SY0-301 · Question #903
After copying a sensitive document from his desktop to a flash drive, Joe, a user, realizes that the document is no longer encrypted. Which of the following can a security technician implement to…
The correct answer is D. File level encryption. File level encryption encrypts individual files as discrete objects, so the encryption travels with the file regardless of where it is moved or copied. When Joe copies a file-level encrypted document to a flash drive or network share, it remains encrypted. Whole disk encryption…
Question
After copying a sensitive document from his desktop to a flash drive, Joe, a user, realizes that the document is no longer encrypted. Which of the following can a security technician implement to ensure that documents stored on Joe's desktop remain encrypted when moved to external media or other network based storage?
Options
- AWhole disk encryption
- BRemovable disk encryption
- CDatabase record level encryption
- DFile level encryption
How the community answered
(44 responses)- A5% (2)
- B2% (1)
- C2% (1)
- D91% (40)
Explanation
File level encryption encrypts individual files as discrete objects, so the encryption travels with the file regardless of where it is moved or copied. When Joe copies a file-level encrypted document to a flash drive or network share, it remains encrypted. Whole disk encryption only protects data while it resides on the encrypted disk - when a file is copied off the disk, it is decrypted in transit and arrives unencrypted on the destination. Removable disk encryption protects the flash drive itself but requires configuring every possible destination. Database record-level encryption is specific to database fields and is not applicable here.
Topics
Community Discussion
No community discussion yet for this question.