4.5 Given a scenario, modify enterprise capabilities to enhance security. Flashcards
Data Loss Prevention (DLP)
Aims to monitor data in use, in transit, or at rest to detect and prevent data theft
Types of DLP Systems
End-Point DLP
Network DLP
Storage DLP
Cloud-Based DLP
Endpoint DLP System
● Installed as software on workstations or laptops
● Monitors data in use on individual computers
● Can prevent or alert on file transfers based on predefined rules
Network DLP System
● Software or hardware placed at the network perimeter
● Focuses on monitoring data entering and leaving the network
● Detects unauthorized data leaving the network
Storage DLP System
● Installed on a server in the data center
● Inspects data at rest, especially encrypted or watermarked data
● Monitors data access patterns and flags policy violations
Cloud-Based DLP System
● Offered as a software-as-a-service solution
● Protects data stored in cloud services