nerdexam
CompTIA

SY0-301 · Question #50

Which of the following should Matt, a security administrator, include when encrypting smartphones? (Select TWO).

The correct answer is B. Internal memory D. Removable memory cards. Encrypting a smartphone must cover both its internal storage and any removable memory cards, since sensitive data can reside on either medium.

Security architecture

Question

Which of the following should Matt, a security administrator, include when encrypting smartphones? (Select TWO).

Options

  • ASteganography images
  • BInternal memory
  • CMaster boot records
  • DRemovable memory cards
  • EPublic keys

How the community answered

(52 responses)
  • A
    2% (1)
  • B
    92% (48)
  • C
    4% (2)
  • E
    2% (1)

Why each option

Encrypting a smartphone must cover both its internal storage and any removable memory cards, since sensitive data can reside on either medium.

ASteganography images

Steganography hides data within image files and is a data-hiding technique, not an encryption control applied to device storage.

BInternal memoryCorrect

Internal memory is the primary storage location for the operating system, applications, credentials, and user data on a smartphone, and must be encrypted to prevent access if the device is lost or stolen.

CMaster boot records

Master boot records are a concept from traditional PC hard drives and are not a relevant storage component in the architecture of modern smartphones.

DRemovable memory cardsCorrect

Removable memory cards such as microSD cards can store photos, documents, and app data outside the device's built-in encrypted storage, so they must also be encrypted independently to ensure no data is exposed when the card is removed from the device.

EPublic keys

Public keys are cryptographic values used in asymmetric operations and are not a storage location that needs to be included in a device encryption scheme.

Concept tested: Smartphone encryption coverage - internal and removable storage

Source: https://learn.microsoft.com/en-us/mem/intune/protect/encrypt-devices

Topics

#mobile device encryption#removable media#internal memory#endpoint security

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice