Objective purview.information-protectionSC-900

Describe information protection, data lifecycle management, and data governance capabilities of Microsoft Purview

Objective purview.information-protection sits in Describe capabilities of Microsoft compliance solutions, which carries 22% of the SCI Fundamentals exam. The questions below are original, written from the official objective title above, and each explanation cites the Microsoft Azure page it rests on.

Objective title verbatim from the official objectives. Microsoft Azure exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

Describe capabilities of Microsoft compliance solutionsModerate

An analyst finishes a confidential report and wants it automatically encrypted, restricted to specific users, and marked with a visual watermark whenever it is opened. Which Purview capability provides these protections?

Correct.

The concept

Data protection capabilities divide into ones that find sensitive content and ones that act on it. Classification and detection produce a verdict about an item. A protection object attaches to the item itself and travels with it, so the encryption, the permission set and the on-screen marking apply wherever the file is opened, including outside the tenant.

Why this answer

Three separate requirements land here: encryption, a restriction on who may open the file, and a visual marking rendered at open time. A sensitivity label is a single object that carries all three as its protection settings, so one label applied to the report satisfies the whole list without any additional policy.

  • Correct: all three protections are settings on one label.
  • BTrainable classifiers identify sensitive items using examples of data, they do not apply protection actions.
  • CData Loss Prevention policies monitor and act on sharing of sensitive information, they do not add watermarks or encrypt content directly.
  • DInformation Barriers restrict communication between users and groups, they do not encrypt or mark documents.
Read the sourceMicrosoft Purview security
Verified against learn.microsoft.com · 2026-07-28
purviewinformation-protectionsensitivity-labels

Now you: objective purview.information-protection questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

Describe capabilities of Microsoft compliance solutionsHard

A regulated financial firm must stop traders from communicating with research analysts in Teams and SharePoint, and separately needs its most sensitive files encrypted so Microsoft never has access to the plaintext key. Which pair of capabilities should the firm deploy?

Sample question 2 of 3

Describe capabilities of Microsoft compliance solutionsModerate

A financial services firm wants to stop employees from emailing documents containing credit card numbers to external recipients, while still allowing internal sharing of the same files. Which capability should they configure?

Sample question 3 of 3

Describe capabilities of Microsoft compliance solutionsHard

A compliance team wants one capability that both applies encryption or visual markings to sensitive files and also acts as the foundation that other Purview data security solutions, such as DLP, interact with. Which capability fits this need?

Full SCI Fundamentals question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Describe capabilities of Microsoft compliance solutions