Controls to restrict the exfiltration of data (for example, data loss prevention tools) are implemented
Context and Guidance: Examples of controls to restrict the exfiltration of data include architectural tactics such as authentication and authorisation, restricting remote access (including restricting use of cloud services), and monitoring user activity (e.g., for high-volume uploads of data to external systems).
Related Practices • Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: ARCHITECTURE-5a, ARCHITECTURE-5b, ARCHITECTURE-5c, ARCHITECTURE-5d, ARCHITECTURE-5e, ARCHITECTURE-5f, ARCHITECTURE-5g, ARCHITECTURE-5h.