{"id":15553,"date":"2026-09-18T05:49:56","date_gmt":"2026-09-18T05:49:56","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=15553"},"modified":"2026-09-18T05:49:56","modified_gmt":"2026-09-18T05:49:56","slug":"microsoft-sc-900-practice-test-questions-and-exam-dumps-part4-q61-80","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/microsoft-sc-900-practice-test-questions-and-exam-dumps-part4-q61-80\/","title":{"rendered":"Microsoft SC-900 Practice Test Questions and Exam Dumps Part4 Q61-80"},"content":{"rendered":"<h1><\/h1>\n<p><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/sc-900-exam-dumps\"><b>Microsoft SC-900 Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/p>\n<p>&nbsp;<\/p>\n<h3><b>Question 61. Which security principle requires an organization to use multiple independent layers of protection?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Least privilege<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Defense in depth<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Single sign-on<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Password synchronization<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Defense in depth<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Defense in depth is a security strategy that uses multiple layers of controls to protect systems, applications, identities, networks, and data. Instead of relying on one security mechanism, an organization can combine identity protection, endpoint security, network controls, application security, data protection, monitoring, and incident response. If one control fails or is bypassed, another layer can reduce the attacker&#8217;s ability to continue. Microsoft security solutions support this approach through services such as Microsoft Entra ID, Microsoft Defender, Microsoft Sentinel, and Microsoft Purview. Defense in depth is therefore intended to reduce overall security risk by avoiding dependence on a single protective measure.<\/span><\/p>\n<h3><b>Question 62. What is the primary difference between authentication and authorization?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Authentication determines what a user can access, while authorization verifies identity<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Authentication encrypts data, while authorization monitors networks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Authentication verifies identity, while authorization determines access permissions<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Authentication creates backups, while authorization restores data<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. Authentication verifies identity, while authorization determines access permissions<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Authentication and authorization are related but perform different functions in an identity and access management system. Authentication answers the question, \u201cWho are you?\u201d and can involve passwords, multifactor authentication, security keys, biometrics, or passwordless methods. Authorization answers the question, \u201cWhat are you allowed to access or do?\u201d after the identity has been established. For example, a user may successfully authenticate with Microsoft Entra ID but still be denied access to a particular application because the required permissions have not been assigned. Understanding this distinction is fundamental to implementing secure access controls and the Zero Trust security model.<\/span><\/p>\n<h3><b>Question 63. Which authentication approach eliminates the need for users to enter a traditional password?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Passwordless authentication<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Password expiration<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Security auditing<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Conditional formatting<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Passwordless authentication<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Passwordless authentication allows users to authenticate without entering a traditional password. Microsoft supports several passwordless authentication methods, including Microsoft Authenticator, Windows Hello for Business, and FIDO2 security keys. These methods can improve security because they reduce dependence on passwords, which can be stolen, guessed, reused, or obtained through phishing attacks. Passwordless authentication can also improve the user experience by replacing passwords with stronger methods such as biometrics, device-based credentials, or physical security keys. In Microsoft Entra ID, organizations can configure appropriate passwordless authentication methods according to their identity and security requirements.<\/span><\/p>\n<h3><b>Question 64. What is the main purpose of FIDO2 security keys?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Store Microsoft Sentinel incidents<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Provide passwordless authentication using strong credentials<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Encrypt Microsoft Purview reports<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Manage Azure virtual networks<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Provide passwordless authentication using strong credentials<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">FIDO2 security keys provide a strong authentication method that can be used for passwordless sign-in. A physical security key can be registered with a supported identity system and then used to authenticate a user without requiring a traditional password. FIDO2 credentials use public-key cryptography, helping protect users against several forms of credential theft and phishing. Microsoft Entra ID supports FIDO2 security keys as one of its passwordless authentication options. The security key is associated with the user&#8217;s registered credential, allowing the organization to strengthen authentication while reducing reliance on passwords.<\/span><\/p>\n<h3><b>Question 65. Which Microsoft Entra feature can use device state as a condition when controlling access?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Purview eDiscovery<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Sentinel Workbooks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender Antivirus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Conditional Access<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. Conditional Access<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Conditional Access allows organizations to create access policies based on different conditions before granting access to resources. One of these conditions can involve the state or compliance status of a device. For example, an organization may require users to access a corporate application only from devices that meet defined compliance requirements. Conditional Access can also consider factors such as user identity, application, location, risk, and authentication strength. This supports Zero Trust by making access decisions dynamically instead of automatically trusting every authenticated user or device.