nerdexam
Palo_Alto_Networks

NETSEC-PRO · Question #61

During a security incident investigation, which Security profile will have logs of attempted confidential data exfiltration?

The correct answer is B. Enterprise DLP Profile. Enterprise DLP Profile is specifically designed to detect and log data exfiltration attempts, including those involving confidential or sensitive data. Enterprise DLP logs capture incidents involving potential data exfiltration. They help identify sensitive data transfers, even…

Data Loss Prevention

Question

During a security incident investigation, which Security profile will have logs of attempted confidential data exfiltration?

Options

  • AFile Blocking Profile
  • BEnterprise DLP Profile
  • CVulnerability Protection Profile
  • DWildFire Analysis Profile

How the community answered

(49 responses)
  • A
    14% (7)
  • B
    76% (37)
  • C
    6% (3)
  • D
    4% (2)

Explanation

Enterprise DLP Profile is specifically designed to detect and log data exfiltration attempts, including those involving confidential or sensitive data. Enterprise DLP logs capture incidents involving potential data exfiltration. They help identify sensitive data transfers, even in seemingly legitimate traffic. File Blocking and Vulnerability Protection handle files or exploit detection, while WildFire focuses on malware analysis--not direct data exfiltration.

Topics

#DLP#data exfiltration#Enterprise DLP#security incident response

Community Discussion

No community discussion yet for this question.

Full NETSEC-PRO Practice