nerdexam
CompTIA

CAS-003 · Question #648

The Chief Executive Officer (CEO) of a fast-growing company no longer knows all the employees and is concerned about the company's intellectual property being stolen by an employee. Employees are…

The correct answer is C. Implement DLP to monitor data transfer between employee accounts and external parties and. Data Loss Prevention (DLP) directly addresses the CEO's concern about intellectual property being stolen by monitoring and controlling data transfers from employee accounts to external parties. Given the environment - remote workers, flexible hours, and poorly defined roles…

Risk Management

Question

The Chief Executive Officer (CEO) of a fast-growing company no longer knows all the employees and is concerned about the company's intellectual property being stolen by an employee. Employees are allowed to work remotely with flexible hours, creating unpredictable schedules. Roles are poorly defined due to frequent shifting needs across the company. Which of the following new initiatives by the information security team would BEST secure the company and mitigate the CEO's concerns?

Options

  • ABegin simulated phishing campaigns for employees and follow up with additional security
  • BSeed company fileshares and servers with text documents containing fake passwords and then
  • CImplement DLP to monitor data transfer between employee accounts and external parties and
  • DReport data from a user-behavior monitoring tool and assign security analysts to review it daily

How the community answered

(23 responses)
  • A
    4% (1)
  • B
    17% (4)
  • C
    74% (17)
  • D
    4% (1)

Explanation

Data Loss Prevention (DLP) directly addresses the CEO's concern about intellectual property being stolen by monitoring and controlling data transfers from employee accounts to external parties. Given the environment - remote workers, flexible hours, and poorly defined roles - traditional perimeter controls are insufficient. DLP operates at the data level, inspecting content being transferred regardless of when or where the employee is working. It can detect and block exfiltration of sensitive IP via email, cloud storage, USB, or other channels. Option A (phishing simulations) addresses inbound threats, not insider data exfiltration. Option B (honeypot documents) is a detection technique but not a proactive prevention control. Option D (user-behavior monitoring) generates data but requires analyst review and does not directly prevent data transfers.

Topics

#insider threat#DLP#IP protection#remote workforce

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice