Microsoft 365 Copilot AB-900 DSPM For AI And Purview eDiscovery Content Search Practice Test

 

Skills 2.3 • 20 original questions

This Microsoft AB-900 Microsoft 365 Copilot and Agent Administration Fundamentals practice test focuses on dspm for ai and purview ediscovery content search through original scenario-based questions aligned to the Skills measured as of July 22, 2026. Use the full ExamSnap AB-900 collection for broader practice across all current skill areas. For broader exam preparation, review the Microsoft AB-900 Exam Dumps page.

Instructions: Select the best answer for each question. Review the explanation after answering; each distractor includes a reason it is not the best choice for that scenario.

Question 1

Alpine Ski House has validated the surrounding services. The remaining requirement is to discover AI usage and data-security risks related to generative AI. Which choice is correct? No unrelated tenant settings should be changed.

  1. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement
  2. Use Microsoft Purview Insider Risk Management to identify and investigate potentially risky user activity
  3. Use SharePoint Advanced Management Restricted Access Control to limit site access to the approved group or users
  4. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  5. Run the appropriate Data access governance report from the SharePoint admin center

Correct answer: D

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

B: Insider Risk Management correlates configured indicators and user activity to surface potential insider-risk cases for review. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

C: Restricted Access Control adds a site-level access restriction that can prevent broader access even when other permissions or links exist. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

D: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

E: SharePoint Data access governance reports provide snapshot and activity views for permissions, sharing links, sensitivity labels, and broad-sharing patterns. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 2

An administrator reviewing production readiness check for Contoso must search Microsoft 365 content for an eDiscovery matter. Which Microsoft 365 control or object should be used? The environment uses current Microsoft 365 services and the July 2026 AB-900 scope.

  1. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  2. Use SharePoint Advanced Management Restricted Access Control to limit site access to the approved group or users
  3. Run the appropriate Data access governance report from the SharePoint admin center
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement

Correct answer: D

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

B: Restricted Access Control adds a site-level access restriction that can prevent broader access even when other permissions or links exist. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

C: SharePoint Data access governance reports provide snapshot and activity views for permissions, sharing links, sensitivity labels, and broad-sharing patterns. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

E: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 3

A design review at Litware identifies one specific goal: use a Purview capability focused specifically on AI data security posture. Which option best matches that goal? The choice should follow normal Microsoft 365 administrative practice.

  1. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement
  2. Apply responsible AI principles and appropriate human review to the design and use of Copilot and agents
  3. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  4. Use SharePoint Advanced Management Restricted Access Control to limit site access to the approved group or users
  5. Use Microsoft Purview Communication Compliance to review policy violations in supported communications

Correct answer: C

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

B: Responsible AI requires governance and oversight around fairness, reliability and safety, privacy and security, inclusiveness, transparency, and accountability. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

C: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

D: Restricted Access Control adds a site-level access restriction that can prevent broader access even when other permissions or links exist. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

E: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 4

A new administrator at Trey Research asks which Microsoft 365 feature is intended to find files and email messages that match investigation criteria. What is the best answer? The administrator must choose the Microsoft 365 feature that matches the stated goal.

  1. Use Microsoft Purview DLP and review the generated alert, policy match, activity, user, and content details before taking the appropriate remediation action
  2. Use Microsoft Purview retention policies or retention labels to govern how long content is retained and when it can be deleted
  3. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  4. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  5. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria

Correct answer: E

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: DLP detects configured policy matches and can generate alerts with context that administrators use to investigate and respond to potential data loss. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

B: Retention controls preserve or delete content according to lifecycle and regulatory requirements. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

C: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

D: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

E: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 5

While handling a agent governance review, the SharePoint administrator needs to assess how sensitive data is interacting with AI services. Which answer most directly addresses the stated need? The team needs a direct administrative answer, not a broad redesign.

  1. Rely on the user existing Microsoft 365 permissions and access controls because Copilot grounds work responses only in content the user is authorized to access
  2. Use Microsoft Purview retention policies or retention labels to govern how long content is retained and when it can be deleted
  3. Use Microsoft Graph-grounded Microsoft 365 context so Copilot can retrieve relevant work data that the user is permitted to access
  4. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  5. Use SharePoint data access governance and related sharing or permissions reports to identify overshared sites and content

Correct answer: D

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Copilot respects the underlying Microsoft 365 permissions and does not create new access rights to protected content. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

B: Retention controls preserve or delete content according to lifecycle and regulatory requirements. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

C: Microsoft Graph provides signals and relationships across Microsoft 365 that can ground Copilot responses in authorized work context. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

D: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

E: Data access governance reports reveal broad permissions and sharing activity so administrators can focus remediation on the highest-risk sites. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 6

During a data protection review at Woodgrove Bank, the Microsoft 365 administrator must locate potentially relevant content before review or export. Which Microsoft 365 action or concept most directly satisfies the requirement? The administrator wants an action that is easy to audit later.

