CompTIA CySA+CS0-002 – Question029

A company is experiencing a malware attack within its network. A security engineer notices many of the impacted assets are connecting outbound to a number of remote destinations and exfiltrating data. The security engineer also sees that deployed, up-to-date antivirus signatures are ineffective. Which of the following is the BEST approach to prevent any impact to the company from similar attacks in the future?

A.
IDS signatures
B. Data loss prevention
C. Port security
D. Sinkholing

Correct Answer: B