A security team wants to distinguish two Microsoft Purview capabilities before a Copilot rollout: one that continuously discovers and reports data security risks arising from generative AI activity such as prompts and responses, and one that shows a historical record of activities performed on labelled content. Which pairing correctly matches each need?
- ACompliance Manager discovers AI-related data risks, and Content search shows the historical activities performed on labelled content.
- BData Security Posture Management for AI discovers AI-related data risks, and Activity Explorer shows the historical activities performed on labelled content. Correct
- CActivity Explorer discovers AI-related data risks, and Data Security Posture Management for AI shows the historical activities performed on labelled content.
- DData Loss Prevention discovers AI-related data risks, and Compliance Manager shows the historical activities performed on labelled content.
Why A is wrong: Compliance Manager scores control assessments rather than discovering AI risk, and Content search finds items rather than reporting activity history, so both halves are mismatched.
Why B is correct: DSPM for AI is purpose-built to surface risks from generative AI usage, while Activity Explorer reports past activities on classified content, so this matches each capability to its intended job.
Why C is wrong: This swaps the two roles; DSPM for AI is the discovery tool for AI risk and Activity Explorer is the activity-history view, so reversing them is wrong.
Why D is wrong: DLP prevents egress of sensitive data rather than discovering AI risk, and Compliance Manager tracks assessments, not activity history, so neither element fits the stated needs.