nerdexam
Cisco

300-720 · Question #86

Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA. Which outgoing mail policy feature should be configured to catch this content before it leaves the network?

The correct answer is C. data loss prevention. Data Loss Prevention (DLP) is the ESA feature specifically designed to detect and block sensitive data - such as credit card numbers (governed by PCI-DSS) - from leaving the organization via email. DLP uses predefined and custom policies to inspect message content and…

Cisco ESA Data Loss Prevention

Question

Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA. Which outgoing mail policy feature should be configured to catch this content before it leaves the network?

Options

  • Afile reputation filtering
  • Boutbreak filtering
  • Cdata loss prevention
  • Dfile analysis

How the community answered

(64 responses)
  • A
    3% (2)
  • B
    3% (2)
  • C
    92% (59)
  • D
    2% (1)

Explanation

Data Loss Prevention (DLP) is the ESA feature specifically designed to detect and block sensitive data - such as credit card numbers (governed by PCI-DSS) - from leaving the organization via email. DLP uses predefined and custom policies to inspect message content and attachments (including spreadsheets) for patterns matching sensitive data types. File reputation filtering (A) checks whether a file is known malware, not whether it contains sensitive data. Outbreak filtering (B) protects against emerging malware and phishing campaigns, not data exfiltration. File analysis (D) performs dynamic sandbox analysis of suspicious files for malware behavior, not content-based data inspection.

Topics

#Data Loss Prevention#Cisco ESA#Outgoing Mail Policy#Sensitive Data Protection

Community Discussion

No community discussion yet for this question.

Full 300-720 Practice