Practice Free SC-400 Exam Online Questions
You plan to create a new data loss prevention (DLP) policy named DLP1.
DLP1 will be applied to the Exchange email location.
You need to exclude two users named User1 and User2 from DLP1.
What should you do first?
- A . Create an organization sharing policy in Microsoft Exchange.
- B . Create a mail flow rule in Microsoft Exchange.
- C . Create a distribution list that contains User1 and User2.
- D . Create an advanced DLP rule.
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are configuring a file policy in Microsoft Cloud App Security.
You need to configure the policy to apply to all files. Alerts must be sent to every file owner who is affected by the policy. The policy must scan for credit card numbers, and alerts must be sent to the Microsoft Teams site of the affected department.
Solution: You use the Data Classification service inspection method and send alerts as email.
Does this meet the goal?
- A . Yes
- B . No
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 tenant and 500 computers that run Windows 10. The computers are onboarded to the Microsoft 365 compliance center.
You discover that a third-party application named Tailspin_scanner.exe accessed protected sensitive information on multiple computers. Tailspin_scanner.exe is installed locally on the computers.
You need to block Tailspin_scanner.exe from accessing sensitive documents without preventing the application from accessing other documents.
Solution: From the Cloud App Security portal, you create an app discovery policy.
Does this meet the goal?
- A . Yes
- B . No
DRAG DROP
You have a Microsoft 365 E5 subscription.
You plan to update the overall compliance score for the Microsoft 365 environment.
You resolve improvement actions that have a Testing type of Manual and discover that the compliance score fails to update.
You need to ensure that the compliance score for manual improvement actions is updated.
Which three actions should you perform in sequence from Microsoft Purview Compliance Manager? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

You have a Microsoft SharePoint Online site named Site1 that contains a document library. The library contains more than 1,000 documents. Some of the documents are job applicant resumes. All the documents are in the English language.
You plan to apply a sensitivity label automatically to any document identified as a resume. Only documents that contain work experience, education, and accomplishments must be labeled automatically.
You need to identify and categorize the resumes. The solution must minimize administrative effort.
What should you include in the solution?
- A . a trainable classifier
- B . a keyword dictionary OC.
- C . a function
- D . an exact data match (EDM) classifier
HOTSPOT
You have a Microsoft 365 sensitivity label that is published to all the users in your Azure AD tenant as shown in the following exhibit.

You have a Microsoft 365 E5 subscription that contains a user named User1 and a Microsoft SharePoint Online site named Site 1.
You create the alert policy shown in the following exhibit.

To Site1, User1 uploads the files shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
How many alerts will be generated in response to the file uploads?
- A . 1
- B . 2
- C . 3
- D . 4
- E . 5
You have a Microsoft 365 E5 subscription.
You need to apply data loss prevention (DLP) policies to the following:
• Microsoft Exchange Online mailboxes
• Microsoft SharePoint Online sites
• Microsoft Power BI workspaces
• Microsoft OneDrive accounts
• On-premises repositories
What is the minimum number of DLP policies required to achieve the goal?
- A . 1
- B . 2
- C . 3
- D . 4
- E . 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it as a result, these questions will not appear in the review screen.
You are configuring a file policy m Microsoft Defender for Cloud Apps.
You need to configure the policy to apply to all files. Alerts must be sent to every file owner who Is affected by the policy. The policy must scan for credit card numbers, and alerts must be sent to the Microsoft Teams site of the affected department.
Solution: You use the Built-in DIP inspection method and send alerts to Microsoft Power Automate.
Does this meet the goal?
- A . Yes
- B . No
HOTSPOT
You have a Microsoft 365 subscription.
You need to implement a compliance solution that meets the following requirements:
• Receives an alert when a user emails an Azure Storage Account Key.
• Detects communication when users share insider information about stocks.
What should you do for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.




