Refer to the exhibit. An admin creates a Microsoft Purview Data Loss Prevention (DLP) policy rule as shown. When will the rule block access?
The rule's condition evaluates the content of the inspected document and requires the Credit Card Number sensitive information type (SIT) to be matched at the High confidence level. Content that is merely similar to a card number or detected at low or medium confidence will not satisfy this threshold. Because the exhibit shows this exact condition, a high-confidence credit card number match is the only outcome that would trigger the configured DLP action.
Why this answer
The rule is configured with a condition that triggers when a credit card number is detected with a confidence level of 'high'. The action 'Block access' is set to execute when this condition is met. Therefore, the rule blocks access specifically when a credit card number is detected with high confidence, making option A correct.
Exam trap
The trap here is that candidates may assume the rule blocks access whenever a sensitive information type is detected, overlooking the specific confidence level requirement, or they might think the rule is not applied to any location without verifying the exhibit's location configuration.
How to eliminate wrong answers
Option B is wrong because the rule does not include a condition for external sharing; the condition is solely based on detecting a credit card number, not on the sharing context. Option C is wrong because the rule specifies a particular sensitive information type (credit card number) with a high confidence level, not 'any sensitive information type'. Option D is wrong because the rule is applied to locations (as indicated by the 'Locations' section in the exhibit, which is assumed to be configured, even if not fully shown), and the question states the admin creates the rule, implying it is applied to at least one location.