropriate policy types to the correct requirements. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 144
You have a Microsoft 365 E5 tenant.
You create sensitivity labels as shown in the Sensitivity Labels exhibit.
The Confidential/External sensitivity label is configured to encrypt files and emails when applied to content.
The sensitivity labels are published as shown in the Published exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/sensitivity-labels?view=o365-worldwide
NEW QUESTION # 145
You are reviewing policies for the SharePoint Online environment.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/retention?view=o365-worldwide
NEW QUESTION # 146
You have a Microsoft 365 E5 tenant that contains a user named User1. User1 is assigned the Compliance Administrator role.
User1 cannot view the regular expression in the Ip Address sensitive info type.
You need to ensure that User1 can view the regular expression.
What should you do?
- A. Assign User1 to the Reviewer role group.
- B. Assign User1 the Global Reader role.
- C. Create a copy of the Ip Address sensitive info type and instruct User1 to edit the copy.
- D. Instruct User1 to use the Test function on the sensitive info type.
Answer: B
Explanation:
Topic 1, Contoso Case Study
Overview
Contoso, Ltd. is a consulting company that has a main office in Montreal and three branch offices in Seattle, Boston, and Johannesburg.
Microsoft 365 Environment
Contoso has a Microsoft 365 FS tenant I he tenant contains the administrative user accounts shown in the following table.
Users store data In the following locations:
* SharePoint sites
* OneDrive accounts
* Exchange email
* Exchange public folders
* Teams chats
* Teams channel messages
When users in the research department create documents, they must add a 10-dig>t project code to each document. Project codes that start with the digits 999 are confidential.
SharePoint Online Environment
Contoso has four Microsoft SharePoint Online sites named Site1. Site2. Site3. and Site4.
Site2 contains the files shown in the following table.
Two users named User1 and User2 are assigned roles for Site2 as shown in the following table.
Sile3 stores documents related to the company's projects. The documents are organized In a folder hierarchy based on the project.
Slte4 has the following two retention policies applied:
* Name: SitetKetentionPolicy1
* Locations to apply the policy: Site4
* Delete items older than:2 years
* Delete content based on: When items were created
* Name: Site4RetentionPolicy2
* Locations to apply the policy. Sile4
* Retain items for a specific period: 4 years
* Start the retention period based on: When items were created
* At the end of the retention period: Do nothing
Problem Statements
Management at Contoso is concerned about data leaks. On several occasions, confidential research departments were leaked.
Planned Changes
Contoso plans to create the following data loss prevention (DLP) policy:
* Name: DLPpolicy1
* Locations to apply the policy; Site2
* Conditions:
* Content contains any of these sensitive info types: SWIF F Code
* Instance count: 2 to any
* Actions: Restrict access to the content
Technical Requirements
Contoso must meet the following technical requirements:
* All administrative users must be able to review DLP reports.
* Whenever possible, the principle of least privilege must be used.
* For all users, all Microsoft 365 data must be retained for at least one year.
* Confidential documents must be detected and protected by using Microsoft 365.
* Site1 documents that include credit card numbers must be labeled automatically.
* All administrative users must be able to create Microsoft 365 sensitivity labels.
* After a project is complete, the documents in Site3 that relate to the project must be retained for 10 years
NEW QUESTION # 147
You have a Microsoft 365 subscription. Auditing is enabled.
A user named User1 is a member of a dynamic security group named Group1.
You discover that User1 is no longer a member of Group1.
You need to search the audit log to identify why User1 was removed from Group1.
Which two activities should you use in the search? To answer, select the appropriate activities in the answer area.
Answer:
Explanation:
Explanation:
Removed member from group:
=> shows the user that was removed (by modifying dynamic the query)
Updated group
=> shows what user 'updated' the group.
NEW QUESTION # 148
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/retention?view=o365-worldwide
NEW QUESTION # 149
You have a Microsoft 365 tenant.
You create the following:
- A sensitivity label
- An auto-labeling policy
You need to ensure that the sensitivity label is applied to all the data discovered by the auto- labeling policy.
What should you do first?
- A. Create a trainable classifier.
- B. Enable insider risk management.
- C. Run the Enable-TransportRule cmdlet.
- D. Run the policy in simulation mode.
Answer: D
Explanation:
You can't automatically label documents and emails until your policy has run at least one simulation.
https://docs.microsoft.com/en-us/microsoft-365/compliance/apply-sensitivity-label- automatically?view=o365-worldwide
NEW QUESTION # 150
Each product group at your company must show a distinct product logo in encrypted emails instead of the standard Microsoft Office 365 logo.
What should you do to create the branding templates?
- A. Run the New-OMEConfiguration cmdlet.
- B. Create an RMS template.
- C. Create a Transport rule.
- D. Run the Set-IRMConfiguration cmdlet.
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/microsoft-365/compliance/add-your-organization-brand-to-encryptedmessages?
NEW QUESTION # 151
You have a Microsoft 365 alert named Alert2 as shown in the following exhibit
You need to manage the status of Alert2. To which status can you change Alert2?
- A. Investigating, Active, or Dismissed
- B. Active or Investigating only
- C. Investigating only
- D. The status cannot be changed.
- E. Dismissed only
Answer: A
NEW QUESTION # 152
......
Microsoft SC-400 Exam is an excellent opportunity for IT professionals to validate their expertise in Microsoft Information Protection solutions. SC-400 exam covers a range of topics that are critical to data security and compliance, making it an essential certification for anyone who works with sensitive data. By passing SC-400 exam, candidates can demonstrate their expertise in implementing and managing these solutions, which can enhance their career prospects and open up new opportunities for growth in the IT industry.
Passing the Microsoft SC-400 certification exam demonstrates a thorough understanding of Microsoft's data protection solutions and best practices. Microsoft Information Protection Administrator certification is ideal for professionals who work in roles such as data protection officer, data security analyst, or information protection manager. It is also suitable for those who are looking to advance their careers in the field of information security and data protection. By earning this certification, professionals can showcase their expertise in protecting sensitive data and ensuring compliance with regulations and industry standards.
Step by Step Guide to Prepare for SC-400 Exam: https://easytest.exams4collection.com/SC-400-latest-braindumps.html