<\/span><\/p>\n<h3><b>Question 66. What is Microsoft Entra Connect primarily used for?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Synchronizing identities between on-premises Active Directory and Microsoft Entra ID<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Creating Sentinel workbooks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Managing Microsoft Purview retention labels<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Scanning cloud applications for vulnerabilities<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Synchronizing identities between on-premises Active Directory and Microsoft Entra ID<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Connect is designed to help organizations synchronize identity information between an on-premises Active Directory environment and Microsoft Entra ID. This capability supports hybrid identity scenarios where users and groups may exist in both on-premises and cloud environments. Depending on configuration, organizations can synchronize directory objects and selected attributes so that users can use consistent identities when accessing cloud resources. Entra Connect can therefore help bridge traditional on-premises identity infrastructure with Microsoft&#8217;s cloud identity platform. It is particularly relevant for organizations transitioning gradually from on-premises services to cloud-based identity and applications.<\/span><\/p>\n<h3><b>Question 67. What is Microsoft Entra Cloud Sync designed to provide?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Network packet inspection<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Database backup management<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> A lightweight cloud-managed approach for synchronizing identities<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Email threat investigation<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. A lightweight cloud-managed approach for synchronizing identities<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra Cloud Sync provides a cloud-managed approach for synchronizing identities between on-premises Active Directory and Microsoft Entra ID. It uses a lightweight provisioning agent installed in the organization&#8217;s environment while much of the configuration and management is handled through the cloud. This approach can be useful for organizations that want a simpler and more flexible identity synchronization architecture. Entra Cloud Sync supports hybrid identity scenarios and can be used alongside Microsoft&#8217;s broader identity management capabilities. It differs from traditional synchronization approaches in its architecture and management model, making it useful for certain organizational environments.<\/span><\/p>\n<h3><b>Question 68. Which Microsoft Entra capability supports collaboration with users outside an organization?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Entra External ID<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender Antivirus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Azure DDoS Protection<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Sentinel<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Microsoft Entra External ID<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Entra External ID provides identity capabilities for applications and scenarios involving people outside an organization&#8217;s workforce. It can support external users, customers, partners, and other identities depending on the scenario and configuration. External identity capabilities help organizations provide controlled access while maintaining appropriate authentication and authorization requirements. For business-to-business collaboration, organizations can invite external users and manage their access to selected resources. This approach allows collaboration without treating every external person as a traditional internal employee. Organizations can also apply appropriate policies and governance to help protect external access.<\/span><\/p>\n<h3><b>Question 69. What is a managed identity primarily used for in Microsoft Azure?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Giving applications an identity so they can access resources without storing credentials<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Creating physical security keys<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Classifying sensitive documents<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Investigating phishing messages<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Giving applications an identity so they can access resources without storing credentials<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Managed identities provide Azure resources with an identity that can be used to authenticate to supported services without requiring developers to store passwords, secrets, or certificates directly in application code. Azure manages the identity credentials, reducing the risk associated with manually managing application secrets. For example, an Azure-hosted application may use a managed identity to access an Azure Key Vault or another supported resource after appropriate permissions are assigned. This approach supports least privilege because permissions can be granted specifically to the managed identity while reducing the exposure of long-lived credentials.<\/span><\/p>\n<h3><b>Question 70. What is an app registration in Microsoft Entra ID primarily associated with?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Creating a physical firewall<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Registering an application so it can integrate with Microsoft identity services<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Configuring Microsoft Sentinel workbooks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Applying data retention labels<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Registering an application so it can integrate with Microsoft identity services<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An application registration in Microsoft Entra ID represents an application in the identity platform and provides the configuration needed for authentication and authorization integration. Developers can register applications so they can use Microsoft identity services, request permissions, and authenticate users or applications. Depending on the scenario, an app registration can include information such as redirect URIs, supported account types, and authentication configuration. The registration helps establish how the application interacts with Microsoft Entra ID. Proper permission management is important because excessive application permissions can create security risks.