exam questions

Exam CAS-003 All Questions

View all questions & answers for the CAS-003 exam

Exam CAS-003 topic 1 question 20 discussion

Actual exam question from CompTIA's CAS-003
Question #: 20
Topic #: 1
[All CAS-003 Questions]

A security analyst is reviewing the corporate MDM settings and notices some disabled settings, which consequently permit users to download programs from untrusted developers and manually install them. After some conversations, it is confirmed that these settings were disabled to support the internal development of mobile applications. The security analyst is now recommending that developers and testers have a separate device profile allowing this, and that the rest of the organization's users do not have the ability to manually download and install untrusted applications. Which of the following settings should be toggled to achieve the goal? (Choose two.)

  • A. OTA updates
  • B. Remote wiping
  • C. Side loading
  • D. Sandboxing
  • E. Containerization
  • F. Signed applications
Show Suggested Answer Hide Answer
Suggested Answer: EF 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
tirajvid
1 year, 5 months ago
These should be the options to enable. Download programs from untrusted developers and manually install them - Side loading Restrict apps from untrusted developers - Use Signed applications Sandboxing or Containerisation is not an options that can be enabled in any modern MDM software. They are concepts.
upvoted 1 times
...
arawaco
3 years, 9 months ago
Maybe D , because sandbonxing isolate fotware/apps. Agree with F.
upvoted 1 times
arawaco
3 years, 8 months ago
Answer E, because the keyword says: «...separate device profile»
upvoted 1 times
...
arawaco
3 years, 8 months ago
I correct my self (sorry) Is Containerization , because sandoboxing (main use) is for testing.
upvoted 2 times
...
...
Trap_D0_r
4 years, 4 months ago
The answer is EF
upvoted 1 times
...
TheThreatGuy
4 years, 4 months ago
I disagree with the idea that it could be containerization. The definition of containerization in mobile devices is “ isolating corporate data into a protected and encrypted container stored on the mobile device”. What you all are referring to is assigning configuration profiles to separate dev team from others. With that said, I believe the answer is side loading and signed applications. It doesn’t say they would be toggled at the same time. So you would toggle the ability to side load unsigned apps for the dev team and secure for everyone else.
upvoted 4 times
D1960
4 years, 1 month ago
Agree the answer is side loading and signed applications. The problem is: the entire organization is allowed to install unauthorized apps. This means that apps do not have to be signed, and side loading apps is allowed. Those practices must be stopped, for all but the development team.
upvoted 1 times
...
...
boblee
4 years, 8 months ago
the answer is EF
upvoted 3 times
...
qwertybob
5 years ago
I agree that one of the answers has to be containerization. So that means sandbox cant be the other answer. I'm more inclined to pick signed applications
upvoted 1 times
...
PDVS
5 years, 1 month ago
The separate device would suggest a sandbox
upvoted 1 times
...
tek
5 years, 3 months ago
E. Containerization - To ensure the dev team still has access to secured company data. F. Signed applications - To ensure everyone else is compliant
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...