ExamGecko
Question list
Search
Search

Related questions











Question 693 - CISA discussion

Report
Export

Which of the following is an IS auditor's BEST recommendation for mitigating risk associated with inadvertent disclosure of sensitive information by employees?

A.
Intrusion prevention system (IPS) and firewalls
Answers
A.
Intrusion prevention system (IPS) and firewalls
B.
Data loss prevention (DLP) technologies
Answers
B.
Data loss prevention (DLP) technologies
C.
Cryptographic protection
Answers
C.
Cryptographic protection
D.
Email phishing simulation exercises
Answers
D.
Email phishing simulation exercises
Suggested answer: B

Explanation:

DLP technologies are designed to prevent the unauthorized transmission or leakage of sensitive data, such as PII, intellectual property, or financial information, by employees or other insiders. DLP technologies can monitor, detect, and block data in motion, data at rest, and data in use across various channels, such as email, web, cloud, or removable devices. DLP technologies can also help enforce data security policies and compliance requirements.

Reference

ISACA CISA Review Manual, 27th Edition, page 253

The role of disclosures in risk assessment and mitigation

Mitigate Risk Strategy for Information Management

asked 18/09/2024
mostafa badawi
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first