SC-900 Practice Question: Describe the capabilities of Microsoft compliance solutions
Which TWO of the following are types of retention actions available in Microsoft Purview? (Choose two.)
⚠ Common exam trap
A common mix-up: candidates confuse retention actions (which only involve keeping or deleting data over time) with other Purview capabilities like encryption, classification, or search, leading them to select options that describe security or discovery features rather than actual retention behaviors.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Retain data for a specified period
Option A (Retain data for a specified period) is correct because Microsoft Purview retention policies and retention labels support a retain action that keeps content for a defined duration, such as 7 years, before any further action occurs. Option D (Delete data after a specified period) is correct because Purview retention settings also provide a delete action that removes content once the specified retention period expires, either alone or combined with retention. These two actions—retain and delete—are the fundamental retention actions configurable in Purview retention policies and labels. Option B is incorrect because encryption at rest is handled by services such as BitLocker, Azure Storage Service Encryption, or Microsoft 365 encryption features, not by retention actions. Option C is incorrect because classifying data as confidential is a sensitivity labeling or classification function, not a retention action. Option E is incorrect because searching for data using eDiscovery is an investigation and discovery capability, not a retention action.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Retain data for a specified period
Why this is correct
This is a fundamental retention action within Microsoft Purview, designed to prevent the permanent deletion of content for a specified duration. It ensures that data, such as emails, documents, or Teams messages, remains discoverable and accessible, even if users attempt to delete it from their applications. This action is crucial for meeting regulatory compliance, legal discovery requirements, or internal organizational policies by placing an immutable hold on the data.
- ✗
Encrypt data at rest
Why it's wrong here
Encrypting data at rest is a critical security measure that protects information from unauthorized access by rendering it unreadable without the correct decryption key. While essential for data protection and confidentiality, encryption is distinct from retention actions, which govern the lifecycle of data—how long it is kept or when it is deleted. Encryption focuses on securing data against breaches, not on its preservation or disposal timeline.
- ✗
Classify data as confidential
Why it's wrong here
Classifying data as confidential involves identifying and labeling content based on its sensitivity or business value, typically using sensitivity labels in Microsoft Purview. This action helps apply appropriate protection settings like encryption or access restrictions, but it is not a retention action itself. Retention actions dictate how long data is kept or when it's deleted, whereas classification primarily defines the data's nature and associated protective measures.
- ✓
Delete data after a specified period
Why this is correct
This is a key retention action that ensures content is permanently removed from all locations after a predetermined period has elapsed. This action is vital for minimizing data sprawl, reducing storage costs, and complying with privacy regulations like GDPR, which mandate the deletion of personal data when it's no longer necessary. It ensures systematic and auditable disposal of information according to established policies.
- ✗
Search for data using eDiscovery
Why it's wrong here
Searching for data using eDiscovery tools, such as Microsoft Purview eDiscovery (Standard or Premium), is a process designed to identify, preserve, collect, and review electronically stored information for legal or investigative purposes. While eDiscovery often relies on data preserved by retention policies, it is a discovery process, not a retention action itself. Retention actions define the rules for data lifecycle management, whereas eDiscovery is a mechanism for accessing that data.
Go deeper
Related to this question
Learn chapter
Shared Responsibility Model in Azure
Key term
Encryption
Encryption is the process of converting readable data into a secret code to prevent unauthorized access.
Key term
Encryption at rest
Encryption at rest is the practice of securing stored data by converting it into an unreadable format using cryptographic algorithms, so that even if physical or digital access to the storage medium is obtained, the data remains confidential.
About these practice questions
This SC-900 question is part of Courseiva's 1,279-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
Same concept, more angles
1 more way this is tested on SC-900
These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.
Variation 1. Which THREE of the following are retention actions in Microsoft Purview Data Lifecycle Management? (Select THREE.)
easy- ✓ A.Delete the content after a specified period
- B.Automatically archive the content
- C.Apply a sensitivity label to the content
- ✓ D.Retain the content for a period and then delete it
- ✓ E.Retain the content for a specified period
Why A: In Microsoft Purview Data Lifecycle Management, retention settings define what happens to content when its retention period expires, and the three supported retention actions are: retain only (option E — keep the content for a specified period, with no deletion action), delete only (option A — delete the content after a specified period, applicable when content has no retention requirement), and retain then delete (option D — retain the content for a period and then delete it, the most common action that satisfies both preservation and disposition needs). These three actions map directly to the retention action choices presented when configuring a retention label or retention policy in Purview. Option B is incorrect because automatic archiving is not a retention action in Data Lifecycle Management; archiving is handled through Exchange Online archive mailboxes or third-party/records management features, not as a retention action. Option C is incorrect because applying a sensitivity label is an Information Protection (Microsoft Purview Information Protection) capability used for classification and encryption, not a retention action, even though retention labels can be applied to content.
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This SC-900 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SC-900 exam.