300-720 · Question #86
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA. Which outgoing mail policy feature should be configured to catch this content before it leaves the network?
The correct answer is C. data loss prevention. Data Loss Prevention (DLP) is the ESA feature specifically designed to detect and block sensitive data - such as credit card numbers (governed by PCI-DSS) - from leaving the organization via email. DLP uses predefined and custom policies to inspect message content and…
Question
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA. Which outgoing mail policy feature should be configured to catch this content before it leaves the network?
Options
- Afile reputation filtering
- Boutbreak filtering
- Cdata loss prevention
- Dfile analysis
How the community answered
(64 responses)- A3% (2)
- B3% (2)
- C92% (59)
- D2% (1)
Explanation
Data Loss Prevention (DLP) is the ESA feature specifically designed to detect and block sensitive data - such as credit card numbers (governed by PCI-DSS) - from leaving the organization via email. DLP uses predefined and custom policies to inspect message content and attachments (including spreadsheets) for patterns matching sensitive data types. File reputation filtering (A) checks whether a file is known malware, not whether it contains sensitive data. Outbreak filtering (B) protects against emerging malware and phishing campaigns, not data exfiltration. File analysis (D) performs dynamic sandbox analysis of suspicious files for malware behavior, not content-based data inspection.
Topics
Community Discussion
No community discussion yet for this question.