QuestionQ219

Cloud Data Security

To safeguard data on user devices in a BYOD environment, the organization should consider requiring all of the following except:

  • A Multifactor authentication
  • B DLP agents
  • C Two-person integrity
  • D Local encryption
Explanation

Multifactor authentication, endpoint DLP controls, and local encryption are measures that protect organizational data on personally owned devices by limiting unauthorized access, controlling data handling, and protecting data at rest. Two-person integrity is a dual-control procedure for sensitive operations rather than a device-data protection control. NIST identifies BYOD as personally owned devices used for work and notes the need to protect organizational data accessed from them.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!