SIMULATION
Task 8
You need to retain Microsoft SharePoint files that contain the word Falcon for two years from the date they were created, and then delete them.
Answer : A
To set up a retention policy for Microsoft SharePoint files containing the word ''Falcon,'' follow these steps:
Create a Retention Label:
Retention labels allow you to specify retention periods for content. Go to your SharePoint site or library where you want to apply the policy.
Open the document library settings.
Under ''Permissions and Management,'' select ''Apply label to items in this list or library.''
Choose the retention label that corresponds to the desired retention period (e.g., ''Falcon Retention - 2 years'').
Configure the Retention Label:
Specify the retention period (in this case,2 years).
Define the action to be taken after the retention period (e.g., move to recycle bin).
Apply the Retention Label:
Tag the relevant content (files containing the word ''Falcon'') with the retention label.
The policy will automatically retain the files for two years from their creation date and then delete them.
SIMULATION
Task 7
You need to create a retention policy that meets the following requirements:
* Applies to Microsoft Teams chat and Teams channel messages of users that have a department attribute of Sales.
* Retains item for five years from the date they are created, and then deletes them.
Answer : A
To create a retention policy for Microsoft Teams that meets the specified requirements, follow these steps:
Sign in to the Microsoft 365 compliance center:
Log in to the Office 365 Admin Portal.
Visit the Microsoft 365 compliance center.
Navigate to Retention Policies:
SelectPolicies, then click onRetention.
Create a New Retention Policy:
Click onNew retention policy.
Provide aNamefor your new retention policy (e.g., ''Sales Teams Retention Policy'').
Optionally, add aDescription.
Select the Location:
Choose the location to which the policy will be applied. In this case, selectMicrosoft Teams.
Configure Retention Settings:
Set the retention period to5 yearsfrom the date items are created.
Specify whether you want to retain or delete the content after the retention period.
Apply the Policy:
Save your changes.
This policy will now apply to Microsoft Teams chat and channel messages for users with a department attribute of ''Sales,'' retaining items for five years before automatic deletion
SIMULATION
Task 6
You plan to implement Endpoint data loss prevention (Endpoint DLP) policies for computers that run Windows.
Users have an application named App1 that stores data locally in a folder named C:\app1\data.
You need to prevent the folder from being monitored by Endpoint DLP.
Answer : A
To prevent the folderC:\app1\datafrom being monitored byEndpoint Data Loss Prevention (DLP), follow these steps:
Configure File Path Exclusions:
Open theMicrosoft Purview compliance portal.
Navigate toData loss prevention>Overview>Data loss prevention settings>Endpoint settings.
Look for theFile path exclusionssection.
Add an exclusion for the pathC:\app1\data.
Files within this folder will not be audited or subject to DLP policy enforcement12.
Remember to validate this configuration and ensure that the folder is excluded from DLP monitoring
SIMULATION
Task 4
You need to block users from sending emails containing information that is subject to Payment Card Industry Data Security Standard (PCI OSS). The solution must affect only emails.
Answer : A
To block users from sending emails containing information subject to thePayment Card Industry Data Security Standard (PCI DSS), you can create aData Loss Prevention (DLP) policyinMicrosoft Exchange Online. Here's how:
Create a Custom DLP Policy:
Log in to theMicrosoft Exchange Online admin center.
Navigate toData loss prevention>Policy.
Create a new custom policy specifically for PCI DSS compliance.
Define Conditions:
In the policy settings, define conditions that identify sensitive data related to PCI DSS. For example:
Keywords: Include terms like ''credit card,'' ''debit card,'' or specific card number formats.
Regular Expressions (Regex): Craft expressions to match credit card patterns (e.g.,\b\d{4}-\d{4}-\d{4}-\d{4}\bfor Visa/Mastercard).
Sensitive Information Types: Use built-in or custom sensitive information types related to payment cards.
Choose Actions:
Specify the actions to take when sensitive data is detected in emails:
Block: Prevent the email from being sent.
Notify Sender: Inform the sender that sensitive data is not allowed via email.
Add Disclaimer/Watermark: Optionally add a disclaimer or watermark to the email.
Apply the Policy to Emails Only:
Ensure that the policy is configured to apply only toemails(not other communication channels).
Exclude internal communication if necessary.
Test and Monitor:
Enable the policy intest modeinitially to validate its effectiveness.
Monitor logs and adjust the policy as needed.
SIMULATION
Task 3
You plan to automatically apply a watermark to the document1 of a project named Falcon.
You need to create a label that will add a watermark of "Project falcon' in red. size-12 font diagonally across the documents.
Answer : A
To create a label that adds a watermark of ''Project Falcon'' in red, size-12 font diagonally across the documents, follow these steps:
Create a Sensitivity Label:
Log in to theMicrosoft Purview portalor theMicrosoft Purview compliance portalas an admin.
Navigate toSensitivity labelsand create a new label called''Project Falcon''.
Specify the appropriate settings for this label, including encryption, content markings, and permissions.
Configure Content Markings (Watermark):
When creating the label, configure the content markings section.
Choose''Watermark''and set the text to''Project Falcon''.
Select the color asredand font size as12.
Set the watermark position todiagonalacross the document.
Assign the Label:
Assign the''Project Falcon''label to the relevant documents within theFalcon project.
Users who apply this label will automatically add the specified watermark to their documents.
You have a Microsoft 365 E3 subscription.
You plan to assess compliance with ISO/IEC 27001:2013.
From Compliance Manager, you discover that the ISO/IEC 27001:2013 regulatory template for Microsoft 365 is inactive.
What should you do?
Answer : D
You have a Microsoft 365 E5 subscription.
You plan to implement insider risk management for users that manage sensitive data associated with a project.
You need to create a protection policy for the users. The solution must meet the following requirements:
* Minimize the impact on users who are NOT part of the project.
* Minimize administrative effort.
What should you do first?
Answer : B