This document discusses best practices for using data loss prevention (DLP) tools to discover and protect sensitive data stored on systems. It describes how DLP content discovery works by scanning data repositories using deep content analysis based on centralized policies. This allows organizations to gain insight into where sensitive data is stored and how it is being used, helping reduce information risks related to compliance, intellectual property protection, and data security.