350-201 exam dumps

350-201 practice question 97 of 289

Cybersecurity Professional - Performing Cybersecurity Using Cisco Security Technologies. Professional level, Cisco. Free question with the correct answer and a full explanation.

350-201 Question 97

Select 3

A financial organization is implementing a data loss prevention (DLP) strategy to safeguard sensitive customer information. The organization wants to monitor and prevent unauthorized sharing of sensitive data across email, ensure encryption of stored information on databases, and track access to sensitive data being processed in real-time by employees. Which DLP considerations should the organization prioritize for effective protection?

  1. A

    Monitor data in motion to prevent unauthorized sharing via email.

  2. B

    Encrypt data at rest stored in databases to ensure confidentiality.

  3. C

    Track data in use to monitor employee activities on sensitive files.

  4. D

    Focus solely on protecting data at rest as it is the most vulnerable.

  5. E

    Disregard monitoring of data in motion if encryption is enabled.

Show answer and explanation

Correct answers: A, B, C

Explanation

To implement an effective DLP strategy, the organization must address all aspects of data security: data in motion, data in use, and data at rest. Monitoring data in motion prevents unauthorized sharing, encrypting data at rest ensures confidentiality, and tracking data in use helps prevent misuse during real-time processing. Neglecting any of these aspects would leave significant gaps in the DLP strategy.

  • A. Correct.

    Monitoring data in motion ensures that sensitive information shared through email or other communication channels is detected and controlled, reducing the risk of data leakage.

  • B. Correct.

    Encrypting data at rest stored in databases protects sensitive information from unauthorized access, even if the storage medium is compromised.

  • C. Correct.

    Tracking data in use allows the organization to monitor and prevent unauthorized actions on sensitive data by employees or applications while the data is being processed.

  • D. Incorrect.

    Focusing solely on data at rest overlooks risks to data in motion and data in use, leaving major vulnerabilities unaddressed.

  • E. Incorrect.

    Disregarding monitoring of data in motion, even with encryption, can lead to missed opportunities to detect misuse or unauthorized sharing of sensitive data.

Timed practice exam

Take a 350-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam