ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 269 - CAS-004 discussion

Report
Export

The Chief Security Officer (CSO) requested the security team implement technical controls that meet the following requirements:

* Monitors traffic to and from both local NAS and cloud-based file repositories

* Prevents on-site staff who are accessing sensitive customer Pll documents on file repositories from accidentally or deliberately sharing sensitive documents on personal Saa$S solutions

* Uses document attributes to reduce false positives

* Is agentless and not installed on staff desktops or laptops

Which of the following when installed and configured would BEST meet the CSO's requirements? (Select TWO).

A.
DLP
Answers
A.
DLP
B.
NGFW
Answers
B.
NGFW
C.
UTM
Answers
C.
UTM
D.
UEBA
Answers
D.
UEBA
E.
CASB
Answers
E.
CASB
F.
HIPS
Answers
F.
HIPS
Suggested answer: A, E

Explanation:

DLP, or data loss prevention, and CASB, or cloud access security broker, are the solutions that when installed and configured would best meet the CSO's requirements. DLP is a technology that monitors and prevents unauthorized or accidental data leakage or exfiltration from an organization's network or devices. DLP can use document attributes, such as metadata, keywords, or fingerprints, to identify and classify sensitive data and enforce policies on how they can be accessed, transferred, or shared. CASB is a technology that acts as a proxy or intermediary between an organization's cloud services and its users. CASB can provide visibility, compliance, threat protection, and data security for cloud-based applications and data. CASB can also prevent on-site staff from accessing personal SaaS solutions that are not authorized by the organization.

asked 02/10/2024
Mohammedsaleh Ibrahim
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first