ExamGecko
Question list
Search
Search

Related questions











Question 936 - CISA discussion

Report
Export

An organization is implementing a new data loss prevention (DLP) tool. Which of the following will BEST enable the organization to reduce false positive alerts?

A.
Using the default policy and tool rule sets
Answers
A.
Using the default policy and tool rule sets
B.
Configuring a limited set of rules
Answers
B.
Configuring a limited set of rules
C.
Deploying the tool in monitor mode
Answers
C.
Deploying the tool in monitor mode
D.
Reducing the number of detection points
Answers
D.
Reducing the number of detection points
Suggested answer: B

Explanation:

To reduce false positive alerts, it is essential to carefully configure a limited set of rules tailored to the organization's specific data loss prevention needs. This ensures that the DLP tool accurately identifies true positives and reduces the occurrence of false alarms.

Reference

ISACA CISA Review Manual 27th Edition, Page 304-305 (DLP Tool Configuration)

asked 18/09/2024
Bob Tole
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first