slide 1: Questions Answers PDF P-1
Vendor: Microsoft
Exam Code: MS-101
Exam Name: Microsoft 365 Mobility and Security
Version: DEMO
Product Questions: 62/3Case Study
Version: 8.0
Case Study:
A . Datum
Overview
Existing Environment
slide 2: Questions Answers PDF P-2
This is a case study Case studies are not timed separately. You can use as much exam time as you would
like to complete each case. However there may be additional case studies and sections on this exam.
You must manage your time to ensure that you are able to complete all questions included on this exam
in the time provided.
To answer the questions included in a case study you will need to reference information that is provided
in the case study. Case studies might contain exhibits and other resources that provide more information
about the scenario that is described in the case study. Each question is independent of the other
questions in this case study.
At the end of this case study a review screen will appear. This screen allows you to review your answers
and to make changes before you move to the next section of the exam. After you begin a new section
you cannot return to this section.
To start the case study
To display the first question in this case study click the Next button. Use the buttons in the left pane to
explore the content of the case study before you answer the questions. Clicking these buttons displays
information such as business requirements existing environment and problem statements. When you
are ready to answer a question click the Question button to return to the question.
Current Infrastructure
A . Datum recently purchased a Microsoft 365 subscription.
All user files are migrated to Microsoft 365.
All mailboxes are hosted in Microsoft 365. The users in each office have email
suffixes that include the country of the user for example user1us.adatum.com
or user2uk.ad3tum.com.
Each office has a security information and event management SIEM appliance.
The appliances come from three different vendors.
A . Datum uses and processes Personally Identifiable Information PII.
Problem Statements
Requirements
A . Datum entered into litigation. The legal department must place a hold on all
the documents of a user named User1 that are in Microsoft 365.
Business Goals
A . Datum warns to be fully compliant with all the relevant data privacy laws in the
regions where it operates.
A . Datum wants to minimize the cost of hardware and software whenever
possible.
Technical Requirements
A. Datum identifies the following technical requirements:
• Centrally perform log analysis for all offices.
• Aggregate all data from the SIEM appliances to a central cloud repository for later
analysis.
• Ensure that a SharePoint administrator can identify who accessed a specific file
stored in a document library.
slide 3: Questions Answers PDF P-3
• Provide the users in the finance department with access to Service assurance
information in Microsoft Office 365.
• Ensure that documents and email messages containing the PII data of European
Union EU citizens are preserved for 10 years.
• If a user attempts to download 1000 or more files from Microsoft SharePoint
Online within 30 minutes notify a security administrator and suspend the users
user account.
• A security administrator requires a report that shows which Microsoft 36S users
signed in Based on the report the security administrator will create a policy to
require multi-factor authentication when a sign in is high risk.
• Ensure that the users in the New York office can only send email messages that
contain sensitive US. PII data to other New York office users. Email messages must
be monitored to ensure compliance. Auditors in the New York office must have
access to reports that show the sent and received email messages containing
sensitive U.S. PII data.
Question: 1
You need to meet the technical requirement for the EU PD. data.
What should you create
A. a retention policy from the Security Compliance admin center.
B. a retention policy from the Exchange admin center
C. a data loss prevention DLP policy from the Exchange admin center
D. a data loss prevention DLP policy from the Security Compliance admin center
Answer: A
Question: 2
You need to meet the technical requirement for large-volume document retrieval. What should you
create
A. a data loss prevention DLP policy from the Security Compliance admin center
B. an alert policy from the Security Compliance admin center
C. a file policy from Microsoft Cloud App Security
D. an activity policy from Microsoft Cloud App Security
Answer: B
Question: 3
ORDER LIST
slide 4: Questions Answers PDF P-4
You need to meet the requirement for the legal department
Which three actions should you perform in sequence from the Security Compliance admin center To
answer move the appropriate actions from the list of actions to the answer area and arrange them in the
correct order.
Answer:
Question: 4
HOTSPOT
You need to meet the technical requirement for log analysis.
What is the minimum number of data sources and log collectors you should create from Microsoft Cloud
App Security To answer select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
slide 5: Questions Answers PDF P-5
Answer:
Question: 5
Which report should the New York office auditors view
A. DLP policy matches
B. DLP false positives and overrides
C. DLP incidents
D. Top Senders and Recipients
Answer: D
Question: 6
HOTSPOT
You need to meet the technical requirement for the SharePoint administrator. What should you do To
answer select the appropriate options in the answer area. NOTE: Each correct selection is worth one
point.
slide 6: Questions Answers PDF P-6
Answer:
slide 7: https://www.dumps4u.com/
Questions Answers PDF P-7
Thank You for Downloading Demo MS-101 PDF
20 Discount Coupon Code: dumps4u