Which statement accurately describes why IPS, DLP, and malware protection are considered complementary rather than redundant security controls?
Correct Answer: Each control addresses a distinct threat vector — network-based intrusion attempts, unauthorized sensitive data movement, and malicious file content, respectively — so together they provide layered coverage no single control achieves alone
Explanation: IPS, DLP, and malware protection each address a distinct threat vector (network intrusion, data exfiltration, malicious files) and together provide layered coverage, unlike claiming they're identical controls, that IPS alone covers all three functions, that DLP/malware protection alone cover network intrusion detection, that they can't be deployed together, or that malware protection alone handles data exfiltration.
Correct Answer: Each control addresses a distinct threat vector — network-based intrusion attempts, unauthorized sensitive data movement, and malicious file content, respectively — so together they provide layered coverage no single control achieves alone
Explanation: IPS, DLP, and malware protection each address a distinct threat vector (network intrusion, data exfiltration, malicious files) and together provide layered coverage, unlike claiming they're identical controls, that IPS alone covers all three functions, that DLP/malware protection alone cover network intrusion detection, that they can't be deployed together, or that malware protection alone handles data exfiltration.