nerdexam
CompTIA

CAS-003 · Question #790

The Chief information Officer (CIO) asks the system administrator to improve email security at the company based on the following requirements: Transaction being requested by unauthorized…

The correct answer is A. Data loss prevention. The CIO's requirements collectively point to two major concerns: inbound threats (malware and ransomware) and outbound threats (exfiltration of sensitive financial data and unauthorized transactions). The cloud email solution already covers inbound malware through anti-malware…

Technical Integration of Enterprise Security

Question

The Chief information Officer (CIO) asks the system administrator to improve email security at the company based on the following requirements:

  • Transaction being requested by unauthorized individuals.
  • Complete discretion regarding client names, account numbers, and investment information.
  • Malicious attackers using email to malware and ransomeware.
  • Exfiltration of sensitive company information.

The cloud-based email solution will provide anti-malware reputation-based scanning, signature- based scanning, and sandboxing. Which of the following is the BEST option to resolve the boar's concerns for this email migration?

Options

  • AData loss prevention
  • BEndpoint detection response
  • CSSL VPN
  • DApplication whitelisting

How the community answered

(36 responses)
  • A
    78% (28)
  • B
    6% (2)
  • C
    3% (1)
  • D
    14% (5)

Explanation

The CIO's requirements collectively point to two major concerns: inbound threats (malware and ransomware) and outbound threats (exfiltration of sensitive financial data and unauthorized transactions). The cloud email solution already covers inbound malware through anti-malware scanning, signature-based scanning, and sandboxing. The remaining unaddressed requirement is preventing sensitive information - client names, account numbers, investment data - from leaving the organization via email. Data Loss Prevention (DLP) inspects outbound email content for sensitive patterns and can block or quarantine messages that violate policy. EDR addresses endpoint threats, SSL VPN handles secure remote access, and application whitelisting controls which programs run - none of these directly prevent email-based data exfiltration.

Topics

#DLP#cloud email security#sandboxing#data exfiltration prevention

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice