nerdexam
ExamsCAS-001Questions#311
CompTIA

CAS-001 · Question #311

CAS-001 Question #311: Real Exam Question with Answer & Explanation

The correct answer is A: Create presence groups, restrict IM protocols to the internal networks, encrypt remote devices,. Answer A is correct because it addresses all three key vectors of a unified communications deployment: (1) Presence groups restrict who can see user availability, limiting information leakage; (2) Restricting IM protocols to internal networks prevents unauthorized external IM con

Question

A security administrator is tasked with securing a company's headquarters and branch offices move to unified communications. The Chief Information Officer (CIO) wants to integrate the corporate users' email, voice mail, telephony, presence and corporate messaging to internal computers, mobile users, and devices. Which of the following actions would BEST meet the CIO's goals while providing maximum unified communications security?

Options

  • ACreate presence groups, restrict IM protocols to the internal networks, encrypt remote devices,
  • BEnable discretionary email forwarding restrictions, utilize QoS and Secure RTP, allow external IM
  • CSet presence to invisible by default, restrict IM to invite only, implement QoS on SIP and RTP traffic,
  • DEstablish presence privacy groups, restrict all IM protocols, allow secure RTP on session border

Explanation

Answer A is correct because it addresses all three key vectors of a unified communications deployment: (1) Presence groups restrict who can see user availability, limiting information leakage; (2) Restricting IM protocols to internal networks prevents unauthorized external IM connections, which are a common data exfiltration vector; (3) Encrypting remote/mobile devices ensures that data on endpoints accessing the UC platform is protected if lost or stolen. Answer B is wrong because 'allowing external IM' introduces uncontrolled channels. Answer C is overly restrictive - invisible presence and invite-only IM would impair business operations. Answer D's 'restrict all IM protocols' would block legitimate business communications entirely, which is not a viable UC strategy.

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice