nerdexam
(ISC)2

CCSP · Question #60

You are the security manager of a small firm that has just purchased a DLP solution to implement in your cloud-based production environment. What should you not expect the tool to address?

The correct answer is B. Sensitive data captured by screen shots. Data Loss Prevention (DLP) solutions are designed to monitor and prevent sensitive data exfiltration through common communication channels and storage, but they typically do not detect or block data copied via screenshots.

Submitted by satoshi_tk· Apr 18, 2026Cloud Data Security

Question

You are the security manager of a small firm that has just purchased a DLP solution to implement in your cloud-based production environment. What should you not expect the tool to address?

Options

  • ASensitive data sent inadvertently in user emails
  • BSensitive data captured by screen shots
  • CSensitive data moved to external devices
  • DSensitive data in the contents of files sent via FTP

How the community answered

(28 responses)
  • A
    7% (2)
  • B
    75% (21)
  • C
    4% (1)
  • D
    14% (4)

Why each option

Data Loss Prevention (DLP) solutions are designed to monitor and prevent sensitive data exfiltration through common communication channels and storage, but they typically do not detect or block data copied via screenshots.

ASensitive data sent inadvertently in user emails

DLP solutions are specifically designed to monitor and block sensitive data from being sent inadvertently through email, a common vector for data leakage.

BSensitive data captured by screen shotsCorrect

While advanced DLP solutions might integrate with endpoint monitoring for clipboard activities, directly detecting and preventing sensitive data from being captured and exfiltrated via screenshots is generally beyond the core capabilities of most traditional DLP tools. DLP primarily focuses on data in transit (network), at rest (storage), or in use (applications) as it moves through defined channels.

CSensitive data moved to external devices

Endpoint DLP components are designed to detect and prevent sensitive data from being copied to external storage devices like USB drives.

DSensitive data in the contents of files sent via FTP

Network DLP solutions can inspect network traffic, including FTP transfers, to identify and block the exfiltration of sensitive data within file contents.

Concept tested: DLP capabilities and limitations

Source: https://learn.microsoft.com/en-us/purview/dlp-learn-about-dlp

Topics

#DLP#Cloud Data Security#Data Protection#Security Controls

Community Discussion

No community discussion yet for this question.

Full CCSP Practice