An organization recently discovered that a former employee's access credentials were used to exfiltrate sensitive customer data two weeks after their termination.
Which of the following controls would have been MOST effective in preventing this incident?
A) Implementing multi-factor authentication for all users
B) Conducting regular access reviews and timely account deprovisioning
C) Deploying a data loss prevention (DLP) solution
D) Encrypting all sensitive data at rest