User1 という名前のユーザーを含む Microsoft J65 E5 サブスクリプションがあります。 すべてのユーザーに Microsoft 365 Copilot ライセンスが割り当てられます。 Microsoft Purview Data Security Posture Management for Al (DSPM for Al) を展開します。 ユーザー1がAIインタラクションイベントのプロンプトと応答を分析できるようにする必要があります。このソリューションは、最小権限の原則に従う必要があります。 User1 をどの 2 つのロール グループに追加する必要がありますか? それぞれの正解はソリューションの一部を示します。 注意: 正しい選択ごとに 1 ポイントが付与されます。
正解:A,E
The requirement is that User1 must be able to analyze prompts and responses for AI interaction events in Microsoft Purview DSPM for AI, while following the principle of least privilege. Information Protection Analysts role group: Members can review and analyze sensitive data activity, including AI interaction events collected by Purview DSPM. This role is specifically intended for analysts monitoring sensitive information and is therefore necessary for User1. Content Explorer List Viewer role group: Members can see metadata about items with sensitive information, such as file names, locations, sensitivity labels, and policy matches, without accessing the actual file content. This provides the required visibility for AI-related data classification and interaction analysis while adhering to the least privilege principle. Roles not required: Content Explorer Content Viewer would give the ability to view the actual content of files, which is more access than needed. Security Reader is intended for reviewing alerts and incidents but not for analyzing AI prompts and responses. Insider Risk Management Investigators focus on insider risk investigations, not AI event analysis. References: Microsoft Learn: Microsoft Purview compliance portal permissions Microsoft Learn: Use Content Explorer in data classification