nerdexam
CompTIA

CAS-003 · Question #618

The Chief Information Security Officer (CISO) of a company that has highly sensitive corporate locations wants its security engineers to find a solution to growing concerns regarding mobile devices…

The correct answer is B. Allow only corporate resources in a container. E. Use geofencmg on certain applications. The CISO's requirements are: company-owned devices, full off-site functionality, isolated corporate email, and employee freedom to install personal apps. Containerization (B) satisfies the isolation requirement by placing corporate email and data inside a secure, managed…

Enterprise Security Architecture

Question

The Chief Information Security Officer (CISO) of a company that has highly sensitive corporate locations wants its security engineers to find a solution to growing concerns regarding mobile devices. The CISO mandates the following requirements:

  • The devices must be owned by the company for legal purposes.
  • The device must be as fully functional as possible when off site.
  • Corporate email must be maintained separately from personal email
  • Employees must be able to install their own applications.

Which of the following will BEST meet the CISO's mandate? (Select TWO).

Options

  • ADisable the device's camera
  • BAllow only corporate resources in a container.
  • CUse an MDM to wipe the devices remotely
  • DBlock all sideloading of applications on devices
  • EUse geofencmg on certain applications
  • FDeploy phones in a BYOD model

How the community answered

(27 responses)
  • A
    4% (1)
  • B
    85% (23)
  • C
    7% (2)
  • D
    4% (1)

Explanation

The CISO's requirements are: company-owned devices, full off-site functionality, isolated corporate email, and employee freedom to install personal apps. Containerization (B) satisfies the isolation requirement by placing corporate email and data inside a secure, managed container separate from the personal side of the device - employees can still install their own apps outside the container. Geofencing (E) satisfies the 'fully functional when off site' requirement by applying policies dynamically based on location - corporate-only restrictions can be enforced on-site while allowing broader use off-site. Option F (BYOD) violates the company-ownership mandate. Option D (block sideloading) contradicts the employee-app-install requirement. Options A and C are controls but do not collectively satisfy the full mandate.

Topics

#MDM#mobile containerization#geofencing#BYOD policy

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice