Data Loss Prevention (DLP)systems are specifically designed todetect, monitor, andpreventunauthorized attempts to access, transmit, or extract sensitive data — including email, removable media, and cloud uploads.
NIST SP 800-207A (Data Protection):
“DLP systems are used to prevent sensitive information from being transmitted outside of a trusted boundary by monitoring and enforcing content-based policies.”
IDS and IPS detect threats but do notfocus on protecting data from being exfiltrated. MFA protects user identities, not data leakage.
????WGU Course Alignment:
Domain:Security Operations and Monitoring
Topic:Implement DLP controls to protect sensitive data from unauthorized extraction
Submit