You landed here because SC-401T00 is a replacement for the following:
SC-400T00: Administering Information Protection and Compliance in Microsoft 365

Learning Path: Implement Microsoft Purview Information Protection
Organizations need effective information protection to prevent data exposure, ensure compliance, and maintain security across cloud and on-premises environments. Microsoft Purview enables classification, labeling, and encryption to safeguard sensitive data across Microsoft 365 services, Exchange, and on-premises storage.
Modules
- Protect sensitive data in a digital world
- Classify data for protection and governance
- Review and analyze data classification and protection
- Create and manage sensitive information types
- Create and manage sensitivity labels with Microsoft Purview
- Apply and manage sensitivity labels
- Describe Microsoft 365 encryption
- Deploy message encryption in Microsoft Purview
Lab
- Implement Information Protection
Learning Path: Implement and manage data loss prevention
Organizations must prevent data loss and protect sensitive information across cloud and endpoint environments. Microsoft Purview provides data loss prevention (DLP) policies to detect, restrict, and respond to risky activities involving sensitive data. Learn how to plan and configure DLP policies, track policy effectiveness, and analyze data security risks to improve your organization's protection strategy.
Modules
- Plan and design data loss prevention policies
- Create and manage DLP policies
- Implement Endpoint data loss prevention
- Investigate Microsoft Purview DLP alerts
Lab
- Implement and manage data loss prevention
Learning Path: Implement and manage Microsoft Purview Insider Risk Management
Implement Microsoft Purview Insider Risk Management to detect, investigate, and respond to internal risks while protecting data, ensuring compliance, and maintaining employee trust.
Modules
- Plan and prepare for Insider Risk Management
- Prepare for insider risk management
- Create and manage insider risk policies
- Manage the insider risk management workflow
- Investigate insider risk management activities
- Implement Adaptive Protection in Insider Risk Management
Lab
- Implement and manage Microsoft Purview Insider Risk Management
Learning Path: Protect data in AI environments with Microsoft Purview
AI tools like Microsoft Copilot are changing the way people work, but they also increase the risk of oversharing and accidental data exposure. Microsoft Purview helps organizations apply the right controls to keep sensitive data protected across AI-enabled environments.
Modules
- Discover AI interactions with Microsoft Purview
- Protect sensitive data from AI-related risks
- Govern AI usage with Microsoft Purview
- Assess and mitigate AI risks with Microsoft Purview
Lab
- Protect data in AI environments with Microsoft Purview
Learning Path: Implement and manage retention and recovery in Microsoft Purview
Learn how Microsoft Purview supports data lifecycle management through retention policies and labels. Understand how to configure and apply retention settings that meet organizational requirements for preserving or deleting content across Microsoft 365 services.
Modules
- Understand retention in Microsoft Purview
- Implement and manage retention and recovery in Microsoft Purview
Lab
- Implement and manage retention and recovery in Microsoft Purview
Learning Path: Audit and search activity in Microsoft Purview
Understand how to use Microsoft Purview to log activity and search for content across Microsoft 365 services. Learn how audit logging supports investigations and compliance requirements, and how content search can help locate specific emails, documents, and other items when needed.
Modules
- Search and investigate with Microsoft Purview Audit
- Search for content with Microsoft Purview eDiscovery
Lab
- Audit and search activity in Microsoft Purview
Learning Path: Validate sensitivity, DLP, and retention policies
Verify that the policies you configured, sensitivity labels, DLP, and retention, are working as expected in Microsoft 365 apps. This exercise helps confirm that content is:
Modules
- None
Lab
- Validate sensitivity, DLP, and retention policies
As an Information Security Administrator, you plan and implement information security for sensitive data using Microsoft Purview and related services. You're responsible for mitigating risks by protecting data within Microsoft 365 collaboration environments from internal and external threats, as well as safeguarding data used by AI services. Your role involves implementing information protection, data loss prevention (DLP), retention, and insider risk management. You also manage security alerts and respond to incidents by investigating activities, responding to DLP alerts, and managing insider risk cases. In this role, you collaborate with other roles responsible for governance, data, and security to develop policies that address your organization's information security and risk reduction goals. You work with workload administrators, business application owners, and governance stakeholders to implement technology solutions that support these policies and controls.
- Before attending this course, students must have:
- Foundational knowledge of Microsoft security and compliance technologies.
- Basic knowledge of information protection concepts.
- Understanding of cloud computing concepts.
- Understanding of Microsoft 365 products and services.