nerdexam
CompTIA

CAS-001 · Question #17

mobile device which the Chief Information Officer (CIO) wants to immediately deploy to all employees in the company. The product is commercially available, runs a popular mobile operating system…

The correct answer is A. Ability to remotely wipe the devices, apply security controls remotely, and encrypt the SSD. For enterprise mobile device deployments, the three critical risk management capabilities are: (1) remote wipe-to erase sensitive data if a device is lost or stolen; (2) remote application of security controls-to enforce policies such as screen lock, encryption, and app…

Research and Analysis

Question

mobile device which the Chief Information Officer (CIO) wants to immediately deploy to all employees in the company. The product is commercially available, runs a popular mobile operating system, and can connect to IPv6 networks wirelessly. The model the CIO wants to procure also includes the upgraded 160GB solid state hard drive. The producer of the device will not reveal exact numbers but experts estimate that over 73 million of the devices have been sold worldwide. Which of the following is the BEST list of factors the security manager should consider while performing a risk assessment?

Options

  • AAbility to remotely wipe the devices, apply security controls remotely, and encrypt the SSD;
  • BAbility to remotely administer the devices, apply security controls remotely, and remove the SSD;
  • CAbility to remotely monitor the devices, remove security controls remotely, and decrypt the SSD;
  • DAbility to remotely sanitize the devices, apply security controls locally, encrypt the SSD;

How the community answered

(23 responses)
  • A
    70% (16)
  • B
    9% (2)
  • C
    4% (1)
  • D
    17% (4)

Explanation

For enterprise mobile device deployments, the three critical risk management capabilities are: (1) remote wipe-to erase sensitive data if a device is lost or stolen; (2) remote application of security controls-to enforce policies such as screen lock, encryption, and app restrictions via MDM (Mobile Device Management); and (3) SSD encryption-to protect data at rest in case of physical device compromise. Option B suggests 'removing the SSD,' which is impractical at scale. Option C mentions 'removing security controls remotely,' which is the opposite of sound security practice, and 'decrypting the SSD' increases risk rather than reducing it. Option D specifies applying security controls 'locally' rather than remotely, which defeats the purpose of centralized enterprise mobile management. Option A represents the correct and complete set of mobile risk mitigation factors.

Topics

#mobile device risk assessment#remote wipe#SSD encryption#MDM controls

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice