Microsoft 365 Certified: Administrator ExpertImplement and manage Microsoft Purview complianceEasy
A company is implementing Microsoft Purview and needs to ensure that sensitive financial data, such as credit card numbers and bank account details, is automatically identified and protected across Microsoft 365 services. The company requires a solution that can detect these data types without manual tagging by users and apply appropriate compliance actions. Which Microsoft Purview component should be used to achieve this goal?
- ACommunication compliance
- BRecords management
- CInformation barriers
- DData loss prevention (DLP) policies
Show answer & explanationAnswer & explanation
Correct answer: D. Data loss prevention (DLP) policies
Data loss prevention (DLP) policies are designed to automatically identify, monitor, and protect sensitive information across Microsoft 365 services. They use sensitive information types to detect data like credit card numbers and can enforce actions to prevent data exfiltration.
Why the other options are wrong
- A. Communication compliance helps detect and remediate inappropriate communications, not specifically sensitive data exfiltration.
- B. Records management focuses on retention and disposal of information, not real-time sensitive data protection.
- C. Information barriers prevent unauthorized communication between specific user groups, not automatic sensitive data detection.
Data Loss Prevention (DLP)
A set of tools and processes used to prevent sensitive data from leaving an organization's control, often through automated detection and enforcement.
- Identifies, monitors, and protects sensitive information.
- Uses sensitive information types (SITs) for detection.
- Applies policies to prevent accidental or malicious data sharing.
Memory trick: DLP is your Digital Loss Prevention for precious data.