CAS-005 · Question #127
A security manager is creating a standard configuration across all endpoints that handle sensitive data. Which of the following techniques should be included in the standard configuration to ensure th
The correct answer is A. Drive encryption. Drive encryption protects sensitive data at rest by ensuring unauthorized access cannot expose the data if the physical endpoint is compromised. Patch management is a necessary security control but does not specifically address endpoint hardening for sensitive data. Event logging
Question
A security manager is creating a standard configuration across all endpoints that handle sensitive data. Which of the following techniques should be included in the standard configuration to ensure the endpoints are hardened?
Options
- ADrive encryption
- BPatch management
- CEvent logging
- DResource monitoring
How the community answered
(40 responses)- A93% (37)
- B3% (1)
- D5% (2)
Explanation
Drive encryption protects sensitive data at rest by ensuring unauthorized access cannot expose the data if the physical endpoint is compromised. Patch management is a necessary security control but does not specifically address endpoint hardening for sensitive data. Event logging aids in monitoring and incident detection but does not directly harden endpoints. Resource monitoring manages system performance and availability but is unrelated to data
Community Discussion
No community discussion yet for this question.