ExamGecko
Question list
Search
Search

Question 16 - CISM discussion

Report
Export

The MAIN benefit of implementing a data loss prevention (DLP) solution is to:

A.
enhance the organization's antivirus controls.
Answers
A.
enhance the organization's antivirus controls.
B.
eliminate the risk of data loss.
Answers
B.
eliminate the risk of data loss.
C.
complement the organization's detective controls.
Answers
C.
complement the organization's detective controls.
D.
reduce the need for a security awareness program.
Answers
D.
reduce the need for a security awareness program.
Suggested answer: C

Explanation:

A data loss prevention (DLP) solution is a type of detective control that monitors and prevents unauthorized transmission or leakage of sensitive data from the organization. A DLP solution can enhance the organization's antivirus controls by detecting and blocking malicious code that attempts to exfiltrate data, but this is not its main benefit. A DLP solution cannot eliminate the risk of data loss, as there may be other sources of data loss that are not covered by the DLP solution, such as physical theft, accidental deletion, or natural disasters. A DLP solution also does not reduce the need for a security awareness program, as human factors are often the root cause of data loss incidents. A security awareness program can educate and motivate employees to follow security policies and best practices, and to report any suspicious or anomalous activities.Reference=

ISACA, CISM Review Manual, 16th Edition, 2020, page 79.

ISACA, CISM Review Questions, Answers & Explanations Database, 12th Edition, 2020, question ID 1003.

asked 01/10/2024
DANIEL DOYEN
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first