MS-100 Regulatory Frameworks & Compliance 3 — Questions and Answers
Question 1: Which Microsoft Purview solution monitors Teams, Exchange, and Yammer communications for policy violations such as harassment or conflicts of interest?
- Insider Risk Management
- Communication Compliance (Correct answer)
- Information Barriers
- Data Loss Prevention
Correct answer: Communication Compliance
Communication Compliance reviews communications in Microsoft 365 for regulatory and policy violations using machine learning classifiers and customizable policy templates.
Question 2: A financial services firm must prevent M&A deal team members from communicating with trading desk employees. Which Microsoft Purview feature enforces this separation?
- Conditional Access policies
- Information Barriers (Correct answer)
- Sensitivity Labels with encryption
- Communication Compliance policies
Correct answer: Information Barriers
Information Barriers restrict communications and collaboration between defined groups in Microsoft 365 services including Teams, SharePoint, and OneDrive.
Question 3: Your organization is assessed against NIST SP 800-53 controls. Where in Microsoft 365 can you find a pre-built assessment mapped to these controls?
- Microsoft Secure Score dashboard
- Compliance Manager built-in assessments (Correct answer)
- Azure Security Center regulatory compliance
- Microsoft Defender for Cloud policy assignments
Correct answer: Compliance Manager built-in assessments
Compliance Manager includes pre-built assessments for NIST SP 800-53 that map Microsoft controls and customer improvement actions to specific requirements.
Question 4: Under GDPR Article 33, an organization must notify the supervisory authority within 72 hours of discovering a personal data breach. Which Microsoft 365 tool helps detect such breaches?
- Compliance Manager breach notification template
- Microsoft Defender for Cloud Apps anomaly detection alerts (Correct answer)
- Microsoft Purview Audit search for deletion events
- Sensitivity label usage reports
Correct answer: Microsoft Defender for Cloud Apps anomaly detection alerts
Defender for Cloud Apps detects anomalous data access and exfiltration patterns that may indicate a personal data breach requiring GDPR Article 33 notification.
Question 5: A healthcare organization wants to classify documents containing patient record numbers automatically. Which Microsoft Purview capability uses pre-trained models to identify this sensitive content type?
- Custom keyword dictionaries
- Built-in sensitive information types (Correct answer)
- Exact Data Match (EDM) classification
- Trainable classifiers
Correct answer: Built-in sensitive information types
Built-in sensitive information types use pattern matching and checksums to detect regulated data like patient IDs, SSNs, and credit card numbers without custom configuration.
Question 6: An organization must prove to auditors that a specific Microsoft 365 retention policy has not been modified or deleted in three years. Which action provides this assurance?
- Exporting the policy configuration monthly to SharePoint
- Enabling Preservation Lock on the retention policy (Correct answer)
- Assigning the Compliance Administrator role to a dedicated account
- Configuring audit log retention for three years
Correct answer: Enabling Preservation Lock on the retention policy
Preservation Lock prevents any administrator, including global admins, from disabling, deleting, or reducing the retention duration of a locked policy.
Question 7: Which role in Microsoft Purview allows a user to manage DLP policies and view DLP reports but NOT create or modify sensitivity labels?
- Compliance Administrator
- DLP Compliance Management (Correct answer)
- Information Protection Administrator
- Records Management
Correct answer: DLP Compliance Management
The DLP Compliance Management role grants permissions to create and manage DLP policies and view related reports without access to sensitivity label management.
Which Microsoft Purview solution monitors Teams, Exchange, and Yammer communications for policy violations such as harassment or conflicts of interest?