
Answer-first summary for fast verification
Answer: Utilize Microsoft Priva to discover and inventory all instances of credit card data across cloud and on-premises environments, then enforce strict access controls and encryption to ensure only authorized personnel can access sensitive data, aligning with PCI DSS requirements.
Option C is the most comprehensive and aligns best with PCI DSS compliance requirements. It addresses the need for discovering and inventorying credit card data across all environments, a critical first step in compliance. By enforcing strict access controls and encryption, it ensures that only authorized personnel can access sensitive data, directly addressing PCI DSS requirements for data protection and access control. While options A, B, and D contribute to a robust security posture, they do not fully encompass the specific PCI DSS compliance needs as comprehensively as option C.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
As a Microsoft Cybersecurity Architect, you are consulting for a retail organization that processes credit card transactions and must comply with the Payment Card Industry Data Security Standard (PCI DSS). The organization uses a mix of cloud and on-premises environments. Your task is to design a solution using Microsoft Priva that ensures compliance with PCI DSS requirements, focusing on data discovery, protection, and access control. Which of the following approaches BEST meets these requirements? (Choose one option.)
A
Implement Microsoft Priva to classify and label credit card data automatically, and apply data loss prevention (DLP) policies to monitor and block unauthorized data transfers, ensuring data is protected both at rest and in transit.
B
Leverage Microsoft Priva to continuously monitor data access and usage patterns across all environments, generating real-time alerts for suspicious activities and comprehensive compliance reports for auditing purposes.
C
Utilize Microsoft Priva to discover and inventory all instances of credit card data across cloud and on-premises environments, then enforce strict access controls and encryption to ensure only authorized personnel can access sensitive data, aligning with PCI DSS requirements.
D
Deploy Microsoft Priva to conduct automated vulnerability scans and penetration tests on systems storing or processing credit card data, identifying and remediating security gaps to prevent potential data breaches.
No comments yet.