nerdexam
CompTIA

220-1102 · Question #37

A technician is working with a company to determine the best way to transfer sensitive personal information between offices when conducting business. The company currently uses USB drives and is…

The correct answer is D. Enable BitLocker To Go with a password that meets corporate requirements. To secure sensitive personal information on USB drives in compliance with encryption at rest requirements, enabling BitLocker To Go is the best solution.

Security

Question

A technician is working with a company to determine the best way to transfer sensitive personal information between offices when conducting business. The company currently uses USB drives and is resistant to change. The company's compliance officer states that all media at rest must be encrypted. Which of the following would be the BEST way to secure the current workflow?

Options

  • ADeploy a secondary hard drive with encryption on the appropriate workstation
  • BConfigure a hardened SFTP portal for file transfers between file servers
  • CRequire files to be individually password protected with unique passwords
  • DEnable BitLocker To Go with a password that meets corporate requirements

How the community answered

(38 responses)
  • A
    18% (7)
  • B
    5% (2)
  • C
    3% (1)
  • D
    74% (28)

Why each option

To secure sensitive personal information on USB drives in compliance with encryption at rest requirements, enabling BitLocker To Go is the best solution.

ADeploy a secondary hard drive with encryption on the appropriate workstation

Deploying a secondary hard drive with encryption on a workstation does not secure the USB drives themselves, which are used for transfer between offices.

BConfigure a hardened SFTP portal for file transfers between file servers

Configuring an SFTP portal would change the workflow from USB drives to network transfers, which the company is resistant to, and does not address securing USB drives.

CRequire files to be individually password protected with unique passwords

Requiring individual files to be password protected is less secure and manageable than full-disk encryption like BitLocker To Go and can be cumbersome for large transfers.

DEnable BitLocker To Go with a password that meets corporate requirementsCorrect

Concept tested: Encrypting removable media

Source: https://learn.microsoft.com/en-us/windows/security/operating-system-security/data-protection/bitlocker/bitlocker-to-go-faq

Topics

#Data encryption#Removable media security#BitLocker To Go#Compliance

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice