CAS-003 · Question #618
The Chief Information Security Officer (CISO) of a company that has highly sensitive corporate locations wants its security engineers to find a solution to growing concerns regarding mobile devices…
The correct answer is B. Allow only corporate resources in a container. E. Use geofencmg on certain applications. The CISO's requirements are: company-owned devices, full off-site functionality, isolated corporate email, and employee freedom to install personal apps. Containerization (B) satisfies the isolation requirement by placing corporate email and data inside a secure, managed…
Question
The Chief Information Security Officer (CISO) of a company that has highly sensitive corporate locations wants its security engineers to find a solution to growing concerns regarding mobile devices. The CISO mandates the following requirements:
- The devices must be owned by the company for legal purposes.
- The device must be as fully functional as possible when off site.
- Corporate email must be maintained separately from personal email
- Employees must be able to install their own applications.
Which of the following will BEST meet the CISO's mandate? (Select TWO).
Options
- ADisable the device's camera
- BAllow only corporate resources in a container.
- CUse an MDM to wipe the devices remotely
- DBlock all sideloading of applications on devices
- EUse geofencmg on certain applications
- FDeploy phones in a BYOD model
How the community answered
(27 responses)- A4% (1)
- B85% (23)
- C7% (2)
- D4% (1)
Explanation
The CISO's requirements are: company-owned devices, full off-site functionality, isolated corporate email, and employee freedom to install personal apps. Containerization (B) satisfies the isolation requirement by placing corporate email and data inside a secure, managed container separate from the personal side of the device - employees can still install their own apps outside the container. Geofencing (E) satisfies the 'fully functional when off site' requirement by applying policies dynamically based on location - corporate-only restrictions can be enforced on-site while allowing broader use off-site. Option F (BYOD) violates the company-ownership mandate. Option D (block sideloading) contradicts the employee-app-install requirement. Options A and C are controls but do not collectively satisfy the full mandate.
Topics
Community Discussion
No community discussion yet for this question.