nerdexam
Broadcom-VMware

2V0-62.23 · Question #59

Which three security technologies in Workspace ONE ensure endpoint data loss prevention on devices? (Choose three.)

The correct answer is A. The device has a compliant passcode. B. The device is monitored with real time threat detection. E. The device is encrypted. Endpoint data loss prevention requires controlling access, visibility, and protection of data at rest - which is exactly what A, B, and E deliver. A compliant passcode (A) prevents unauthorized users from accessing device data. Real-time threat detection (B) monitors for active…

Section 4 – Workspace ONE Features and Functionality

Question

Which three security technologies in Workspace ONE ensure endpoint data loss prevention on devices? (Choose three.)

Options

  • AThe device has a compliant passcode.
  • BThe device is monitored with real time threat detection.
  • CThe device is made FIPs compliant.
  • DThe device user's directory password rotation policy is applied.
  • EThe device is encrypted.

How the community answered

(30 responses)
  • A
    90% (27)
  • C
    3% (1)
  • D
    7% (2)

Explanation

Endpoint data loss prevention requires controlling access, visibility, and protection of data at rest - which is exactly what A, B, and E deliver. A compliant passcode (A) prevents unauthorized users from accessing device data. Real-time threat detection (B) monitors for active threats that could exfiltrate or compromise data. Encryption (E) ensures that data stored on the device is unreadable if the device is lost or stolen.

Why C is wrong: FIPS compliance is a cryptographic standard/certification, not a Workspace ONE DLP control. A device can be FIPS-compliant without that directly enforcing data loss prevention policies within the UEM platform.

Why D is wrong: Directory password rotation governs how often a user's identity provider (e.g., Active Directory) password changes - that's an identity/access hygiene policy, not an endpoint DLP mechanism. It doesn't protect data residing on the device itself.

Memory tip: Think "APE" - Access, Protection, Eyes" → A compliant passcode controls Access, Encryption Protects data at rest, and real-time monitoring keeps Eyes on threats. If a choice sounds like an identity or standards-body concept rather than an endpoint control, it's likely a distractor.

Topics

#Data Loss Prevention#Endpoint Security#Device Encryption#Threat Detection

Community Discussion

No community discussion yet for this question.

Full 2V0-62.23 Practice