Free Microsoft SC-400 Exam Actual Questions

The questions for SC-400 were last updated On Apr 17, 2025

At ValidExamDumps, we consistently monitor updates to the Microsoft SC-400 exam questions by Microsoft. Whenever our team identifies changes in the exam questions,exam objectives, exam focus areas or in exam requirements, We immediately update our exam questions for both PDF and online practice exams. This commitment ensures our customers always have access to the most current and accurate questions. By preparing with these actual questions, our customers can successfully pass the Microsoft Information Protection Administrator exam on their first attempt without needing additional materials or study guides.

Other certification materials providers often include outdated or removed questions by Microsoft in their Microsoft SC-400 exam. These outdated questions lead to customers failing their Microsoft Information Protection Administrator exam. In contrast, we ensure our questions bank includes only precise and up-to-date questions, guaranteeing their presence in your actual exam. Our main priority is your success in the Microsoft SC-400 exam, not profiting from selling obsolete exam questions in PDF or Online Practice Test.

 

Question No. 1

SIMULATION

Task 5

You need to ensure that a group named U.S. Sales can store files containing information subject to General Data Protection Regulation (GDPR) in their OneDrive accounts. All other current GDPR restrictions must remain in effect.

Show Answer Hide Answer
Correct Answer: A

To allow theU.S. Salesgroup to store files containing information subject to theGeneral Data Protection Regulation (GDPR)in their OneDrive accounts while keeping other GDPR restrictions intact, follow these steps:

Create a Security Group:

Log in to theMicrosoft 365 admin center.

Navigate toGroupsand create a new security group called''U.S. Sales''.

Configure OneDrive Sharing Settings:

Go to theSettings > Org settingspage.

On theServicestab, selectMicrosoft 365 on the web.

Choose whether to let users open files stored in third-party storage services in Microsoft 365 on the web.Ensure this setting aligns with your organization's GDPR requirements1.

Set Specific Sharing Permissions:

Set the default OneDrive share type to''Specific People''under theSharingmenu in the OneDrive admin area.

Right-click the folder inOneDrive online, clickShare.

Click themore button (three dots)in theSend Linkheader.

ClickManage Access.

ClickGrant Access, then add the''U.S. Sales''security group.This access will apply only to that group2.

By following these steps, theU.S. Salesgroup will be able to store GDPR-related files in their OneDrive accounts while maintaining compliance with other GDPR restrictions


Question No. 2

SIMULATION

Task 3

You plan to automatically apply a watermark to the document1 of a project named Falcon.

You need to create a label that will add a watermark of "Project falcon' in red. size-12 font diagonally across the documents.

Show Answer Hide Answer
Correct Answer: A

To create a label that adds a watermark of ''Project Falcon'' in red, size-12 font diagonally across the documents, follow these steps:

Create a Sensitivity Label:

Log in to theMicrosoft Purview portalor theMicrosoft Purview compliance portalas an admin.

Navigate toSensitivity labelsand create a new label called''Project Falcon''.

Specify the appropriate settings for this label, including encryption, content markings, and permissions.

Configure Content Markings (Watermark):

When creating the label, configure the content markings section.

Choose''Watermark''and set the text to''Project Falcon''.

Select the color asredand font size as12.

Set the watermark position todiagonalacross the document.

Assign the Label:

Assign the''Project Falcon''label to the relevant documents within theFalcon project.

Users who apply this label will automatically add the specified watermark to their documents.


Question No. 3

You need to test Microsoft Office 365 Message Encryption (OME) capabilities for your company. The test must

verify the following information:

The acquired default template names

The encryption and decryption verification status

Which PowerShell cmdlet should you run?

Show Answer Hide Answer
Correct Answer: A

D18912E1457D5D1DDCBD40AB3BF70D5D

https://docs.microsoft.com/en-us/microsoft-365/compliance/set-up-new-message-encryption-capabilities?

view=o365-worldwide

Question No. 4

SIMULATION

Task 4

You need to block users from sending emails containing information that is subject to Payment Card Industry Data Security Standard (PCI OSS). The solution must affect only emails.

Show Answer Hide Answer
Correct Answer: A

To block users from sending emails containing information subject to thePayment Card Industry Data Security Standard (PCI DSS), you can create aData Loss Prevention (DLP) policyinMicrosoft Exchange Online. Here's how:

Create a Custom DLP Policy:

Log in to theMicrosoft Exchange Online admin center.

Navigate toData loss prevention>Policy.

Create a new custom policy specifically for PCI DSS compliance.

Define Conditions:

In the policy settings, define conditions that identify sensitive data related to PCI DSS. For example:

Keywords: Include terms like ''credit card,'' ''debit card,'' or specific card number formats.

Regular Expressions (Regex): Craft expressions to match credit card patterns (e.g.,\b\d{4}-\d{4}-\d{4}-\d{4}\bfor Visa/Mastercard).

Sensitive Information Types: Use built-in or custom sensitive information types related to payment cards.

Choose Actions:

Specify the actions to take when sensitive data is detected in emails:

Block: Prevent the email from being sent.

Notify Sender: Inform the sender that sensitive data is not allowed via email.

Add Disclaimer/Watermark: Optionally add a disclaimer or watermark to the email.

Apply the Policy to Emails Only:

Ensure that the policy is configured to apply only toemails(not other communication channels).

Exclude internal communication if necessary.

Test and Monitor:

Enable the policy intest modeinitially to validate its effectiveness.

Monitor logs and adjust the policy as needed.


Question No. 5

You have a Microsoft 365 E5 tenant that contains a user named User1.

You need to identify the type and number of holds placed on the mailbox of User1.

What should you do first?

Show Answer Hide Answer