
EC-CouncilNetwork Defense Essentials
Domain 6Objective 5
Data Loss Prevention (DLP) Concepts NDE Practice Questions (Page 8)
Part of the Cryptography, PKI, and Data Security domain, which makes up ~15% of our current practice bank.
49questions here
10free pages
8concepts
Questions 36–40
- 36
A company's DLP system is not detecting data exfiltration via encrypted web traffic (HTTPS) to personal cloud storage. The network DLP sensor is placed at the internet gateway. Which architectural change would most likely improve detection?
Select an answer first - 37
A DLP policy is being created to protect financial data. The policy should detect when a spreadsheet containing a specific set of account numbers is emailed externally. Which combination of detection and response actions is most appropriate?
Select an answer first - 38
A DLP team is deploying a policy to block outbound emails containing employee PII (social security numbers). The policy uses a regex for SSN format. During the pilot, the team sees a 40% false-positive rate because many non-sensitive numbers match the pattern. They also have a clean HR database of actual employee SSNs. Which change best reduces false positives without losing detection of real SSNs?
Select an answer first - 39
Which best practice helps reduce false positives in DLP deployments?
Select an answer first - 40
What is the first step in creating an effective DLP policy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.