MS-500 Exam QuestionsBrowse all questions from this exam

MS-500 Exam - Question 175


SIMULATION -

You need to ensure that a user named Allan Deyoung receives incident reports when email messages that contain data covered by the U.K. Data Protection Act are sent outside of your organization.

To complete this task, sign in to the Microsoft 365 admin center.

Show Answer
Correct Answer:

To ensure Allan Deyoung receives incident reports when email messages containing data covered by the U.K. Data Protection Act are sent outside of the organization, you need to create a Data Loss Prevention (DLP) policy and configure it as follows: 1. Navigate to the Microsoft 365 Security & Compliance Center. 2. In the left navigation pane, select Data loss prevention and then select Policy. 3. Click on + Create a policy. 4. From the templates provided, choose the U.K. Data Protection Act template and click Next. 5. Name the policy appropriately and click Next. 6. For locations, select 'Let me choose specific locations', then make sure only 'Exchange Email' is checked, as the task is specifically related to email. 7. In Policy Settings, you can accept the defaults on the first page. 8. On the next Policy Settings page, disable 'Show policy tips to users and send them an email notification'. Instead, select 'Detect when content that's being shared contains', and configure the instance number as 1 to ensure any occurrence triggers the report. 9. Enable 'Send incident reports in email' and then click on the link to choose what to include in the report and specify Allan Deyoung as the recipient. 10. Choose to turn on the policy immediately and click Next. 11. Review your settings and click Create to finalize the policy. This configuration ensures that Allan Deyoung receives incident reports whenever an email containing sensitive data covered by the U.K. Data Protection Act is sent outside the organization, covering the specific requirement mentioned in the question.

Discussion

2 comments
Sign in to comment
techtest848
Jul 20, 2020

I think number of instances also should be 1 instead of 10 as if the number of incidents is less than 10, the user will not receive the incident report

shanti0091
Jan 28, 2021

validpoint

itsRay
Jun 3, 2020

Why in step 4 'All locations', while the question mentions 'email' only?

btd2020
Jun 6, 2020

Very good point!

AJ2021
Feb 5, 2021

Correct, it should not be 'All locations', that should be changed to 'Let me choose specific locations', Next, then untick everything except for 'Exchange Email', as the question relates to email

Rick123123
Feb 9, 2021

And what about MS Teams. Can you not send content to external users via Teams??

chaoscreater
Jul 4, 2021

"when email messages that contain data ...." -> Is Teams the same as email? NO.

chaoscreater
Jul 4, 2021

"when email messages that contain data ...." -> Is Teams the same as email? NO.

Rick123123
Feb 9, 2021

And what about MS Teams. Can you not send content to external users via Teams??

chaoscreater
Jul 4, 2021

"when email messages that contain data ...." -> Is Teams the same as email? NO.

chaoscreater
Jul 4, 2021

"when email messages that contain data ...." -> Is Teams the same as email? NO.