PSE-SASE · Question #75
A large financial firm is planning to leverage Prisma Access and needs to be compliant with a number of standards. They want to use Prisma Access to secure their data as it enters and leaves their…
The correct answer is B. SaaS Security API D. Enterprise Data Loss Prevention. SaaS Security API (B) addresses the requirement to secure data stored in cloud environments by scanning and protecting data at rest in SaaS applications - critical for passing cloud compliance audits. Enterprise Data Loss Prevention (D) addresses the requirement to secure data…
Question
A large financial firm is planning to leverage Prisma Access and needs to be compliant with a number of standards. They want to use Prisma Access to secure their data as it enters and leaves their environment, and also to secure any data that is stored within the cloud in order to ensure they pass the audits required for compliance. Which two add-ons should be recommended to this firm to ensure they are compliant across their cloud storage and live banking transactions? (Choose two.)
Options
- AAI-Powered ADEM
- BSaaS Security API
- CGlobalProtect
- DEnterprise Data Loss Prevention
How the community answered
(39 responses)- A21% (8)
- B69% (27)
- C10% (4)
Explanation
SaaS Security API (B) addresses the requirement to secure data stored in cloud environments by scanning and protecting data at rest in SaaS applications - critical for passing cloud compliance audits. Enterprise Data Loss Prevention (D) addresses the requirement to secure data as it moves in and out of the environment, inspecting live transactions and preventing sensitive financial data from being leaked or exfiltrated, which is essential for banking compliance standards like PCI-DSS.
ADEM (A) is a Digital Experience Management tool focused on monitoring network performance and user experience - it has no data security or compliance enforcement capability. GlobalProtect (C) is a remote access/VPN client used to connect endpoints to Prisma Access; it's a connectivity component, not a compliance or DLP add-on.
Memory tip: Split the two requirements in the question - stored data maps to SaaS Security API (think: "API scans what's sitting in the cloud"), and data in motion maps to Enterprise DLP (think: "DLP watches the door"). If a choice is about performance monitoring or just connecting users, it's a distractor.
Topics
Community Discussion
No community discussion yet for this question.