Which of the following would be used to detect an employee who is emailing a customer list to a personal account before leaving the company?
DLP
Data Loss Prevention (DLP) solutions are designed specifically to detect and prevent sensitive data from being transmitted outside an organization, such as emailing a customer list to a personal account. DLP monitors data in motion, ensuring that employee actions comply with data protection policies and preventing unauthorized data exfiltration.
DLP solutions effectively monitor and control data transfers, particularly sensitive information, ensuring compliance with data protection policies. By flagging or blocking attempts to send customer lists to personal accounts, DLP systems play a crucial role in preventing data breaches and protecting organizational assets.
File Integrity Monitoring (FIM) focuses on tracking changes to files and directories to detect unauthorized alterations or access. While FIM can alert on changes to files, it does not monitor data in transit or assess the context of data transfers, making it ineffective for detecting email transmissions of sensitive information.
Intrusion Detection Systems (IDS) are employed to monitor network traffic for suspicious activity or policy violations. However, they do not specifically target data loss scenarios and may not effectively identify the content of emails or their attachments, thus falling short in detecting unauthorized data transfers like emailing a customer list.
Endpoint Detection and Response (EDR) solutions focus on detecting and responding to threats on endpoints, such as malware or unauthorized access. While EDR can provide insights into endpoint activity, it does not specialize in monitoring and controlling sensitive data transmission, which is essential for detecting email-related data breaches.
Detecting unauthorized data transfers, such as sending a customer list to a personal email account, requires a specialized solution like DLP. DLP's ability to monitor data in transit and enforce data protection policies makes it the ideal choice for preventing data exfiltration, while other technologies like FIM, IDS, and EDR serve different purposes and do not adequately address this specific concern.
Related Questions
View allA company hired a security consultant to suggest a device that will pr...
Which of the following outlines the configuration, maintenance, and se...
The help desk receives multiple calls indicating that machines are run...
Which of the following is used to calculate the impact to an organizat...
An unexpected and out-of-character email message from a Chief Executiv...
Related Quizzes
View allCompTIA A Plus Certification Exam
CompTIA A Plus Exam Questions
CompTIA A Plus 1001 Exams Practice
CompTIA A Plus Practice Exam
CompTIA CySA+ Cybersecurity Analyst Certification all in One Exam Guide
CompTIA Network Plus Certification Exam Quiz
CompTIA Security Plus Exam Answers
Free CompTIA Security Plus Practice Test
CompTIA Security Plus Simulation Questions
CompTIA Security Plus Example Questions
- ✓ 500+ Practice Questions
- ✓ Detailed Explanations
- ✓ Progress Analytics
- ✓ Exam Simulations