nerdexam
CompTIA

CAS-003 · Question #569

A technician is reviewing the following log: Which of the following tools should the organization implement to reduce the highest risk identified in this log?

The correct answer is B. DLP. The correct answer is B - DLP (Data Loss Prevention). Since the actual log image is not visible in this format, the reasoning is based on the answer: DLP tools monitor, detect, and prevent the unauthorized transfer or exfiltration of sensitive data (e.g., PII, financial…

Enterprise Security Operations

Question

A technician is reviewing the following log:

Which of the following tools should the organization implement to reduce the highest risk identified in this log?

Options

  • ANIPS
  • BDLP
  • CNGFW
  • DSIEM

How the community answered

(44 responses)
  • A
    5% (2)
  • B
    70% (31)
  • C
    7% (3)
  • D
    18% (8)

Explanation

The correct answer is B - DLP (Data Loss Prevention). Since the actual log image is not visible in this format, the reasoning is based on the answer: DLP tools monitor, detect, and prevent the unauthorized transfer or exfiltration of sensitive data (e.g., PII, financial records, intellectual property). If the log shows files containing sensitive data being sent to external destinations or copied to removable media, DLP is the appropriate control to reduce that risk. Option A (NIPS) detects and blocks network-based intrusion attempts but does not specifically target data exfiltration. Option C (NGFW) provides application-aware firewall filtering but is not optimized for content inspection and data classification. Option D (SIEM) aggregates and correlates log data for analysis but does not actively prevent data loss.

Topics

#DLP#log analysis#data loss prevention#security tooling

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice