|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/new-sc-401-microsoft-exam-questions-and-answers/
课程评论:没有评论
课程名称:新SC-401微软考试问题与答案 课程概述:SC-401考试是关于在Microsoft 365中管理信息安全的考试。该学习指南旨在帮助您了解考试内容,并包括考试可能涵盖的主题摘要及额外资源链接。此文档中的信息和材料将帮助您在准备SC-401考试时专注于学习。 技能测量与目标人群:作为信息安全管理员,您需要使用Microsoft Purview及相关服务规划和实施敏感数据的信息安全。您负责通过保护内部和外部威胁的数据以及保护AI服务使用的数据来减轻风险。此外,您还需要实施信息保护、数据丢失防护、数据保留、内部风险管理,并管理信息安全警报和活动。您将与负责治理、数据和安全的其他角色合作,评估和制定政策,以实现组织的信息安全与风险降低目标。此职位还参与应对信息安全事件。 熟悉的服务有:所有SC-401 Microsoft 365服务、PowerShell、Microsoft Entra、Microsoft Defender门户及Microsoft Defender云应用。 考试涵盖的主要主题: 1. 实施信息保护(30-35%) - 管理数据分类 - 处理敏感信息要求 - 实施敏感性标签 - 在Windows、文件共享和Exchange中实施信息保护 2. 实施数据丢失防护和保留(30-35%) - 创建和配置数据丢失防护政策 - 监控Microsoft Purview端点数据丢失防护 - 管理信息的保留政策 3. 管理风险、警报和活动(30-35%) - 实施和管理内部风险管理 - 管理信息安全警报与活动 4. 保护AI服务使用的数据 - 在AI服务环境中实施控制措施 通过学习本课程,您将能有效地规划和执行信息安全管理策略,以保护组织的敏感数据。
Exam SC-401: Administering Information Security in Microsoft 365This study guide should help you understand what to expect on the exam and includes a summary of the topics the exam might cover and links to additional resources. The information and materials in this document should help you focus your studies as you prepare for the SC-401 exam.Skills measuredAudience profileAs an information security administrator, you plan and implement information security of sensitive data by using Microsoft Purview and related services. You're responsible for mitigating risks by protecting data inside collaboration environments that are managed by SC-401 study guide Microsoft 365 from internal and external threats and protecting data used by AI services. You also implement information protection, data loss prevention, retention, insider risk management, and manage information security alerts and activities.You work with other roles that are responsible for governance, data, and security to evaluate and develop policies to address an organization's information security and risk reduction goals. You collaborate with workload administrators, business application owners, and governance stakeholders to implement technology solutions that support the necessary policies and controls. This SC-401 questions role also participates in responding to information security incidents.You should be familiar with all SC-401 Microsoft 365 services, PowerShell, Microsoft Entra, the Microsoft Defender portal, and Microsoft Defender for Cloud Apps.Please follow these Practice Test Topics:Skills at a glance· Implement information protection (30-35%)· Implement data loss prevention and retention (30-35%)· Manage risks, alerts, and activities (30-35%)Implement information protection (30-35%)Implement and manage data classification· Identify sensitive information requirements for an organization's data· Translate sensitive information requirements into built-in or custom sensitive info types· Create and manage custom sensitive info types· Implement document fingerprinting· Create and manage exact data match (EDM) classifiers· Create and manage trainable classifiers· Monitor data classification and label usage by using data explorer and content explorer· Configure optical character recognition (OCR) support for sensitive info typesImplement and manage sensitivity labels in Microsoft Purview· Implement roles and permissions for administering sensitivity labels· Define and create sensitivity labels for items and containers· Configure protection settings and content marking for sensitivity labels· Configure and manage publishing policies for sensitivity labels· Configure and manage auto-labeling policies for sensitivity labels· Apply a sensitivity label to containers, such as Microsoft Teams, Microsoft 365 Groups, Microsoft Power BI, and Microsoft SharePoint· Apply sensitivity labels by using Microsoft Defender for Cloud AppsImplement information protection for Windows, file shares, and Exchange· Plan and implement the Microsoft Purview Information Protection client· Manage files by using the Microsoft Purview Information Protection client· Apply bulk classification to on-premises data by using the Microsoft Purview Information Protection scanner· Design and implement Microsoft Purview Message Encryption· Design and implement Microsoft Purview Advanced Message EncryptionImplement data loss prevention and retention (30-35%)Create and configure data loss prevention policies· Design data loss prevention policies based on an organization's requirements· Implement roles and permissions for data loss prevention· Create and manage data loss prevention policies· Configure data loss prevention policies for Adaptive Protection· Interpret policy and rule precedence in data loss prevention· Create file policies in Microsoft Defender for Cloud Apps by using a DLP policyImplement and monitor Microsoft Purview Endpoint DLP· Specify device requirements for Endpoint DLP, including extensions· Configure advanced DLP rules for devices in DLP policies· Configure Endpoint DLP settings· Configure just-in-time protection· Monitor endpoint activitiesImplement and manage retention· Plan for information retention and disposition by using retention labels· Create, configure, and manage adaptive scopes· Create retention labels for data lifecycle management· Configure a retention label policy to publish labels· Configure a retention label policy to auto-apply labels· Interpret the results of policy precedence, including using Policy lookup· Create and configure retention policies· Recover retained content in Microsoft 365Manage risks, alerts, and activities (30-35%)Implement and manage Microsoft Purview Insider Risk Management· Implement roles and permissions for Insider Risk Management· Plan and implement Insider Risk Management connectors· Plan and implement integration with Microsoft Defender for Endpoint· Configure and manage Insider Risk Management settings· Configure policy indicators· Select an appropriate policy template· Create and manage Insider Risk Management policies· Manage forensic evidence settings· Enable and configure insider risk levels for Adaptive Protection· Manage insider risk alerts and cases· Manage Insider Risk Management workflow, including notice templatesManage information security alerts and activities· Assign Microsoft Purview Audit (Premium) user licenses· Investigate activities by using Microsoft Purview Audit· Configure audit retention policies· Analyze Purview activities by using activity explorer· Respond to data loss prevention alerts in the Microsoft Purview portal· Investigate insider risk activities by using the Microsoft Purview portal· Respond to Purview alerts in Microsoft Defender XDR· Respond to Defender for Cloud Apps file policy alerts· Perform searches by using Content searchProtect data used by AI services· Implement controls in Microsoft Purview to protect content in an environment that uses AI services· Implement controls in Microsoft 365 productivity workloads to protect content in an environment that uses AI services· Implement pre-requisites for Data Security Posture Management (DSPM) for AI· Manage roles and permissions for DSPM for AI· Configure DSPM for AI policies· Monitor activities in DSPM for AI