New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft DP-300 Exam - Topic 1 Question 23 Discussion

Actual exam question for Microsoft's DP-300 exam
Question #: 23
Topic #: 1
[All DP-300 Questions]

You have a new Azure SQL database. The database contains a column that stores confidential information.

You need to track each time values from the column are returned in a query. The tracking information must be

stored for 365 days from the date the query was executed.

Which three actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer: A, C, D

C: Advanced Data Security (ADS) is a unified package for advanced SQL security capabilities. ADS is available for Azure SQL Database, Azure SQL Managed Instance, and Azure Synapse Analytics. It includes functionality for discovering and classifying sensitive data

D: You can apply sensitivity-classification labels persistently to columns by using new metadata attributes that have been added to the SQL Server database engine. This metadata can then be used for advanced, sensitivity-based auditing and protection scenarios.

A: An important aspect of the information-protection paradigm is the ability to monitor access to sensitive data. Azure SQL Auditing has been enhanced to include a new field in the audit log called data_sensitivity_information. This field logs the sensitivity classifications (labels) of the data that was returned by a query. Here's an example:


https://docs.microsoft.com/en-us/azure/azure-sql/database/data-discovery-and-classification-overview

Contribute your Thoughts:

0/2000 characters
Berry
4 months ago
Surprised that we need to track for a whole year!
upvoted 0 times
...
Lajuana
4 months ago
I agree with A, but not sure about E.
upvoted 0 times
...
Golda
4 months ago
Wait, is B really necessary? Seems irrelevant.
upvoted 0 times
...
Lewis
5 months ago
I think C is also a good choice.
upvoted 0 times
...
Amber
5 months ago
Definitely A and D for tracking confidential info!
upvoted 0 times
...
Ronna
5 months ago
I feel like turning on Azure Advanced Threat Protection could help with security, but I'm not convinced it directly relates to tracking query results. I need to think more about that one.
upvoted 0 times
...
Deeanna
5 months ago
I'm not entirely sure, but I remember something about sensitivity labels being important for protecting confidential data. Maybe applying a Highly Confidential label could be part of the solution?
upvoted 0 times
...
Nelida
5 months ago
I think turning on auditing and writing logs to an Azure Storage account is definitely one of the steps we need to take. It seems like the most straightforward way to track queries.
upvoted 0 times
...
Gaston
5 months ago
I practiced a similar question where we had to enable security features, but I can't recall if Advanced Data Security is necessary for tracking queries. It might be worth considering.
upvoted 0 times
...
Wenona
5 months ago
This seems like a tricky one. I'll need to think through the different options carefully to make sure I don't miss anything.
upvoted 0 times
...
Monte
5 months ago
Hmm, I'm a bit unsure about this one. The options cover a range of potential uses for climate-controlled storage, so I'll need to think carefully about which one is the most accurate.
upvoted 0 times
...

Save Cancel