Microsoft Certified:Information Security Administrator Associate
Domain 3Objective 1
Implement and Manage Microsoft Purview Insider Risk Management SC-401 Practice Questions (Page 5)
Part of the Manage risks, alerts, and activities domain, which accounts for 30–35% of the SC-401 exam. Microsoft does not publish an official question count, but from its 100-minute exam (~40–65 total, ~12–23 in this domain), expect 4–8 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
13concepts
30–35%of the exam
Questions 21–25
- 21
Which setting in Insider Risk Management determines how long data is retained before being purged?
Select an answer first - 22
Which role group should be used to grant a user permission to approve cases in Insider Risk Management?
Select an answer first - 23
An Insider Risk Management alert has been generated for a user. The security analyst has reviewed it and determined that the activity is a false positive. What should the analyst do?
Select an answer first - 24
What is the purpose of forensic evidence in Insider Risk Management?
Select an answer first - 25
What is the purpose of Adaptive Protection in Insider Risk Management?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Microsoft. “SC-401” is a trademark of its owner, used for identification only.