|
51 | 51 | isCorrect: false |
52 | 52 | explanation: "Incorrect. Device availability and reliability are infrastructure concerns handled outside of insider risk management. Insider risk management focuses on detecting and responding to risky or malicious activities by people within the organization." |
53 | 53 |
|
54 | | - - content: "An organization has a DLP policy that detects sensitive financial information. A user attempts to share a sensitive spreadsheet via Microsoft Teams. What action can the DLP policy take?" |
55 | | - choices: |
56 | | - - content: "Automatically delete the file from the user's OneDrive." |
57 | | - isCorrect: false |
58 | | - explanation: "Incorrect. DLP doesn't automatically delete files. Instead, DLP can block the sharing, show the user a policy tip explaining why the action was prevented, and optionally allow the user to override the block with a justification." |
59 | | - - content: "Show the user a policy tip and block the sharing." |
60 | | - isCorrect: true |
61 | | - explanation: "Correct. DLP policies can display a policy tip that warns the user their action may violate policy, and can block the sharing of the sensitive item in Teams." |
62 | | - - content: "Move the file to a quarantine location and notify the user's manager." |
63 | | - isCorrect: false |
64 | | - explanation: "Incorrect. Moving content to a quarantine location is a protective action that applies to data at rest, not to active sharing in Teams chat. For Teams chat, DLP can block the sharing and show a policy tip to the user." |
65 | | - |
66 | 54 | - content: "An organization wants its DLP controls to automatically tighten for users identified as high-risk by Insider Risk Management, without requiring admins to manually update policies. Which capability should the organization configure?" |
67 | 55 | choices: |
68 | 56 | - content: "Sensitivity label policies." |
|
74 | 62 | - content: "Trainable classifiers." |
75 | 63 | isCorrect: false |
76 | 64 | explanation: "Incorrect. Trainable classifiers are used to identify types of content for classification. They don't adjust DLP controls based on insider risk. Adaptive protection is the feature that connects insider risk levels to DLP and other protective controls." |
| 65 | + |
| 66 | + - content: "An organization needs a unified view of its sensitive data risks across Microsoft 365, Azure, and third-party platforms like Google Cloud Platform. The organization also wants to monitor how AI apps interact with sensitive data. Which Microsoft Purview solution provides this capability?" |
| 67 | + choices: |
| 68 | + - content: "Content explorer." |
| 69 | + isCorrect: false |
| 70 | + explanation: "Incorrect. Content explorer provides a snapshot of classified items in your organization, but it doesn't provide unified posture management across Microsoft and non-Microsoft environments or AI observability. Data Security Posture Management provides those capabilities." |
| 71 | + - content: "Data Security Posture Management." |
| 72 | + isCorrect: true |
| 73 | + explanation: "Correct. Data Security Posture Management provides unified visibility into data risks across Microsoft 365, Azure, Fabric, and third-party SaaS platforms. It includes AI observability dashboards that monitor how AI apps and agents interact with sensitive data." |
| 74 | + - content: "Insider Risk Management." |
| 75 | + isCorrect: false |
| 76 | + explanation: "Incorrect. Insider Risk Management focuses on detecting, investigating, and acting on risky activities by users within the organization. Data Security Posture Management is the solution that provides a unified view of data risks across your entire digital estate, including AI interactions." |
0 commit comments