nerdexam
CompTIA

SK0-005 · Question #3

Which of the following must a server administrator do to ensure data on the SAN is not compromised if it is leaked?

The correct answer is B. Encrypt the data at rest. The threat scenario is a data leak – meaning the raw storage media or its contents are exposed to an unauthorized party. Encrypting data at rest ensures that even if someone physically removes drives from the SAN or gains unauthorized access to the raw data, the contents are…

Security and disaster recovery

Question

Which of the following must a server administrator do to ensure data on the SAN is not compromised if it is leaked?

Options

  • AEncrypt the data that is leaving the SAN
  • BEncrypt the data at rest
  • CEncrypt the host servers
  • DEncrypt all the network traffic

How the community answered

(68 responses)
  • A
    4% (3)
  • B
    88% (60)
  • C
    1% (1)
  • D
    6% (4)

Explanation

The threat scenario is a data leak – meaning the raw storage media or its contents are exposed to an unauthorized party. Encrypting data at rest ensures that even if someone physically removes drives from the SAN or gains unauthorized access to the raw data, the contents are unreadable without the decryption key. Encrypting data in transit or network traffic protects against interception during movement, not against the storage itself being compromised.

Topics

#Data at rest encryption#SAN security#Data protection#Storage encryption

Community Discussion

No community discussion yet for this question.

Full SK0-005 Practice