Courseiva

SC-900 Practice Question: Describe the capabilities of Microsoft compliance solutions

Exhibit

{
  "Classification": {
    "Type": "SensitiveInformationType",
    "Id": "50842eb7-edc8-4019-85dd-5a5c1f2bb085",
    "Name": "Contoso Credit Card",
    "MinCount": 1,
    "MaxCount": 5
  },
  "Actions": [
    {
      "ActionType": "BlockAccess",
      "Behavior": "BlockWithOverride"
    },
    {
      "ActionType": "NotifyUser",
      "NotifyUser": "DefaultNotifyUser",
      "NotifyUserCustomSubject": "Sensitive data detected"
    }
  ]
}

Refer to the exhibit. You are reviewing a Microsoft Purview DLP policy configuration for a compliance team. What is the effect of this policy?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

The policy blocks access but allows users to override with a justification

The policy includes a BlockAccess action with behavior set to BlockWithOverride, meaning the action is blocked by default but the user can override with a business justification. Additionally, the NotifyUser action sends a custom notification to the user. This matches Option A. Option B is incorrect because there is no encryption action configured. Option C is incorrect because the policy does block access (with override), not just send a notification. Option D is incorrect because the policy allows user override, so it does not automatically block without override.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • The policy blocks access but allows users to override with a justification

    Why this is correct

    This policy action, often referred to as 'Block with override' in Microsoft Purview Data Loss Prevention (DLP) configurations, is designed to prevent sensitive data from being shared inappropriately. However, it provides a crucial flexibility: users are prompted to provide a business justification if they believe their action is legitimate, allowing them to bypass the block. This approach balances stringent data protection with operational continuity, empowering users to make informed decisions when necessary.

  • The policy automatically applies encryption to the content

    Why it's wrong here

    This statement is incorrect because the exhibit, which describes the policy's actions, does not indicate that content encryption is configured. Microsoft Purview DLP policies can indeed apply sensitivity labels that trigger encryption, but this requires a specific 'Encrypt' action or an 'Apply sensitivity label' action with an associated encryption setting to be explicitly defined within the policy rules. Without such a configuration, encryption is not automatically applied.

  • The policy sends a notification but does not block access

    Why it's wrong here

    This option is inaccurate because the policy explicitly includes a 'BlockAccess' action, even if it's 'BlockWithOverride.' While the policy certainly sends a notification to the user and potentially administrators, its primary enforcement mechanism involves preventing the direct sharing or transfer of sensitive information. Therefore, it performs both notification and a form of access blocking, directly contradicting the claim that it does not block access.

  • The policy automatically blocks access without user override

    Why it's wrong here

    This statement is incorrect because the policy's action is specifically 'BlockWithOverride,' which inherently provides users with the ability to bypass the block. Unlike a hard 'BlockAccess' action that offers no recourse, 'BlockWithOverride' presents a prompt where users must enter a valid business justification to proceed with the action. This design ensures that while data is protected by default, legitimate business processes are not entirely halted.

About these practice questions

Courseiva writes every SC-900 question from scratch — 1,250 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SC-900 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SC-900 exam.