Question 1 of 29
A financial institution is implementing Data Loss Prevention (DLP) policies to protect sensitive customer information. They need to create a policy that identifies and restricts the sharing of personally identifiable information (PII) across various communication channels, including email and cloud storage. The DLP policy must also ensure compliance with regulations such as GDPR and CCPA. Which of the following approaches would best enable the institution to achieve these objectives while minimizing false positives and ensuring user education?
Implement a DLP policy that uses content inspection to identify PII, applies predefined rules for email and cloud sharing, and includes user notifications for policy violations.
Create a DLP policy that solely relies on keyword matching for PII detection without user notifications or educational components.
Develop a DLP policy that blocks all email attachments and cloud uploads without any exceptions or user guidance.
Establish a DLP policy that only monitors data in transit without inspecting data at rest or in use.

Preparing for Microsoft SC-400 Microsoft Information Protection Administrator? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free