ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 507 - CAS-004 discussion

Report
Export

A security engineer is implementing DLP. Which of the following should the security engineer include in the overall DLP strategy?

A.
Tokenization
Answers
A.
Tokenization
B.
Network traffic analysis
Answers
B.
Network traffic analysis
C.
Data classification
Answers
C.
Data classification
D.
Multifactor authentication
Answers
D.
Multifactor authentication
Suggested answer: C

Explanation:

For a successful Data Loss Prevention (DLP) strategy, the first step is data classification. Data classification involves identifying and categorizing data based on its sensitivity and importance, which allows the DLP system to apply appropriate security controls to protect critical or sensitive information. Without proper data classification, it is difficult to implement effective DLP policies. While tokenization, network traffic analysis, and multifactor authentication can contribute to data security, classification is fundamental to building a targeted and effective DLP strategy. CASP+ highlights the importance of identifying and categorizing data as a key part of securing sensitive information and preventing data breaches.

CASP+ CAS-004 Exam Objectives: Domain 3.0 -- Enterprise Security Architecture (Data Loss Prevention and Data Classification)

CompTIA CASP+ Study Guide: DLP Strategies and Data Classification

asked 02/10/2024
Mattie Hendricks
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first