SY0-501 · Question #224
A systems administrator wants to protect data stored on mobile devices that are used to scan and record assets in a warehouse. The control must automatically destroy the secure container of mobile…
The correct answer is A. Geofencing E. Containerization. To protect sensitive data on mobile devices by automatically destroying its secure container if the device exits a defined area, an administrator should implement geofencing combined with data containerization.
Question
A systems administrator wants to protect data stored on mobile devices that are used to scan and record assets in a warehouse. The control must automatically destroy the secure container of mobile devices if they leave the warehouse. Which of the following should the administrator implement? (Select two.)
Options
- AGeofencing
- BRemote wipe
- CNear-field communication
- DPush notification services
- EContainerization
How the community answered
(22 responses)- A82% (18)
- B5% (1)
- C5% (1)
- D9% (2)
Why each option
To protect sensitive data on mobile devices by automatically destroying its secure container if the device exits a defined area, an administrator should implement geofencing combined with data containerization.
Geofencing defines a virtual geographic boundary (the warehouse perimeter) and can be configured to automatically trigger specific actions, such as data destruction, when a mobile device moves outside of this defined zone.
Remote wipe is typically a manual, administrator-initiated action to erase data from a device, not an automatic, location-triggered destruction of a specific container.
Near-field communication (NFC) is a short-range wireless technology used for data exchange between devices, not for defining geographical boundaries or creating secure data containers.
Push notification services are used for delivering messages or alerts to mobile devices and do not provide functionality for location-based security policies or data containerization.
Containerization creates a secure, isolated environment on a mobile device for corporate data and applications, allowing for selective data destruction (wiping) of only the corporate container without affecting the user's personal data or applications on the device.
Concept tested: Mobile Device Management (MDM) / Mobile Application Management (MAM) policies
Source: https://learn.microsoft.com/en-us/mem/intune/apps/app-protection-policies
Topics
Community Discussion
No community discussion yet for this question.