nerdexam
Microsoft

SC-200 · Question #170

You have a Microsoft 365 subscription. The subscription uses Microsoft 365 Defender and has data loss prevention (DLP) policies that have aggregated alerts configured. You need to identify the…

The correct answer is A. the Events tab of the alert. In the DLP alert management dashboard of the Microsoft 365 compliance center, the Events tab of an aggregated alert displays the individual policy match events that contributed to the alert, including details about impacted entities such as users, files, and locations. The…

Submitted by fatema_kw· Apr 18, 2026Manage threat mitigation using Microsoft Purview

Question

You have a Microsoft 365 subscription. The subscription uses Microsoft 365 Defender and has data loss prevention (DLP) policies that have aggregated alerts configured. You need to identify the impacted entities in an aggregated alert. What should you review in the DLP alert management dashboard of the Microsoft 365 compliance center?

Options

  • Athe Events tab of the alert
  • Bthe Sensitive Info Types tab of the alert
  • CManagement log
  • Dthe Details tab of the alert

How the community answered

(18 responses)
  • A
    89% (16)
  • C
    6% (1)
  • D
    6% (1)

Explanation

In the DLP alert management dashboard of the Microsoft 365 compliance center, the Events tab of an aggregated alert displays the individual policy match events that contributed to the alert, including details about impacted entities such as users, files, and locations. The Details tab shows high-level alert metadata, the Sensitive Info Types tab shows what sensitive data was detected, and there is no standard 'Management log' view for this purpose.

Topics

#DLP alerts#Microsoft 365 Compliance Center#Aggregated alerts#Impacted entities

Community Discussion

No community discussion yet for this question.

Full SC-200 Practice