cissp question 1400 discussion

View all Certified Information Systems Security Professional Exam here
back to isc forum

Question 1400

What is the FIRST step that should be considered in a Data Loss Prevention (DLP) program?

  • A. Configuration management (CM)
  • B. Information Rights Management (IRM)
  • C. Policy creation
  • D. Data classification
Answer:

D


User Votes:
A
50%
B
50%
C 1 votes
50%
D
50%
Discussions
0 / 1000
attesco
3 weeks, 3 days ago

https://www.nextdlp.com/resources/blog/steps-to-implementing-data-loss-prevention-strategy

attesco
3 weeks, 3 days ago

6 steps to implementing a successful data loss prevention strategy
Data-driven companies need a data loss prevention (DLP) strategy to protect their valuable information. Enterprises must guard against data being compromised, lost, or misused deliberately or accidentally. The same level of damage can be caused by a data breach initiated by a cyberattack or one triggered by an employee’s accidental disclosure of intellectual property via unencrypted email.

Implementing a successful DLP strategy requires a methodical approach that addresses the needs of the business and the type of data it gathers, stores, and processes. The following steps illustrate the best practices that should be part of a company’s DLP strategy.

In this article:

Create a data handling policy
Classify all data resources
Identify data vulnerabilities
Enforce the data handling policy
Monitor data movement
Provide ongoing education
Deploying a modern DLP solution
Frequently asked questions
Cr‎eate a data handling po