exam questions

Exam PL-600 All Questions

View all questions & answers for the PL-600 exam

Exam PL-600 topic 2 question 72 discussion

Actual exam question from Microsoft's PL-600
Question #: 72
Topic #: 2
[All PL-600 Questions]

DRAG DROP
-

A company plans to implement Microsoft Power Platform to provide data controls. The current implementation is complex and spans multiple environments.

The IT team will implement DLP policies. Members of the team have different security roles applied to their user accounts, depending on their specified level of access.

You need to identify which policies the IT team can apply for the different security roles.

Which policy type should you recommend for each security role? To answer, move the appropriate policy types to the correct security roles. You may use each policy type once, more than once, or not at all. You may need to move the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Lenny001
Highly Voted 5 months, 2 weeks ago
1: Environment 2: Tenant 3: Tenant 4: Tenant https://learn.microsoft.com/en-us/power-platform/admin/use-service-admin-role-manage-tenant
upvoted 6 times
Tootru2bReal
3 months, 3 weeks ago
Just to help stir people in the correct direction. The correct answers: 1. Environment 2. Tenant 3. Tenant 4. Environment (this is basically the service admin role). Tenant admins CANNOT be locked out. Why? Their role is higher then a platform's role. SA and DA are platform roles. Also, read the details in the link: "The Dynamics 365 admin can: Sign in to and manage multiple environments. If an environment uses a security group, a service admin would need to be added to the security group in order to manage that environment. Not assigning to an in place "security group essentially locks these admins out" of any admin management." DAs are NOT tenant admins and neither are SAs.
upvoted 3 times
Tootru2bReal
3 months, 3 weeks ago
And yes, Power Platform Admin is higher than the platform, hence, it is assigned through Azure AD (Entra ID) as well as the Global Admin. The other two (SAs & DAs aka service admin now) assigned within the Power Platform environment. I hope this helps.
upvoted 2 times
...
...
WASSIM2020
3 months, 4 weeks ago
system administartor is the highest-privilege role, if dynamics 365 administartor can create dlp for tenant, that s mean system administrator ca do it, Answer form ChatGPT: System administartor : Tenant Power Platfoorm administrator : Tenant Global administrator : Tenant Dynamics 365 administartor Environment
upvoted 1 times
WASSIM2020
3 months, 2 weeks ago
Sorry System administartor : Environment Power Platfoorm administrator : Tenant Global administrator : Tenant Dynamics 365 administartor Environment
upvoted 2 times
...
...
MercuryOne
5 months ago
Correct answer from Lenny001. You can also find information here: https://learn.microsoft.com/en-us/power-platform/admin/prevent-data-loss
upvoted 1 times
...
...
loftuscheek
Most Recent 1 month, 2 weeks ago
env ten ten env
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago