nerdexam
CompTIA

CAS-001 · Question #254

A growing corporation is responding to the needs of its employees to access corporate email and other resources while traveling. The company is implementing remote access for company laptops. Which…

The correct answer is A. Virtual Private Network D. Multifactor authentication for users. For securing remote access for traveling employees on company laptops, two controls are essential: (A) A VPN creates an encrypted tunnel between the remote laptop and the corporate network, protecting data in transit over untrusted public networks (hotel Wi-Fi, airports, etc.)…

Enterprise Security

Question

A growing corporation is responding to the needs of its employees to access corporate email and other resources while traveling. The company is implementing remote access for company laptops. Which of the following security systems should be implemented for remote access? (Select TWO).

Options

  • AVirtual Private Network
  • BSecure Sockets Layer for web servers
  • CNetwork monitoring
  • DMultifactor authentication for users
  • EFull disk encryption
  • FIntrusion detection systems

How the community answered

(45 responses)
  • A
    91% (41)
  • B
    4% (2)
  • C
    2% (1)
  • E
    2% (1)

Explanation

For securing remote access for traveling employees on company laptops, two controls are essential: (A) A VPN creates an encrypted tunnel between the remote laptop and the corporate network, protecting data in transit over untrusted public networks (hotel Wi-Fi, airports, etc.) and extending the corporate security perimeter to remote users. (D) Multifactor authentication (MFA) ensures that even if credentials are compromised - a heightened risk when traveling - an attacker still cannot authenticate without the second factor. The other options are not the best fit: SSL for web servers (B) only secures specific web traffic, not the full remote access session. Network monitoring (C) is a detective control, not a preventive one for remote access. Full disk encryption (E) protects data if the laptop is lost or stolen but does not secure the network connection itself. IDS (F) detects intrusions but does not secure the remote access channel.

Topics

#VPN#remote access#multifactor authentication#endpoint security

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice