SC 400 EXAM Q&A

 Microsoft SC 400 EXAM Most authentic and latest QUESTION AND ANSWERS (Q&A) 

Microsoft SC 400 EXAM Most authentic and latest QUESTION AND ANSWERS (Q&A)

Here are 40 multiple choice sample questions and answers for the Microsoft Information Protection Administrator (SC-400) exam: 



1.Which of the following Azure services is used for storing and managing encryption keys?

A. Azure Information Protection
B. Azure Key Vault
C. Azure Security Center
D. Azure Active Directory

Answer: B. Azure Key Vault

2.What is the purpose of data classification?

A. To ensure data is stored in the cloud
B. To determine who has access to data
C. To identify and label sensitive data
D. To monitor data usage

Answer: C. To identify and label sensitive data

3.What is the difference between a label and a sensitivity level?

A. A label is a tag that is applied to a document, while a sensitivity level is a classification that is applied to an entire library.
B. A label is a classification that is applied to an entire library, while a sensitivity level is a tag that is applied to a document.
C. A label is a classification that is applied to a document, while a sensitivity level is a classification that is applied to an entire library.
D. A label and a sensitivity level are the same thing.

Answer: C. A label is a classification that is applied to a document, while a sensitivity level is a classification that is applied to an entire library.

4.What is the purpose of a data loss prevention (DLP) policy?

A. To encrypt sensitive data
B. To prevent data from being deleted
C. To monitor data usage
D. To prevent sensitive data from being shared or leaked

Answer: D. To prevent sensitive data from being shared or leaked

5.Which of the following is a component of Microsoft 365 compliance?

A. Microsoft Intune
B. Azure Active Directory
C. Microsoft Cloud App Security
D. Microsoft Information Protection
Answer: D. Microsoft Information Protection

6.Which of the following is a benefit of implementing Azure Information Protection?

A. Centralized monitoring of data usage
B. Integration with third-party applications
C. Protection of data at rest and in transit
D. Real-time detection and response to security incidents

Answer: C. Protection of data at rest and in transit

7.What is the purpose of a retention policy?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To specify how long data should be retained and when it should be deleted
Answer: D. To specify how long data should be retained and when it should be deleted

8.What is the purpose of a sensitivity label?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To specify how long data should be retained and when it should be deleted

Answer: A. To classify sensitive data

9.Which of the following is a feature of Microsoft Cloud App Security?

A. Centralized logging and monitoring of data usage
B. Integration with Azure Information Protection
C. Real-time detection and response to security incidents
D. Protection of data at rest and in transit

Answer: C. Real-time detection and response to security incidents

10.What is the purpose of an activity log?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To track user and administrator activity in Microsoft 365

Answer: D. To track user and administrator activity in Microsoft 365

11.Which of the following is a requirement for using Azure Information Protection to label and protect documents?

A. Office 365 Enterprise E3 or higher
B. Windows 10 Pro or Enterprise
C. A subscription to Azure Key Vault
D. A subscription to Azure Information Protection 

Answer: A. Office 365 Enterprise E3 or higher


12.What is the difference between a sensitivity label and a retention label?

A. A sensitivity label is used to classify sensitive data, while a retention label is used to specify how long data should be retained.
B. A sensitivity label is used to specify how long data should be retained, while a retention label is used to classify sensitive data.
C. A sensitivity label and a retention label are the same thing.
D. A sensitivity label and a retention label are not related to data protection.

Answer: A. A sensitivity label is used to classify sensitive data, while a retention label is used to specify how long data should be retained.

13.Which of the following is a component of Microsoft 365 compliance that provides automated classification and labeling of sensitive data?

A. Microsoft Defender for Endpoint
B. Azure Information Protection
C. Microsoft Cloud App Security
D. Microsoft Information Protection

Answer: D. Microsoft Information Protection

Microsoft SC 400 EXAM Most authentic and latest QUESTION AND ANSWERS (Q&A)



14.What is the difference between encryption and hashing?

A. Encryption and hashing are the same thing.
B. Encryption is used to convert data into a secret code to prevent unauthorized access, while hashing is used to convert data into a fixed-length string of characters that is unique to that data.
C. Encryption and hashing are both used to convert data into a fixed-length string of characters that is unique to that data.
D. Encryption is used to convert data into a fixed-length string of characters that is unique to that data, while hashing is used to convert data into a secret code to prevent unauthorized access.

Answer: B. Encryption is used to convert data into a secret code to prevent unauthorized access, while hashing is used to convert data into a fixed-length string of characters that is unique to that data.

15.Which of the following is a component of Microsoft 365 compliance that provides policy-based retention and deletion of email messages?

A. Microsoft Intune
B. Microsoft Cloud App Security
C. Microsoft Information Protection
D. Microsoft 365 Compliance center

Answer: D. Microsoft 365 Compliance center

16.What is the purpose of an information protection policy?

A. To define how data should be classified and labeled
B. To prevent data loss
C. To monitor data usage
D. To specify how long data should be retained and when it should be deleted

Answer: A. To define how data should be classified and labeled

17.Which of the following is a feature of Microsoft Cloud App Security that helps organizations monitor and control data access to cloud applications?

A. Cloud Access Security Broker (CASB) integration
B. Real-time detection and response to security incidents
C. Data classification and labeling
D. Integration with third-party applications

Answer: A. Cloud Access Security Broker (CASB) integration

18.What is the purpose of a data subject request (DSR) in the context of data protection regulations?

A. To allow individuals to request access to their personal data
B. To prevent data loss
C. To monitor data usage
D. To specify how long data should be retained and when it should be deleted

Answer: A. To allow individuals to request access to their personal data

19.Which of the following is a benefit of using sensitivity labels to classify and protect data?

A. Centralized logging and monitoring of data usage
B. Integration with third-party applications
C. Protection of data at rest and in transit
D. Improved compliance with data protection regulations

Answer: D. Improved compliance with data protection regulations

20.What is the purpose of a data retention policy?

A. To prevent data loss
B. To classify sensitive data
C. To monitor data usage
D. To specify  how long data should be retained and when it should be deleted

Answer: D. To specify how long data should be retained and when it should be deleted

21.Which of the following is a component of Microsoft 365 compliance that provides automated classification and labeling of documents and emails?

A. Microsoft Defender for Endpoint
B. Microsoft Information Protection
C. Microsoft Cloud App Security
D. Azure Information Protection

Answer: B. Microsoft Information Protection

22.What is the purpose of a retention label?

A. To prevent data loss
B. To classify sensitive data
C. To monitor data usage
D. To specify how long data should be retained and when it should be deleted

Answer: D. To specify how long data should be retained and when it should be deleted

23.Which of the following is a feature of Microsoft Cloud App Security that helps organizations monitor and control data access to on-premises applications?

A. Cloud Access Security Broker (CASB) integration
B. Real-time detection and response to security incidents
C. Data classification and labeling
D. Integration with third-party applications

Answer: A. Cloud Access Security Broker (CASB) integration

24.Which of the following is a requirement for using sensitivity labels in Microsoft Teams?

A. Office 365 Enterprise E3 or higher
B. A subscription to Azure Information Protection
C. Microsoft Teams desktop app version 1.3.00.24753 or later
D. A subscription to Microsoft Cloud App Security

Answer: C. Microsoft Teams desktop app version 1.3.00.24753 or later

25.What is the difference between a DLP policy and a retention policy?

A. A DLP policy is used to prevent sensitive data from being shared or leaked, while a retention policy is used to specify how long data should be retained.
B. A DLP policy is used to classify sensitive data, while a retention policy is used to prevent data loss.
C. A DLP policy and a retention policy are the same thing.
D. A DLP policy is used to specify how long data should be retained, while a retention policy is used to prevent sensitive data from being shared or leaked.

Answer: A. A DLP policy is used to prevent sensitive data from being shared or leaked, while a retention policy is used to specify how long data should be retained.

26.Which of the following is a feature of Microsoft Cloud App Security that helps organizations detect and respond to insider threats?

A. Cloud Access Security Broker (CASB) integration
B. Real-time detection and response to security incidents
C. Data classification and labeling
D. Integration with third-party applications

Answer: B. Real-time detection and response to security incidents

27.What is the purpose of a content search?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To search for specific content in Microsoft 365 and identify potential data leaks or breaches

Answer: D. To search for specific content in Microsoft 365 and identify potential data leaks or breaches

28.Which of the following is a requirement for using Azure Information Protection to protect documents?

