Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam SY0-601 topic 1 question 679 discussion

Actual exam question from CompTIA's SY0-601
Question #: 679
Topic #: 1
[All SY0-601 Questions]

A company recently experienced a significant data loss when proprietary information was leaked to a competitor. The company took special precautions by using proper labels; however, email filter logs do not have any record of the incident. An investigation confirmed the corporate network was not breached, but documents were downloaded from an employee's COPE tablet and passed to the competitor via cloud storage. Which of the following is the best mitigation strategy to prevent this from happening in the future?

  • A. User training
  • B. CASB
  • C. MDM
  • D. EDR
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
damianUY
Highly Voted 6 months, 3 weeks ago
Selected Answer: C
This is a typical question with many concepts to confuse. The key is to look at the incident; the incident involved an employee using a TABLET, downloading a file, and then uploading it to a competitor's cloud. The text does not specify that the employee used their own cloud to transfer the file, which would be odd, meaning they would download the file and then place it on their own cloud, and then what, grant access to the competitor? It doesn't make sense. In my opinion, the best solution is an MDM with specific policies prohibiting the download and exfiltration of data. The key point is that they mention it was a tablet. The answer, in my view, is MDM.
upvoted 18 times
Jackwasblk
5 months, 4 weeks ago
Exactly lol 😂 download, just to upload to their own cloud storage, just to send it from there. Mind you how obvious this would be to get caught
upvoted 6 times
...
...
durel
Most Recent 5 days, 9 hours ago
Selected Answer: C
mdm is the answer
upvoted 1 times
...
kaixin
1 week, 1 day ago
Selected Answer: B
Not MDM because you need MAM to stop prevent this.
upvoted 1 times
...
shady23
1 week, 1 day ago
Selected Answer: B
The CASB serves as a policy enforcement center, consolidating multiple security policy enforcement functions and applying themto everything your business uses in the cloud—regardless of the kind of device attempting to access it, including unmanaged smartphones and personal laptops. The company took special precautions by using proper labels for data. If you set such a CASB policy that restricts uploading those data that was labeled as sensitive, one cannot upload it to the cloud storage. measures such as containerization or encryption. References: https://www.blackberry.com/us/en/solutions/corporate-owned-personally-enabled https://www.professormesser.com/security-plus/sy0-601/sy0-601-video/mobile-device-management/
upvoted 1 times
...
9e20f4f
1 week, 2 days ago
were downloaded from the cloud and passed to the cloud. B
upvoted 1 times
...
spearous
1 week, 4 days ago
Selected Answer: B
MDM is not correct, because you can't prevent an employee to download company's data to his device, when he is really in need of that data. so MDM won't work. the only behavior that pass the line is, he uploaded the data to the cloud. this is should be blocked. I see some argue CASB is only for own cloud, well, CASB can be installed in 3rd party cloud, search for "CASB AWS" and you will see how amazon provide CASB to his customer.
upvoted 1 times
...
russian
1 week, 5 days ago
Selected Answer: C
mobile device management
upvoted 1 times
...
Geronemo
3 weeks, 1 day ago
Selected Answer: C
Here's why: MDM solutions provide centralized control over mobile devices, allowing organizations to enforce security policies, manage device configurations, and remotely monitor and manage devices. By implementing MDM, the company can: Enforce security policies: MDM allows the company to enforce policies such as data encryption, device passcode requirements, and restrictions on data sharing to prevent unauthorized access to sensitive information. Monitor and manage devices: MDM solutions enable the company to remotely monitor device activity, track device location, and remotely wipe devices in case of loss or theft. This helps prevent unauthorized access to sensitive data stored on the device. Control app installation and usage: MDM allows the company to control which apps can be installed and used on employee devices. This can prevent employees from using unauthorized apps or accessing unauthorized cloud storage services where sensitive data could be leaked.
upvoted 1 times
...
dbdbfb0
3 weeks, 2 days ago
Selected Answer: C
After putting some thought into this question, here is what I think the important factor is. The question states "documents were downloaded from an employee's COPE tablet". This seems to me to be the point of failure in the scenario. Having said that, I think the best option to correct that would be MDM. With MDM the data would be protected through classification and tagging (which is stated in the scenario) and the use of data encryption.
upvoted 1 times
...
russian
3 weeks, 6 days ago
Selected Answer: C
not casb on this one guys
upvoted 3 times
...
johnabayot
3 months, 2 weeks ago
Selected Answer: B
B. CASB In this scenario, a CASB could have prevented the employee from downloading sensitive documents from the corporate network to their personal device, or from uploading them to a cloud storage service that is not sanctioned by the company.
upvoted 3 times
memodrums
2 months, 4 weeks ago
This would be true if there was context saying that the company's infrastructure resided in the cloud. Since it does not provide that info, I would assume its C.
upvoted 3 times
...
...
DrCo6991
3 months, 2 weeks ago
Selected Answer: B
Along with DChilds comments regarding other similar questions, I'd like to add question 698 as a reference for you all. You'll see again that MDM is not an option. and CASB is the correct answer.
upvoted 2 times
...
BD69
3 months, 2 weeks ago
CASB is only going to work if the data was uploaded via the company's cloud storage, if they were using the competitor's cloud storage (which they did), CASB would be useless. B) is definitely the wrong answer.
upvoted 2 times
...
buscan422
4 months, 2 weeks ago
Selected Answer: C
With MDM you can block app store which can prevent this
upvoted 1 times
...
Peshokp
4 months, 2 weeks ago
Selected Answer: C
If the COPE device doesn't have an MDM solution, the employee can disconnect from the company network and connect to a hotspot to a public network, where there is no DLP or CASB ,bypassing all company network security.
upvoted 3 times
...
ganymede
4 months, 3 weeks ago
Selected Answer: B
B. CASB The data was labeled. That means a DLP policy would detect the exfiltration. A CASB often has a DLP functionality. So a CASB with DLP functionality would have detected the data exfiltration.
upvoted 1 times
ganymede
3 months, 3 weeks ago
I'm changing to MDM. But both are correct. CASB can do this. There are CASB integrations with MDM. For example, there is a Palo alto global protect integration for Microsoft Intune. But MDM can prevent this without CASB by blocking the installing of cloud storage apps on the mobile device.
upvoted 1 times
...
BD69
3 months, 2 weeks ago
but CASB would only work on the company's cloud, not anyone else's cloud (the competitors). MSM would prevent the user from using any resource not authorized on a COPE tablet, including other cloud services (if configured, of course).
upvoted 1 times
...
...
Petercx
5 months, 3 weeks ago
Selected Answer: B
B. CASB: This stands for cloud access security broker, a tool that can monitor and control the access and usage of cloud services by COPE devices. This can help prevent unauthorized data transfers and enforce data loss prevention policies.
upvoted 2 times
Peshokp
4 months, 2 weeks ago
I changing my Answer to C.MDM. If the COPE device doesn't have an MDM solution, the employee can disconnect from the company network and connect to a hotspot to a public network, where there is no DLP or CASB ,bypassing all company network security.
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...