220-1002 · Question #825
A technician is setting up a new laptop for an employee who travels. Which of the following is the BEST security practice for this scenario?
The correct answer is C. Hard drive encryption. Hard drive (full-disk) encryption is the best security practice for a traveling employee because the most significant risk for a laptop in transit is physical theft or loss. If the laptop is stolen in an airport, hotel, or taxi, encryption ensures the data is completely…
Question
A technician is setting up a new laptop for an employee who travels. Which of the following is the BEST security practice for this scenario?
Options
- APIN-based login
- BQuarterly password changes
- CHard drive encryption
- DA physical laptop lock
How the community answered
(27 responses)- A11% (3)
- B4% (1)
- C81% (22)
- D4% (1)
Explanation
Hard drive (full-disk) encryption is the best security practice for a traveling employee because the most significant risk for a laptop in transit is physical theft or loss. If the laptop is stolen in an airport, hotel, or taxi, encryption ensures the data is completely unreadable without the decryption key - even if someone removes the hard drive and connects it to another machine. A) A PIN-based login can be bypassed by removing the hard drive. B) Quarterly password changes are a general policy, not specific to travel risk. D) A physical cable lock prevents the laptop from being taken but is impractical in transit and doesn't protect data if the device is already gone. Full-disk encryption (such as BitLocker or FileVault) is the control that directly addresses the unique risk profile of a traveling employee.
Topics
Community Discussion
No community discussion yet for this question.