3. Which of the following features should the company set up? (Select two).
Answer: A,B
DLP software and DNS filtering should be set up by the company.
Implementing Data Loss Prevention (DLP) software helps protect sensitive information from unauthorized access and potential breaches. Additionally, DNS filtering plays a crucial role in blocking access to malicious websites, enhancing the overall security posture of the company.
A) DLP software
DLP software is essential for organizations to monitor and protect sensitive data from being leaked or misused. It provides mechanisms to enforce compliance with data protection regulations and ensure that confidential information remains secure, making it a critical feature for the company to implement.
B) DNS filtering
DNS filtering serves as an important security measure by preventing users from accessing harmful or malicious websites. By setting up DNS filtering, the company can reduce the risk of malware infections and phishing attacks, thereby safeguarding the network and its users.
C) File integrity monitoring
While file integrity monitoring is beneficial for detecting unauthorized changes to files, it does not directly prevent data loss or block harmful internet access. Therefore, although it is a useful security tool, it is not one of the top two priorities compared to DLP software and DNS filtering.
D) Stateful firewall
A stateful firewall is important for monitoring and controlling incoming and outgoing network traffic based on predetermined security rules. However, while it enhances network security, it does not specifically address the needs for data loss prevention or web access control that DLP software and DNS filtering provide.
E) Guardrails
Guardrails typically refer to best practices and policies that guide user behavior and system usage. While they are helpful for compliance and security frameworks, they do not function as direct protective measures like DLP software or DNS filtering.
F) Antivirus signatures
Antivirus signatures are crucial for detecting malware and viruses, but they do not specifically address data loss prevention or web filtering needs. Therefore, while important for overall security, they do not fit the immediate requirements as well as DLP software and DNS filtering do.
Conclusion
DLP software and DNS filtering are critical features for the company to implement as they directly address the need to protect sensitive data and secure internet access. Other options, while valuable in their own right, do not fulfill the same immediate objectives of preventing data loss and blocking malicious sites, making A and B the definitive choices.