exam questions

Exam SY0-501 All Questions

View all questions & answers for the SY0-501 exam

Exam SY0-501 topic 1 question 174 discussion

Actual exam question from CompTIA's SY0-501
Question #: 174
Topic #: 1
[All SY0-501 Questions]

The security administrator receives an email on a non-company account from a coworker stating that some reports are not exporting correctly. Attached to the email was an example report file with several customers' names and credit card numbers with the PIN.
Which of the following is the BEST technical controls that will help mitigate this risk of disclosing sensitive data?

  • A. Configure the mail server to require TLS connections for every email to ensure all transport data is encrypted
  • B. Create a user training program to identify the correct use of email and perform regular audits to ensure compliance
  • C. Implement a DLP solution on the email gateway to scan email and remove sensitive data or files
  • D. Classify all data according to its sensitivity and inform the users of data that is prohibited to share
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Basem
Highly Voted 5 years, 9 months ago
The coworker is sending an email from the company to the security admin external account. So DLP is the required technical control. user awareness is not a technical control. It could also be encryption but it is not the BEST answer.
upvoted 11 times
...
Jenkins3mol
Highly Voted 5 years, 9 months ago
The sensitive data is attached to an external email...hence, dlp won’t help. Imagine the email is already hijacked by hackers on the internet? Dlp can’t help. Users are the most important factor for this case.
upvoted 5 times
...
who__cares123456789___
Most Recent 4 years, 5 months ago
The mail was sent TO a non-corporate account, NEVER SAYS WAS SENT FROM A NON CORPORATE account...SAYs EXPLICITLY that employee sent it ....DLP is answer....move on
upvoted 5 times
...
Hanzero
4 years, 8 months ago
The question says "technical control" so yeh it's C for sure.
upvoted 1 times
...
SvendZ
4 years, 10 months ago
Question asks for a technical control, which eliminates B and D. TLS won't stop someone from mailing an attachment. So the answer is C, which is a technical control that can do in depth scanning for things like this.
upvoted 1 times
...
Krishnendu
4 years, 10 months ago
Implementing a DLP is a corrective action after the damage has been done. The question here states that what technical control we will need to implement. So I don't think DLP should be the apt answer here.
upvoted 2 times
...
MelvinJohn
5 years, 4 months ago
C. It doesn't say where the sender is, just that the admin is on a non-company account. But that PII definitely came from the company then was forwarded to the admin. Asks what is the "BEST technical control that will help mitigate this risk of disclosing sensitive data", implying they want to mitigate future breaches of this nature.
upvoted 4 times
Meredith
5 years, 1 month ago
Agreed, user training is an administrative control and this question clearly states technical control.
upvoted 3 times
...
...
OneTrick
5 years, 4 months ago
Provided answer is correct. Take care what the question is saying; The security administrator receives an email on a non-company account from a coworker stating that some reports are not exporting correctly. It mentions that the security administrator received an email on a non-company account not from a non-company account. This means the email came from a company account, as such DLP would be the best option.
upvoted 4 times
...
Gerarigneel
5 years, 4 months ago
I think the answer is wrong here, should be user training letter B
upvoted 1 times
...
Caleb
5 years, 5 months ago
To me, it seems that he sent info to his personal email from the internal network and dlp stopped a bit of the information. Now he is reachong out to the security admin showing the report with the missing data since it had left the network. I dont think its a trick question. It states he is using a non company email, meaning the data was sent out of the company network.
upvoted 2 times
...
Ales
5 years, 7 months ago
Data loss prevention (DLP) is a strategy for making sure that end users do not send sensitive or critical information outside the corporate network. The term is also used to describe software products that help a network administrator control what data end users can transfer.
upvoted 2 times
...
a1037040
5 years, 7 months ago
Becareful this is one of CompTIA infamous trick questions. DLP would only work with internal organization email accounts and outgoing email. Incoming email from an external account? The only answer would be to create Cyber Training for end users: C.
upvoted 1 times
a1037040
5 years, 7 months ago
Sorry B*
upvoted 1 times
MagicianRecon
4 years, 11 months ago
B is not a technical control. Coworker sent an email to a non-company account. No where it mentions that the email was sent from a non corporate account. You are getting tricked for no reason
upvoted 6 times
markle
4 years, 6 months ago
Coworker sent an email from a non company account not to.
upvoted 1 times
markle
4 years, 6 months ago
Correction MagicianRecon was right!. Ive studied so hard my eyes and basic ability to read sentences have malfunctioned.
upvoted 1 times
...
...
...
...
MTK777
4 years, 10 months ago
BEST technical controls!!!
upvoted 2 times
...
...
Stefanvangent
5 years, 8 months ago
Even with a personal account, as soon as the employee tries to send the email, the DLP should still detect that PII is being sent (to a corporate mail account) and block it from being sent. Also the question asks what the best technical control would be. Answer B sounds like an administrative/corrective control. DLP is still the best answer compared to the other ones.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...