The security administrator receives an email on a non-company account from a coworker stating that some reports are not exporting correctly. Attached to the
email was an example report file with several customers’ names and credit card numbers with the PIN. Which of the following is the BEST technical controls that
will help mitigate this risk of disclosing sensitive data?
Configure the mail server to require TLS connections for every email to ensure all transport data is encrypted
Create a user training program to identify the correct use of email and perform regular audits to ensure compliance
Implement a DLP solution on the email gateway to scan email and remove sensitive data or files
Classify all data according to its sensitivity and inform the users of data that is prohibited to share
Would D or even B not be better answers?
Data loss prevention (DLP) is a strategy for making sure that end users do not send sensitive or critical information outside the corporate network. The term is also used to describe software products that help a network administrator control what data end users can transfer.