  1. Use SharePoint data access governance and related sharing or permissions reports to identify overshared sites and content
  2. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  3. Use the underlying Microsoft 365 permissions together with Microsoft Purview and Microsoft Defender controls to protect data used by Copilot
  4. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  5. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement

Correct answer: B

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Data access governance reports reveal broad permissions and sharing activity so administrators can focus remediation on the highest-risk sites. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

B: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

C: Copilot operates within existing Microsoft 365 security and compliance boundaries, so permission hygiene and protection policies remain fundamental. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

D: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

E: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 7

Wide World Importers is preparing a admin-center audit. The team needs to discover AI usage and data-security risks related to generative AI. What should the security administrator choose? The solution should preserve least privilege and existing governance where possible.

  1. Use Microsoft Purview Compliance Manager to assess compliance posture and review recommended improvement actions
  2. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  3. Rely on the user existing Microsoft 365 permissions and access controls because Copilot grounds work responses only in content the user is authorized to access
  4. Use Microsoft Purview data classification capabilities to identify and understand sensitive information across supported data
  5. Use SharePoint Advanced Management Restricted Access Control to limit site access to the approved group or users

Correct answer: B

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Compliance Manager helps organizations assess compliance against standards and provides improvement actions and scoring. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

B: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

C: Copilot respects the underlying Microsoft 365 permissions and does not create new access rights to protected content. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

D: Data classification provides visibility into sensitive information types, labels, and related data so protection and governance can be targeted. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

E: Restricted Access Control adds a site-level access restriction that can prevent broader access even when other permissions or links exist. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 8

A new administrator at Southridge Video asks which Microsoft 365 feature is intended to search Microsoft 365 content for an eDiscovery matter. What is the best answer? The team wants the smallest change that directly addresses the requirement.

  1. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  2. Use Microsoft Purview Activity explorer to review recorded user activities involving sensitive or governed content
  3. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  4. Use Microsoft Graph-grounded Microsoft 365 context so Copilot can retrieve relevant work data that the user is permitted to access
  5. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement

Correct answer: C

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

B: Activity explorer provides visibility into supported activities across data protection and governance workloads. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

C: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

D: Microsoft Graph provides signals and relationships across Microsoft 365 that can ground Copilot responses in authorized work context. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

E: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 9

For a governance workshop at Fabrikam, which Microsoft 365 approach correctly addresses the need to use a Purview capability focused specifically on AI data security posture? The decision must address the stated requirement rather than a different Microsoft 365 control.

  1. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  2. Use Microsoft Purview DLP and review the generated alert, policy match, activity, user, and content details before taking the appropriate remediation action
  3. Rely on the user existing Microsoft 365 permissions and access controls because Copilot grounds work responses only in content the user is authorized to access
  4. Use Microsoft Purview Insider Risk Management to identify and investigate potentially risky user activity
  5. Use Microsoft Purview retention policies or retention labels to govern how long content is retained and when it can be deleted

Correct answer: A

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

B: DLP detects configured policy matches and can generate alerts with context that administrators use to investigate and respond to potential data loss. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

C: Copilot respects the underlying Microsoft 365 permissions and does not create new access rights to protected content. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

D: Insider Risk Management correlates configured indicators and user activity to surface potential insider-risk cases for review. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

E: Retention controls preserve or delete content according to lifecycle and regulatory requirements. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 10

The compliance administrator at Wingtip Toys is asked to find files and email messages that match investigation criteria. What is the most appropriate next step? The team will validate the result immediately after the change.

  1. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  2. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  3. Use SharePoint data access governance and related sharing or permissions reports to identify overshared sites and content
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Use Microsoft Purview Activity explorer to review recorded user activities involving sensitive or governed content

Correct answer: D

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

B: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

C: Data access governance reports reveal broad permissions and sharing activity so administrators can focus remediation on the highest-risk sites. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

E: Activity explorer provides visibility into supported activities across data protection and governance workloads. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 11

VanArsdel has validated the surrounding services. The remaining requirement is to assess how sensitive data is interacting with AI services. Which choice is correct? No unrelated tenant settings should be changed.

