Question 1 of 30
Implementation of a Data Loss Prevention (DLP) solution is being considered by a financial services firm. The primary objective is to protect sensitive customer financial data from unauthorized exfiltration while ensuring compliance with financial regulations. Which of the following approaches represents the most effective and professionally responsible strategy for implementing this DLP solution?
Conduct a thorough data discovery and classification exercise to identify all sensitive customer financial data, develop granular DLP policies based on regulatory requirements and business needs, and then deploy technical controls in a phased manner, starting with monitoring before enabling enforcement.
Immediately deploy a broad DLP policy across all endpoints and network traffic that flags any transmission of financial figures, without prior classification or understanding of specific data types.
Implement DLP only after a recent incident involving the potential exposure of customer data, focusing on blocking the specific type of data transmission that was compromised.
Prioritize the installation of DLP software on all devices and servers, assuming that the technology alone will prevent all data loss, and defer user training on data handling policies until later.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free