What's changed: Created MS-102 Chapter 5 (domain: Manage compliance by using Microsoft Purview). Information protection (sensitive information types keyword/regex, sensitivity labels classify/encrypt/marking and label policies, Content/Activity explorer), data lifecycle management (retention labels item-level, retention label policies publish/auto-apply, retention policies location-level bulk retain/delete), and DLP (Exchange/SharePoint/OneDrive/Teams workload DLP, policy tips, Endpoint DLP device control, DLP alerts/events/reports). This completes the MS-102 textbook: all 5 chapters / 13 sections.
5.1Information protection
Understand defining sensitive data with sensitive information types, classifying/encrypting/marking with sensitivity labels and label policies, and visibility via Content explorer and Activity explorer.
Information protection flows: "define what is sensitive"→"classify and apply protection"→"visualize the state". Each is a separate feature.
5.1.1Sensitive information types
Sensitive information types (SITs) define patterns of sensitive data like credit card or national ID numbers, detecting via keywords, keyword lists, regular expressions, checksums, and proximity. A SIT is a "detection rule that decides whether something is sensitive"—not protection itself (used as conditions for DLP and auto-labeling).
5.1.2Sensitivity labels and policies
Sensitivity labels classify content (e.g., Confidential, Highly Confidential) and apply protection—encryption, content marking (header/footer/watermark), access restrictions. Publish labels to users/locations via a label policy, setting default/mandatory labels; auto-labeling can use SITs as conditions. Labels "classify and protect"—distinct from SITs (detection definitions).
Continue reading — free sign-up
You're reading the free preview. Sign up free to read this section in full, plus every chapter (including 4+) and all questions.

