nerdexam
EC-Council

312-50V12 · Question #184

As a cybersecurity analyst for a large corporation, you are auditing the company's mobile device management (MDM) policy. One of your areas of concern is data leakage from company- provided smartphone

The correct answer is D. Enforce a policy that only allows app installations from approved corporate app stores.. To prevent data leakage from malicious app installations on company smartphones, enforcing a policy that restricts app sources to approved corporate stores is the most effective measure.

Submitted by satoshi_tk· Mar 4, 2026Wireless Network, Mobile, IoT, and OT Hacking

Question

As a cybersecurity analyst for a large corporation, you are auditing the company's mobile device management (MDM) policy. One of your areas of concern is data leakage from company- provided smartphones. You are worried about employees unintentionally installing malicious apps that could access sensitive corporate data on their devices. Which of the following would be an effective measure to prevent such data leakage?

Options

  • ARequire biometric authentication for unlocking devices.
  • BRegularly change Wi-Fi passwords used by the devices.
  • CMandate the use of VPNs when accessing corporate data.
  • DEnforce a policy that only allows app installations from approved corporate app stores.

How the community answered

(37 responses)
  • A
    11% (4)
  • B
    3% (1)
  • C
    5% (2)
  • D
    81% (30)

Why each option

To prevent data leakage from malicious app installations on company smartphones, enforcing a policy that restricts app sources to approved corporate stores is the most effective measure.

ARequire biometric authentication for unlocking devices.

Requiring biometric authentication secures device access but does not prevent a malicious application from accessing data once the device is unlocked and the app is installed.

BRegularly change Wi-Fi passwords used by the devices.

Regularly changing Wi-Fi passwords is a network security practice that does not prevent the installation of malicious applications or their ability to access data on the device.

CMandate the use of VPNs when accessing corporate data.

Mandating VPN use secures data in transit over a network but does not prevent malicious apps from being installed on the device or accessing local sensitive corporate data.

DEnforce a policy that only allows app installations from approved corporate app stores.Correct

Enforcing a policy to only allow app installations from approved corporate app stores directly addresses the risk of employees unintentionally installing malicious applications. This Mobile Application Management (MAM) control ensures that only vetted, trusted applications can be installed on devices, significantly reducing the attack surface for data leakage originating from unapproved software.

Concept tested: Mobile application management and trusted app sources

Source: https://learn.microsoft.com/en-us/mem/intune/apps/app-management

Topics

#MDM#mobile security#data leakage#app control

Community Discussion

No community discussion yet for this question.

Full 312-50V12 Practice