<\/span><\/p>\n<h3><b>Question 71. Which Microsoft Defender solution provides protection focused on endpoints such as computers and servers?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Office 365<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Identity<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Endpoint<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Cloud Apps<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. Microsoft Defender for Endpoint<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Defender for Endpoint is Microsoft&#8217;s endpoint security solution designed to help protect devices such as computers and servers. It provides capabilities for detecting, investigating, and responding to threats affecting endpoints. It can also provide vulnerability management information and security recommendations that help organizations identify weaknesses in their device environment. Defender for Endpoint integrates with other Microsoft security services, allowing security teams to investigate related incidents across multiple parts of an environment. Its primary focus is endpoint protection rather than email, identity infrastructure, or cloud application visibility.<\/span><\/p>\n<h3><b>Question 72. Which Microsoft Defender solution focuses specifically on protecting email and collaboration services?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Office 365<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Identity<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Endpoint<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender for Cloud<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Microsoft Defender for Office 365<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Defender for Office 365 is designed to help protect organizations from threats targeting email and collaboration services. It can help detect and protect against threats such as phishing, malicious links, malicious attachments, and other email-based attacks. The service also provides investigation and response capabilities that security teams can use when suspicious messages or activities are detected. Defender for Office 365 works as part of Microsoft&#8217;s broader security ecosystem and can contribute signals to unified security investigations. Its specialized focus distinguishes it from Defender for Endpoint, Defender for Identity, and Defender for Cloud.<\/span><\/p>\n<h3><b>Question 73. What is Microsoft Security Exposure Management designed to help organizations understand?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Employee payroll information<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Overall security exposure and potential attack paths<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft 365 licensing invoices<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Database transaction history<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Overall security exposure and potential attack paths<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Security Exposure Management helps organizations understand and manage their overall security exposure across an environment. Instead of looking at individual security alerts in isolation, exposure management can help security teams understand relationships among assets, vulnerabilities, identities, configurations, and potential attack paths. This broader perspective can help organizations identify areas where weaknesses may combine to create greater risk. Security teams can use exposure information to prioritize remediation and strengthen security posture. The concept is closely related to understanding how attackers might move through an environment and where defensive improvements could reduce exposure.<\/span><\/p>\n<h3><b>Question 74. What type of rule in Microsoft Sentinel can identify suspicious activity based on collected data?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Retention policy<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Sensitivity label<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Analytics rule<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Compliance assessment<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. Analytics rule<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Sentinel analytics rules are used to detect potentially suspicious activity in data collected by the security platform. An analytics rule can define logic that examines events and signals from connected data sources and generates alerts when specified conditions are met. These detections can contribute to security incidents that analysts investigate through Sentinel. Organizations can use different detection approaches depending on their monitoring requirements, including scheduled analytics and other supported detection methods. Analytics rules are therefore an important part of Sentinel&#8217;s security monitoring capabilities because they help transform collected data into actionable security detections.<\/span><\/p>\n<h3><b>Question 75. What is the purpose of Microsoft Sentinel workbooks?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Provide interactive visualizations and dashboards for security data<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Replace Microsoft Entra ID<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Store passwords for users<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Encrypt endpoint hard drives<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Provide interactive visualizations and dashboards for security data<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Sentinel workbooks provide interactive dashboards and visualizations that help security teams analyze and understand collected security information. Workbooks can present information through charts, graphs, tables, and other visual elements, making it easier to identify trends and investigate security conditions. For example, a workbook can display information about incidents, authentication activity, security alerts, or other connected data. Workbooks are especially useful for security operations because they can turn large amounts of raw information into a more understandable visual representation. They support monitoring and analysis but are not intended to replace identity, endpoint, or data protection services.<\/span><\/p>\n<h3><b>Question 76. Which Microsoft Sentinel capability can automatically initiate actions when specific conditions are met?