Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam SC-401 Topic 2 Question 4 Discussion

Actual exam question for Microsoft's SC-401 exam
Question #: 4
Topic #: 2
[All SC-401 Questions]

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You recently discovered that the developers at your company emailed Azure Storage Account keys in plain text to third parties.

You need to ensure that when Azure Storage Account keys are emailed, the emails are encrypted.

Solution: You configure a mail flow rule that matches the text patterns.

Does this meet the goal?

Show Suggested Answer Hide Answer
Suggested Answer: B

To ensure Azure Storage Account keys are encrypted when sent via email, you need a Data Loss Prevention (DLP) policy that detects Azure Storage Account keys using a sensitive information type and automatically encrypts emails containing these keys.

Text patterns in mail flow rules are not as reliable as sensitive information types in DLP.

Mail flow rules lack advanced content detection and machine learning-based classification, making them less effective than DLP.


Contribute your Thoughts:

Rutha
2 days ago
Ah, the classic 'email sensitive data in plain text' scenario. Well, the mail flow rule is a good first step, but I'd also recommend implementing some kind of data loss prevention (DLP) solution to catch these kinds of incidents before they happen.
upvoted 0 times
...
Truman
11 days ago
Haha, emailing storage account keys in plain text? That's just asking for trouble! This mail flow rule solution seems like a decent quick fix, but I hope the developers learn their lesson and start using more secure practices going forward.
upvoted 0 times
...
Una
12 days ago
I disagree, I don't think just matching text patterns is enough. I choose B) No.
upvoted 0 times
...
Willow
12 days ago
Configuring a mail flow rule sounds like a good start, but I wonder if it's really the most secure solution in the long run. Maybe we should explore Azure Information Protection or other encryption options as well.
upvoted 0 times
...
Patrick
14 days ago
This solution looks promising, but I'm not sure if it's the best approach. Shouldn't we also consider implementing Azure Key Vault to securely store and manage the storage account keys?
upvoted 0 times
Julieta
4 days ago
User 1: A) Yes
upvoted 0 times
...
...
Krissy
15 days ago
I think the solution is good, so I'll go with A) Yes.
upvoted 0 times
...

Save Cancel