QuestionQ19

Managing data governance and compliance

Your organization stores credit card information in customer files. You need to implement a policy for your organization’s Google Drive data that prevents accidental external sharing of files containing credit card numbers. You also need to log any sharing incidents for reporting. What should you do?

  • A Create a data loss prevention (DLP) rule that uses the predefined credit card number detector, sets the action to “block external sharing”, and enables the “Log event” option.
  • B Enable Gmail content compliance, and create a rule to block email attachments containing credit card numbers from being sent to external recipients.
  • C Implement a third-party data loss prevention solution to integrate with Drive and provide advanced content detection capabilities.
  • D Configure a data retention policy to automatically delete files containing credit card numbers after a specified period.
Explanation

A Google Drive data loss prevention (DLP) rule can use the predefined credit card number detector to identify sensitive content and apply the Block external sharing action. DLP detection and action events are recorded in Rule log events, providing an auditable record for reporting.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!