nerdexam
Palo_Alto_Networks

PSE-SASE · Question #90

A customer has a support call center that deals with sensitive customer data. However, the call center staff are not security focused, and depending on the time of year, there may be a high turnover…

The correct answer is B. Data Security. Data Security is correct because this scenario's core risk is sensitive customer data being uploaded to SharePoint without controls - regardless of whether staff are negligent or malicious. A Data Security (DLP) solution enforces policy on the content of transfers…

SASE Security Services (FWaaS, ZTNA, CASB, DLP)

Question

A customer has a support call center that deals with sensitive customer data. However, the call center staff are not security focused, and depending on the time of year, there may be a high turnover of staff. When one of their customers needs to share data with them, the call center staff generate a link to a custom Microsoft Sharepoint location that allows the customers to upload files. Which solution would help alleviate the customer concerns and ensure a robust Security policy is enforced?

Options

  • AAdvanced URL Filtering
  • BData Security
  • CGlobalProtect
  • DRemote Browser Isolation (RBI)

How the community answered

(31 responses)
  • A
    10% (3)
  • B
    65% (20)
  • C
    19% (6)
  • D
    6% (2)

Explanation

Data Security is correct because this scenario's core risk is sensitive customer data being uploaded to SharePoint without controls - regardless of whether staff are negligent or malicious. A Data Security (DLP) solution enforces policy on the content of transfers automatically, meaning it doesn't rely on security-aware staff, and high turnover becomes irrelevant because the system - not the human - makes enforcement decisions.

Advanced URL Filtering (A) is wrong because it controls which websites users can visit, not what data they send to those sites - it can't inspect or block a sensitive file upload to an allowed SharePoint URL. GlobalProtect (C) is a VPN/endpoint agent that extends network security policies to remote workers; it ensures traffic flows through protected infrastructure but doesn't address data content controls. Remote Browser Isolation (D) streams web sessions from a remote container to protect the endpoint from browser-borne threats - a web security tool, not a data governance one.

Memory tip: When the scenario emphasizes sensitive data being transferred and human error/turnover as the risk, the answer is almost always Data Security/DLP - because it enforces policy on the content itself, making the human factor irrelevant.

Topics

#Data Security#DLP#SharePoint#sensitive data protection

Community Discussion

No community discussion yet for this question.

Full PSE-SASE Practice