Exam Code:SC-400

Exam Name:Administering Information Protection and Compliance in Microsoft 365

Q&A:294 Q&As

Updated: 02-21-2025


SC-400: Microsoft Information Protection Administrator

As an information protection and compliance administrator, you are responsible for administering risk and compliance controls in the Microsoft Purview compliance portal for Microsoft 365.
In this role, you are responsible for translating an organization's risk and compliance requirements into technical implementation. This includes implementing and managing solutions for content classification, data loss prevention (DLP), information protection, data lifecycle management, records management, privacy, risk, and compliance.
As part of your role, you collaborate with governance, data, and security teams to develop policies for risk reduction and compliance. You support workload administrators, application owners, HR departments, and legal stakeholders in implementing technology solutions that align with these policies and controls.
You should have experience with Microsoft 365 services, including:
Microsoft 365 Apps
Microsoft Exchange Online
Microsoft SharePoint
Microsoft OneDrive
Microsoft Teams
You should also be familiar with PowerShell.
The English language version of this exam was updated on August 22, 2023, with details available in the study guide. Localized versions may be updated approximately eight weeks later, but there may be exceptions. The passing score is 700.
The SC-400 exam focuses on administering information protection and compliance in Microsoft 365. It is available in multiple languages and does not have a retirement date.
This exam assesses your proficiency in implementing information protection, DLP, data lifecycle and records management, monitoring and investigating data and activities using Microsoft Purview, and managing insider and privacy risk in Microsoft 365. The exam fee is $165 USD.

Skills measured

The English language version of the exam was updated on August 22, 2023. Refer to the study guide for information on the skills measured and the latest changes.
Implement information protection (25–30%)
Implement DLP (15–20%)
Implement data lifecycle and records management (10–15%)
Monitor and investigate data and activities by using Microsoft Purview (15–20%)
Manage insider and privacy risk in Microsoft 365 (15–20%)

