Book Image

Microsoft Information Protection Administrator SC-400 Certification Guide

By : Shabaz Darr, Viktor Hedberg
2 (1)
Book Image

Microsoft Information Protection Administrator SC-400 Certification Guide

2 (1)
By: Shabaz Darr, Viktor Hedberg

Overview of this book

Cloud technologies have massively increased the amount of data being produced and the places in which this data is stored. Without proper planning and discipline in configuring information protection for your data, you may be compromising information and regulatory compliance. Microsoft Information Protection Administrator SC-400 Certification Guide begins with an overview of the SC-400 exam, and then enables you to envision, implement, and administer the Information Protection suite offered by Microsoft. The book also provides you with hands-on labs, along with the theory of creating policies and rules for content classification, data loss prevention, governance, and protection. Toward the end, you'll be able to take mock tests to help you prepare effectively for the exam. By the end of this Microsoft book, you'll have covered everything needed to pass the SC-400 certification exam, and have a handy, on-the-job desktop reference guide.
Table of Contents (19 chapters)
1
Section 1: Exam Overview and Introduction to Information Protection
4
Section 2: Implementing Information Protection
9
Section 3: Implementing Data Loss Prevention
13
Section 4: Implementing Information Governance

Reviewing and analyzing DLP reports

With both the DLP Policy Matches report and the DLP Incidents report page, there is a chart and a table you will be able to view that display information based on their corresponding events.

When analyzing both these reports, you have the ability to break down the charts and separate them by either of the following:

  • Affected service
  • Enforced action
  • Applied policy

You will need to familiarize yourself with the existing filters of DLP that will aid you in fine-tuning the policies and limit the false positives and overrides.

Reviewing DLP policy matches

When you are utilizing DLP policy match reports, it is recommended to use filters to reduce the report to particular policies. This will aid in lowering the number of matches that are viewable and concentrate on the effect of the specific policies in your tenant.

Imagine a scenario in which you created a new policy to protect financial content a week ago and it is...