nerdexam
CompTIA

SY0-501 · Question #460

Joe, a salesman, was assigned to a new project that requires him to travel to a client site. While waiting for a flight, Joe, decides to connect to the airport wireless network without connecting to…

The correct answer is A. Policy violation. Joe's decision to use an unsecured public airport Wi-Fi to send confidential emails without a VPN led to their interception and a data breach. This incident was most likely caused by a policy violation, as Joe failed to adhere to company security protocols.

Submitted by alyssa_d· Mar 4, 2026Security program management and oversight

Question

Joe, a salesman, was assigned to a new project that requires him to travel to a client site. While waiting for a flight, Joe, decides to connect to the airport wireless network without connecting to a VPN,and the sends confidential emails to fellow colleagues. A few days later, the company experiences a data breach. Upon investigation, the company learns Joe's emails were intercepted. Which of the following MOST likely caused the data breach?

Options

  • APolicy violation
  • BSocial engineering
  • CInsider threat
  • DZero-day attack

How the community answered

(46 responses)
  • A
    74% (34)
  • B
    15% (7)
  • C
    4% (2)
  • D
    7% (3)

Why each option

Joe's decision to use an unsecured public airport Wi-Fi to send confidential emails without a VPN led to their interception and a data breach. This incident was most likely caused by a policy violation, as Joe failed to adhere to company security protocols.

APolicy violationCorrect

Joe's action of connecting to a public airport Wi-Fi and sending confidential emails without using a VPN indicates a direct disregard for established security protocols, which constitutes a policy violation. Most organizations have policies requiring the use of a VPN for sensitive communications over untrusted networks to ensure data confidentiality and integrity, and failing to follow this directly exposed the emails.

BSocial engineering

Social engineering involves manipulating individuals into performing actions or divulging confidential information, which did not occur in this scenario as Joe willingly connected to the network and sent emails without coercion.

CInsider threat

An insider threat involves a current or former employee misusing authorized access, but Joe's actions were a failure to follow established procedure rather than an intentional misuse of privileged access or a direct malicious act.

DZero-day attack

A zero-day attack exploits previously unknown vulnerabilities in software or hardware, but the incident stemmed from Joe's unsecured connection over a public network, not a novel exploit against a system vulnerability.

Concept tested: Security policy adherence and secure remote access practices

Source: https://learn.microsoft.com/en-us/windows-server/remote/remote-access/vpn/vpn-overview

Topics

#acceptable use policy#wireless security#VPN#data breach

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice