SC-401 Practice Question 3654
Exam: SC-401
Domain: Manage risks, alerts, and activities
Difficulty: easy
You need to ensure that an external compliance auditor can search audit logs but cannot delete retention policies or modify sensitivity labels. Which role group follows least privilege?
Answer Options
A
Compliance Reader or View-Only Audit Logs role group
B
Global Administrator role group
C
Information Protection Administrator
D
User Administrator
Correct Answer
A: Compliance Reader or View-Only Audit Logs role group
Explanation
The Compliance Reader or View-Only Audit Logs role group grants read-only visibility into audit logs and compliance dashboards without modification rights.