212-82 · Question #156
FinTech Corp, a financial services software provider, handles millions of transactions daily. To address recent breaches In other organizations. It Is reevaluating Its data security controls. It…
The correct answer is C. Adopting anomaly-based intrusion detection systems. Anomaly-based intrusion detection systems provide real-time protection by identifying unusual patterns in transactional data, aiding compliance and security without significant performance impact.
Question
FinTech Corp, a financial services software provider, handles millions of transactions daily. To address recent breaches In other organizations. It Is reevaluating Its data security controls. It specifically needs a control that will not only provide real-time protection against threats but also assist in achieving compliance with global financial regulations. The company's primary goal is to safeguard sensitive transactional data without impeding system performance. Which of the following controls would be the most suitable for FinTech Corp's objectives?
Options
- ASwitching to disk-level encryption for all transactional databases
- BImplementing DLP (Data Loss Prevention) systems
- CAdopting anomaly-based intrusion detection systems
- DEnforcing Two-Factor Authentication for all database access
How the community answered
(66 responses)- A3% (2)
- B12% (8)
- C80% (53)
- D5% (3)
Why each option
Anomaly-based intrusion detection systems provide real-time protection by identifying unusual patterns in transactional data, aiding compliance and security without significant performance impact.
Disk-level encryption protects data at rest but does not offer real-time protection against threats to data in use or in transit, nor does it specifically address compliance with global financial regulations for active monitoring of transactional integrity.
Data Loss Prevention (DLP) systems primarily focus on preventing sensitive data from leaving the organization, not specifically on real-time protection against threats within the system or identifying unusual transaction patterns.
Anomaly-based Intrusion Detection Systems (IDS) excel at real-time threat detection by continuously monitoring network or system activity for deviations from established baselines, which can indicate novel or subtle attacks on transactional data. This approach offers continuous protection, can detect previously unknown threats, and contributes to compliance by providing audit trails of suspicious activities, all while typically operating passively to minimize performance impact.
Enforcing Two-Factor Authentication (2FA) for database access enhances authentication security but doesn't provide real-time detection of threats or anomalous transactions once an authenticated session is established, which is crucial for safeguarding active transactional data.
Concept tested: Intrusion Detection Systems (Anomaly-based)
Source: https://nvlpubs.nist.gov/nistpubs/legacy/sp/nistspecialpublication800-94.pdf
Topics
Community Discussion
No community discussion yet for this question.