ExamGecko
Question list
Search
Search

Related questions











Question 741 - CISA discussion

Report
Export

During an organization's implementation of a data loss prevention (DLP) solution, which of the following activities should be completed FIRST?

A.
Configuring reports
Answers
A.
Configuring reports
B.
Configuring rule sets
Answers
B.
Configuring rule sets
C.
Enabling detection points
Answers
C.
Enabling detection points
D.
Establishing exceptions workflow
Answers
D.
Establishing exceptions workflow
Suggested answer: B

Explanation:

Configuring rule sets is the first activity that should be completed during the implementation of a DLP solution, because rule sets define the criteria and actions for identifying, monitoring, and preventing data loss incidents12.Rule sets are based on the organization's data classification, policies, and requirements, and they help to ensure that the DLP solution is aligned with the business objectives and risk appetite34.Configuring rule sets before enabling detection points, establishing exceptions workflow, or configuring reports helps to avoid false positives, false negatives, or unnecessary alerts5.

Reference

1: 3.13: Deploy a Data Loss Prevention Solution - Read the Docs

2: Plan and implement data loss prevention (DLP) [Guided] - NICCS

3: CONTINUOUS DIAGNOSTICS AND MITIGATION PROGRAM DATA PROTECTION ... - CISA

4: Continuous Diagnostics and Mitigation Program Technical ... - CISA

5: Data Loss Prevention Best Practices - ISACA Journal

asked 18/09/2024
Euwing Mendoza
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first