Home > Glossary > Microsoft 365 Administrator > Microsoft Purview Data Classification

📖 What is Microsoft Purview Data Classification?

Microsoft Purview Data Classification is the process of identifying and labeling data based on its sensitivity or type. It uses Sensitive Information Types (SITs) and trainable classifiers to automatically detect patterns, such as credit card numbers or medical records, across the M365 ecosystem.

🥋 Sensei Says:

"Understand the difference between a 'Sensitive Information Type' (pattern-based) and a 'Trainable Classifier' (machine learning-based) for the exam."

📚 Certification: Microsoft 365 Administrator (MS-102)

🔑 What are the Key Concepts of Microsoft Purview Data Classification?

  • Sensitive Information Types (SITs) use regular expressions and checksums to identify structured data patterns like credit card numbers or Social Security numbers.
  • Trainable Classifiers leverage machine learning to identify unstructured data based on context, such as legal contracts, resumes, or harassment-related content.
  • Auto-labeling policies allow administrators to automatically apply sensitivity labels to content that matches specific classification criteria across M365 services.
  • Confidence levels determine the certainty of a match, allowing admins to reduce false positives by requiring higher thresholds for automatic classification.
  • Data classification serves as the foundation for Data Loss Prevention (DLP) policies, enabling the system to block or encrypt sensitive information.

🎯 How does Microsoft Purview Data Classification appear on the MS-102 Exam?

You may be asked to determine whether a Sensitive Information Type or a Trainable Classifier is appropriate for detecting unstructured documents, such as internal project proposals.

A scenario might describe a requirement to automatically protect files containing PII across SharePoint and OneDrive; you must identify the correct auto-labeling configuration.

Expect questions about adjusting confidence levels to resolve a situation where too many non-sensitive documents are being incorrectly flagged as sensitive.

❓ Frequently Asked Questions

When should I use a Trainable Classifier instead of a Sensitive Information Type?

Use SITs for structured data with predictable patterns, such as government IDs. Use Trainable Classifiers for unstructured data where the meaning depends on the overall context of the document.


How does the confidence level impact the classification process?

Confidence levels define how strongly a pattern must match to be flagged. Higher levels reduce false positives but may miss some valid sensitive data if the pattern is imperfect.


Does classification automatically encrypt the data?

No, classification identifies the data. Encryption occurs only if the classification triggers a Sensitivity Label that has encryption settings configured within its specific policy.

Related Terms from Microsoft 365 Administrator

📝 Related Study Guides

Comparison 8 min read

CISSP vs CISM: Which Certification Should You Pursue in 2026?

Choose CISSP if you want broad technical security expertise across eight domains, including cryptography, network security, and software development. Choose CISM if you're focused on information security management, governance, and risk management from a leadership perspective. CISSP is ideal for hands-on security architects, while CISM is designed for security managers and directors.

Career Guide 9 min read

The IT Certification Roadmap: Where to Start in 2026

Start your IT certification journey in 2026 with CompTIA A+ for general IT foundations, then branch into networking (Network+), cybersecurity (Security+), or cloud computing (AWS Cloud Practitioner or Azure Fundamentals) based on your career goals. Each path leads to advanced certifications like CISSP, AWS Solutions Architect, or CISM within 2-3 years of focused progression.

Comparison 10 min read

CISSP vs CISM: Which Certification Should You Pursue in 2026?

The CISSP is a broad, technical-to-managerial certification focusing on security operations and architecture across eight domains. In contrast, CISM is a specialized management certification centered on governance, risk management, and program development. Choose CISSP for comprehensive security expertise and CISM if you are pivoting specifically into security leadership and governance roles.

🧠

Test Your Knowledge

Think you understand Microsoft Purview Data Classification? Put it to the test with our practice exam.

Try 10 Free Questions

⭐ 1,000 expert-curated questions available with Premium

Upgrade Premium