Courseiva

SC-900 Practice Question: Describe the capabilities of Microsoft compliance solutions

Your organization uses Microsoft Purview to label documents. Users report that some documents are automatically labeled as 'Confidential' even though the content is public. Which action should you take to resolve this issue?

⚠ Common exam trap

Test-takers frequently think disabling auto-labeling or switching to manual labeling is the simplest fix, but the correct approach is to refine the rules to match the organization's intent without losing automation for genuine sensitive data.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Review and adjust the auto-labeling rules in the sensitivity label policies

The issue is that auto-labeling rules are incorrectly classifying public content as 'Confidential'. By reviewing and adjusting the auto-labeling rules in the sensitivity label policies, you can refine the conditions (e.g., sensitive info types or pattern matching) to prevent false positives. This directly addresses the misconfiguration causing automatic labeling of non-sensitive content.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Enable auditing to track label usage

    Why it's wrong here

    Enabling auditing in Microsoft Purview allows organizations to track when sensitivity labels are applied, modified, or removed, providing valuable data for compliance reporting and incident investigation. However, auditing is a reactive measure; it merely records the actions taken by auto-labeling policies or users. It does not proactively prevent or correct instances where auto-labeling rules are misconfigured and applying labels incorrectly, nor does it modify the underlying logic of the policies themselves.

  • Disable auto-labeling in all sensitivity label policies

    Why it's wrong here

    Disabling auto-labeling in all sensitivity label policies would indeed stop the incorrect application of labels by the automated system. However, this is an extreme measure that sacrifices the significant security and compliance benefits of automated data classification. It fails to address the specific misconfiguration within the existing auto-labeling rules, forcing a manual labeling process that is prone to human error and inconsistency, rather than optimizing the powerful automation capabilities of Microsoft Purview.

  • Review and adjust the auto-labeling rules in the sensitivity label policies

    Why this is correct

    Reviewing and adjusting the auto-labeling rules within the sensitivity label policies directly addresses the root cause of incorrect label application. These rules are based on specific conditions, such as sensitive information types, keywords, or trainable classifiers. By refining these conditions, organizations can ensure that auto-labeling accurately identifies and applies the correct sensitivity labels only to truly confidential content, thereby optimizing data protection and compliance without sacrificing the efficiency of automation.

  • Require users to manually apply labels

    Why it's wrong here

    Requiring users to manually apply labels shifts the responsibility for data classification from an automated system to individual users. While this might temporarily circumvent the issue of incorrect auto-labeling, it introduces significant risks of human error, inconsistency, and non-compliance. Manual labeling is less efficient, often leads to under-labeling or mis-labeling due to user oversight or lack of policy understanding, and fundamentally bypasses the core benefit of Microsoft Purview's automated data protection capabilities.

Visual reference

Client Recursive Resolver Root DNS (13 root servers) TLD DNS (.com, .org, …) Authoritative example.com query IP addr answer

About these practice questions

Courseiva writes every SC-900 question from scratch — 1,250 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SC-900 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SC-900 exam.