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Sensitivity labels<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Automation rules and playbooks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Security defaults<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Retention labels<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Automation rules and playbooks<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Sentinel automation rules and playbooks can help security teams automate parts of incident response. Automation rules can perform actions when specified conditions are met, while playbooks can use Azure Logic Apps-based workflows to execute a sequence of actions. For example, an automated workflow might notify a security team, enrich an alert with additional information, or perform another supported response action. Automation can reduce the amount of manual work required for repetitive response activities and help organizations respond consistently. Human review can still be appropriate for actions that have significant operational consequences.<\/span><\/p>\n<h3><b>Question 77. What is Azure DDoS Protection designed to defend against?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Unauthorized document sharing<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Distributed denial-of-service attacks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Password reuse<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Data retention violations<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Distributed denial-of-service attacks<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Azure DDoS Protection is designed to help protect Azure resources from distributed denial-of-service attacks. A DDoS attack attempts to overwhelm a target with large amounts of network traffic or requests, potentially making an application or service unavailable to legitimate users. Azure provides DDoS protection capabilities that can help detect and mitigate certain network-level attacks against protected resources. This protection is part of a broader security strategy and does not replace application security, identity controls, endpoint protection, or secure configuration practices. Organizations should use layered controls according to the architecture and risk profile of their workloads.<\/span><\/p>\n<h3><b>Question 78. What is the primary purpose of Azure Key Vault?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Store and manage secrets, keys, and certificates securely<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Analyze Sentinel incidents<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Manage Microsoft 365 mailboxes<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Create user training courses<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Store and manage secrets, keys, and certificates securely<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Azure Key Vault is a service designed to securely store and manage sensitive information such as secrets, cryptographic keys, and certificates. Applications and services can retrieve required credentials or cryptographic material from Key Vault instead of embedding sensitive values directly into application code or configuration files. Access to stored objects can be controlled through identity and authorization mechanisms. This helps reduce the risk of exposing credentials through source code or poorly protected configuration files. Key Vault is therefore an important component of secure application architecture, particularly when applications need controlled access to sensitive secrets and cryptographic resources.<\/span><\/p>\n<h3><b>Question 79. Which Microsoft Purview capability helps organizations locate and manage sensitive data across their environment?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Purview Data Map<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Defender Antivirus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Microsoft Entra PIM<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Azure DDoS Protection<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Microsoft Purview Data Map<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview Data Map helps organizations discover and understand data across their data estate by maintaining information about data assets and their metadata. It can support data discovery and governance by helping organizations understand where data exists and how it is represented across supported sources. This visibility can contribute to broader data governance and compliance activities. Purview includes multiple capabilities that address different aspects of information protection, governance, and compliance, so it is important to distinguish data discovery capabilities from tools such as Data Loss Prevention, sensitivity labels, and retention policies.<\/span><\/p>\n<h3><b>Question 80. What is Microsoft Purview eDiscovery primarily used for?<\/b><\/h3>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Managing endpoint antivirus definitions<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Investigating and responding to legal or compliance-related data discovery requirements<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Synchronizing on-premises user accounts<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Blocking network-level DDoS attacks<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. Investigating and responding to legal or compliance-related data discovery requirements<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Microsoft Purview eDiscovery provides capabilities that help organizations identify, collect, review, and manage electronic information relevant to legal or compliance investigations. Organizations may need to locate relevant content across supported Microsoft 365 data sources and preserve or analyze information according to applicable requirements. eDiscovery is therefore focused on information investigation and discovery rather than endpoint protection or identity synchronization. It can support legal and compliance teams by providing structured processes for handling potentially relevant electronic data. Appropriate permissions, policies, and organizational procedures are important when using eDiscovery because the information involved can be sensitive.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Microsoft SC-900 Exam Dumps and Practice Test Dumps &nbsp; Question 61. Which security principle requires an organization to use multiple independent layers of protection? Least privilege Defense in depth Single sign-on Password synchronization Correct Answer: 2. Defense in depth Explanation: Defense in depth is a security strategy that uses multiple layers of controls [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/15553"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=15553"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/15553\/revisions"}],"predecessor-version":[{"id":15587,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/15553\/revisions\/15587"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=15553"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=15553"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=15553"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}