Data loss prevention (DLP) is a set of security controls and technologies that detect and block the unauthorised exfiltration, leakage or misuse of sensitive data. DLP systems classify content, monitor data in use, in motion and at rest, and enforce policies at endpoints, networks and cloud services. It is a core data-protection capability supporting compliance with privacy and confidentiality requirements.
Content
- DLP engines classify content via pattern matching, fingerprinting and machine learning, then apply policies across endpoints, email, networks and SaaS. Actions range from logging and alerting to encryption, quarantine or outright blocking of risky transfers.