  1. Use Microsoft Purview Communication Compliance to review policy violations in supported communications
  2. Rely on the user existing Microsoft 365 permissions and access controls because Copilot grounds work responses only in content the user is authorized to access
  3. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  4. Use Microsoft Purview data classification capabilities to identify and understand sensitive information across supported data
  5. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks

Correct answer: E

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

B: Copilot respects the underlying Microsoft 365 permissions and does not create new access rights to protected content. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

C: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

D: Data classification provides visibility into sensitive information types, labels, and related data so protection and governance can be targeted. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

E: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 12

A new administrator at Bellows College asks which Microsoft 365 feature is intended to locate potentially relevant content before review or export. What is the best answer? The environment uses current Microsoft 365 services and the July 2026 AB-900 scope.

  1. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  2. Use Microsoft Purview Activity explorer to review recorded user activities involving sensitive or governed content
  3. Use Microsoft Purview Communication Compliance to review policy violations in supported communications
  4. Use Microsoft Purview Data Explorer to investigate sensitive information and where it appears
  5. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks

Correct answer: A

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

B: Activity explorer provides visibility into supported activities across data protection and governance workloads. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

C: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

D: Data Explorer provides visibility into classified and sensitive information so administrators can understand exposure and plan protection. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

E: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 13

A design review at Tailspin Toys identifies one specific goal: discover AI usage and data-security risks related to generative AI. Which option best matches that goal? The choice should follow normal Microsoft 365 administrative practice.

  1. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection
  2. Use the underlying Microsoft 365 permissions together with Microsoft Purview and Microsoft Defender controls to protect data used by Copilot
  3. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  4. Use Microsoft Purview Data Explorer to investigate sensitive information and where it appears
  5. Use Microsoft Purview Communication Compliance to review policy violations in supported communications

Correct answer: C

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

B: Copilot operates within existing Microsoft 365 security and compliance boundaries, so permission hygiene and protection policies remain fundamental. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

C: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

D: Data Explorer provides visibility into classified and sensitive information so administrators can understand exposure and plan protection. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

E: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 14

The IT team at Coho Winery wants to search Microsoft 365 content for an eDiscovery matter. Which Microsoft 365 capability should it use? The administrator must choose the Microsoft 365 feature that matches the stated goal.

  1. Use SharePoint data access governance and related sharing or permissions reports to identify overshared sites and content
  2. Apply responsible AI principles and appropriate human review to the design and use of Copilot and agents
  3. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  4. Use Microsoft Purview DLP and review the generated alert, policy match, activity, user, and content details before taking the appropriate remediation action
  5. Use Microsoft Purview Communication Compliance to review policy violations in supported communications

Correct answer: C

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Data access governance reports reveal broad permissions and sharing activity so administrators can focus remediation on the highest-risk sites. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

B: Responsible AI requires governance and oversight around fairness, reliability and safety, privacy and security, inclusiveness, transparency, and accountability. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

C: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

D: DLP detects configured policy matches and can generate alerts with context that administrators use to investigate and respond to potential data loss. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

E: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 15

While handling a oversharing investigation, the security administrator needs to use a Purview capability focused specifically on AI data security posture. Which answer most directly addresses the stated need? The team needs a direct administrative answer, not a broad redesign.

  1. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  2. Use SharePoint data access governance and related sharing or permissions reports to identify overshared sites and content
  3. Use Microsoft Purview retention policies or retention labels to govern how long content is retained and when it can be deleted
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Use Microsoft Purview Communication Compliance to review policy violations in supported communications

Correct answer: A

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

B: Data access governance reports reveal broad permissions and sharing activity so administrators can focus remediation on the highest-risk sites. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

C: Retention controls preserve or delete content according to lifecycle and regulatory requirements. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

E: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to use a Purview capability focused specifically on AI data security posture.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 16

A new administrator at Adventure Works asks which Microsoft 365 feature is intended to find files and email messages that match investigation criteria. What is the best answer? The administrator wants an action that is easy to audit later.

  1. Use Microsoft Purview data classification capabilities to identify and understand sensitive information across supported data
  2. Use the underlying Microsoft 365 permissions together with Microsoft Purview and Microsoft Defender controls to protect data used by Copilot
  3. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Apply responsible AI principles and appropriate human review to the design and use of Copilot and agents

Correct answer: D

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Data classification provides visibility into sensitive information types, labels, and related data so protection and governance can be targeted. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

B: Copilot operates within existing Microsoft 365 security and compliance boundaries, so permission hygiene and protection policies remain fundamental. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

C: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

E: Responsible AI requires governance and oversight around fairness, reliability and safety, privacy and security, inclusiveness, transparency, and accountability. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to find files and email messages that match investigation criteria.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 17

Blue Yonder Airlines is preparing a production readiness check. The team needs to assess how sensitive data is interacting with AI services. What should the Copilot administrator choose? The solution should preserve least privilege and existing governance where possible.