A. Office 365 Enterprise E3 or higher
B. Windows 10 Pro or Enterprise
C. A subscription to Azure Key Vault
D. Azure Information Protection client version 2.7 or later

Answer: D. Azure Information Protection client version 2.7 or later

29.What is the difference between a label and a watermark?

A. A label is used to classify sensitive data, while a watermark is a visual marker that is added to a document to indicate its classification.
B. A label and a watermark are the same thing.
C. A label is a visual marker that is added to a document to indicate its classification, while a watermark is used to specify how long data should be retained.
D. A label is used to prevent data loss, while a watermark is used to classify sensitive data.

Answer: A. A label is used to classify sensitive data, while a watermark is a visual marker that is added to a document to indicate its classification.

30.Which of the following is a component of Microsoft 365 compliance that provides policy-based retention and deletion of files in OneDrive and SharePoint?

A. Microsoft Intune
B. Microsoft Information Protection
C. Microsoft 365 Compliance center
D. Microsoft Cloud App Security

Answer: C. Microsoft 365 Compliance center

Microsoft SC 400 EXAM Most authentic and latest QUESTION AND ANSWERS (Q&A)



31.What is the purpose of an Azure Information Protection scanner?

A. To scan and classify sensitive data in email messages
B. To scan and classify sensitive data in documents stored in SharePoint Online and OneDrive for Business
C. To scan and classify sensitive data in Microsoft Teams chat messages
D. To scan and classify sensitive data in Microsoft Yammer messages

Answer: B. To scan and classify sensitive data in documents stored in SharePoint Online and OneDrive for Business

32.Which of the following is a feature of Microsoft Cloud App Security that helps organizations protect data in cloud applications?

A. Cloud Access Security Broker (CASB) integration
B. Real-time detection and response to security incidents
C. Data classification and labeling
D. Integration with third-party applications

Answer: A. Cloud Access Security Broker (CASB) integration

33.What is the purpose of a data governance policy?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To establish guidelines for the use, management, and protection of an organization's data

Answer: D. To establish guidelines for the use, management, and protection of an organization's data

34.Which of the following is a requirement for using Azure Information Protection to label and protect email messages?

A. Office 365 Enterprise E3 or higher
B. Windows 10 Pro or Enterprise
C. A subscription to Azure Key Vault
D. A subscription to Azure Information Protection

Answer: D. A subscription to Azure Information Protection

35.What is the purpose of a data protection impact assessment (DPIA) in the context of data protection regulations?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To identify and mitigate potential risks to individuals' privacy and data protection rights

Answer: D. To identify and mitigate potential risks to individuals' privacy and data protection rights

36.Which of the following is a component of Microsoft 365 compliance that provides policy-based retention and deletion of Microsoft Teams messages?

A. Microsoft Information Protection
B. Microsoft Intune
C. Microsoft Cloud App Security
D. Microsoft 365 Compliance center

Answer: D. Microsoft 365 Compliance center

37.What is the purpose of a sensitive information type?

A. To classify sensitive data
B. To prevent data loss
C. To monitor data usage
D. To identify specific types of sensitive information, such as credit card numbers, social security numbers, or passport numbers

Answer: D. To identify specific types of sensitive information, such as credit card numbers, social security numbers, or passport numbers

38.Which of the following is a feature of Azure Information Protection that allows organizations to automate the labeling and protection of documents?

A. Content search
B. Scanner
C. Auto-labeling
D. Watermarking

Answer: C. Auto-labeling

39.What is the purpose of a data inventory?

A. To classify sensitive data 
B. To prevent data loss
C. To monitor data usage
D. To identify and track an organization's data assets and their associated risks

Answer: D. To identify and track an organization's data assets and their associated risks

40.Which of the following is a requirement for using sensitivity labels in Microsoft Office apps?

A. Office 365 E5 or Microsoft 365 E5 subscription
B. Microsoft Teams desktop app version 1.3.00.24753 or later
C. Azure Information Protection client version 2.7 or later
D. Windows 10 Pro or Enterprise

Answer: A. Office 365 E5 or Microsoft 365 E5 subscription

Microsoft SC 400 EXAM Most authentic and latest QUESTION AND ANSWERS (Q&A)

































































































































































































Comments