  1. Use SharePoint Advanced Management Restricted Access Control to limit site access to the approved group or users
  2. Apply responsible AI principles and appropriate human review to the design and use of Copilot and agents
  3. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement
  4. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  5. Rely on the user existing Microsoft 365 permissions and access controls because Copilot grounds work responses only in content the user is authorized to access

Correct answer: D

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Restricted Access Control adds a site-level access restriction that can prevent broader access even when other permissions or links exist. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

B: Responsible AI requires governance and oversight around fairness, reliability and safety, privacy and security, inclusiveness, transparency, and accountability. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

C: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

D: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

E: Copilot respects the underlying Microsoft 365 permissions and does not create new access rights to protected content. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to assess how sensitive data is interacting with AI services.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 18

A support case at Relecloud says administrators must locate potentially relevant content before review or export. Which option is the best fit? The team wants the smallest change that directly addresses the requirement.

  1. Use Microsoft Purview Activity explorer to review recorded user activities involving sensitive or governed content
  2. Use Microsoft Purview Data Explorer to investigate sensitive information and where it appears
  3. Use Microsoft Purview data classification capabilities to identify and understand sensitive information across supported data
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Apply a Microsoft Purview sensitivity label appropriate to the information sensitivity and required protection

Correct answer: D

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Activity explorer provides visibility into supported activities across data protection and governance workloads. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

B: Data Explorer provides visibility into classified and sensitive information so administrators can understand exposure and plan protection. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

C: Data classification provides visibility into sensitive information types, labels, and related data so protection and governance can be targeted. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

E: Sensitivity labels classify content and can drive protections and handling controls such as markings, encryption, and container settings where supported. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to locate potentially relevant content before review or export.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Question 19

For a compliance assessment at Lamna Healthcare, which Microsoft 365 approach correctly addresses the need to discover AI usage and data-security risks related to generative AI? The decision must address the stated requirement rather than a different Microsoft 365 control.

  1. Use Microsoft Purview retention policies or retention labels to govern how long content is retained and when it can be deleted
  2. Use Microsoft Purview DLP and review the generated alert, policy match, activity, user, and content details before taking the appropriate remediation action
  3. Use the Microsoft Purview capability that corresponds to the data protection, compliance, risk, or lifecycle requirement
  4. Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks
  5. Use Microsoft Purview Communication Compliance to review policy violations in supported communications

Correct answer: D

Why: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

Option review:

A: Retention controls preserve or delete content according to lifecycle and regulatory requirements. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

B: DLP detects configured policy matches and can generate alerts with context that administrators use to investigate and respond to potential data loss. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

C: Microsoft Purview brings together information protection, DLP, risk, compliance, AI data security posture, and lifecycle governance capabilities. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

D: DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture. This directly addresses the stated requirement.

E: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to discover AI usage and data-security risks related to generative AI.

Learning point: Use Microsoft Purview Data Security Posture Management for AI to discover AI activity and manage AI-related data security risks. DSPM for AI provides visibility and controls focused on AI use, sensitive-data interactions, and related security posture.

Question 20

A new administrator at Proseware asks which Microsoft 365 feature is intended to search Microsoft 365 content for an eDiscovery matter. What is the best answer? The team will validate the result immediately after the change.

  1. Use Microsoft Purview Communication Compliance to review policy violations in supported communications
  2. Use the underlying Microsoft 365 permissions together with Microsoft Purview and Microsoft Defender controls to protect data used by Copilot
  3. Apply responsible AI principles and appropriate human review to the design and use of Copilot and agents
  4. Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria
  5. Use Microsoft Graph-grounded Microsoft 365 context so Copilot can retrieve relevant work data that the user is permitted to access

Correct answer: D

Why: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

Option review:

A: Communication Compliance detects content that matches configured communication policies and provides a workflow for review and remediation. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

B: Copilot operates within existing Microsoft 365 security and compliance boundaries, so permission hygiene and protection policies remain fundamental. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

C: Responsible AI requires governance and oversight around fairness, reliability and safety, privacy and security, inclusiveness, transparency, and accountability. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

D: Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes. This directly addresses the stated requirement.

E: Microsoft Graph provides signals and relationships across Microsoft 365 that can ground Copilot responses in authorized work context. This can be appropriate in another Microsoft 365 scenario, but it does not directly satisfy the requirement to search Microsoft 365 content for an eDiscovery matter.

Learning point: Use Content search in Microsoft Purview eDiscovery to locate files and emails that match the search criteria. Content search is designed to search supported Microsoft 365 content for investigation and eDiscovery purposes.

Popular posts

img