exam questions

Exam SK0-005 All Questions

View all questions & answers for the SK0-005 exam

Exam SK0-005 topic 1 question 6 discussion

Actual exam question from CompTIA's SK0-005
Question #: 6
Topic #: 1
[All SK0-005 Questions]

A company has implemented a requirement to encrypt all the hard drives on its servers as part of a data loss prevention strategy. Which of the following should the company also perform as a data loss prevention method?

  • A. Encrypt all network traffic
  • B. Implement MFA on all the servers with encrypted data
  • C. Block the servers from using an encrypted USB
  • D. Implement port security on the switches
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
fluke92
5 months, 2 weeks ago
Selected Answer: B
Chat GPT: While encrypting hard drives is an excellent data loss prevention (DLP) strategy, it is equally important to secure access to the servers where encrypted data is stored. Implementing Multi-Factor Authentication (MFA) ensures that even if an unauthorized user gains access to credentials, they will still need a second authentication factor (e.g., a mobile app code, hardware token, or biometric data) to access the server. This adds an essential layer of security to protect sensitive data.
upvoted 2 times
...
SecNoob27639
7 months, 2 weeks ago
Selected Answer: A
A is the only real DLP option presented. B is access control which is part of DLP, but the big-3 of DLP are protecting Data at Rest (server), Data in Transit (network) and Data in Use (user-end). C and D are also more about access control and network segmentation than they are about preventing data loss.
upvoted 1 times
...
c32afa8
8 months, 2 weeks ago
Port security is a vital component of network security that helps protect network ports from unauthorized access and potential security threats. By implementing robust port security measures, organizations can safeguard sensitive data, maintain network integrity, and ensure compliance with regulatory requirements. Port security is the more correct answer where it is giving you an answer. A is correct, but vague. The question is hinting at Data in transit, as it is giving you the other end of the scenario already.
upvoted 1 times
...
Fart2023
10 months ago
Selected Answer: B
Another BS CompTIA question....
upvoted 3 times
...
Sweety_Certified7
1 year, 3 months ago
Selected Answer: A
Answer A
upvoted 1 times
...
GRIN13
1 year, 4 months ago
Selected Answer: B
B is correct because MFA is the next step to prevent data loss Prevention.
upvoted 2 times
...
Grumpy_Old_Coot
1 year, 7 months ago
Selected Answer: C
We're looking at Data Loss Prevention here - which is "removing" data from where it is supposed to stay, not accessing data when we are not supposed to - Blocking USB media (Flash drives, thumb drives, external hard drives, etc) would prevent copying ("removing") data from the network.
upvoted 2 times
...
kloug
2 years, 1 month ago
no aaaa corrcet
upvoted 1 times
...
kloug
2 years, 1 month ago
bbbbbbbbbbbbbbbb
upvoted 2 times
...
Obi_Wan_Jacoby
2 years, 3 months ago
Selected Answer: D
I believe D is it. Of the options, this is the only one that strikes me as a method. Study up the differences in strategy vs method
upvoted 1 times
...
Pongsathorn
2 years, 5 months ago
Selected Answer: A
There are two different times when data encryption protects information: when the data is in transit across the network or at rest on the drive. The Official CompTIA Server+ Study Guide (Exam SK0-005) page 214. You have implemented "Data at rest" and then you should do "Data in transit".
upvoted 3 times
...
TylerKiro
2 years, 6 months ago
Selected Answer: D
I wouldn't choose 'A' because not all network traffic needs to be encrypted, Client-Client or Traffic over the internet encryption seems wild. No need for 'B' since it is already encrypted. 'C'... If you do that then no USBs are usable and that's needed for a lot of things. Which leaves 'D' to be the most logical answer.
upvoted 1 times
...
paperburn
2 years, 7 months ago
You should not have physical access to the ports so I would look at data in motion (network traffic)
upvoted 1 times
...
King2
2 years, 7 months ago
Selected Answer: A
Reviewed answers again and took back my last answer (C) Answer seems to be A. The company encrypted data "at rest", so they need to encrypt data "in transit".
upvoted 2 times
...
King2
2 years, 7 months ago
Selected Answer: C
I think C is correct.
upvoted 2 times
...
dnc1981
3 years, 1 month ago
I think the correct answer might be A or C. If data is to be encrypted at rest, it probably should be encrypted at rest as well. Or you might block USB drives to avoid data being exfiltrated. Even if the USB drives are encrypted they still represent a risk because data could be efiltrated via USB drive
upvoted 3 times
Dion79
3 years, 1 month ago
I agree with you. I'd probably go with C.
upvoted 1 times
...
szl0144
2 years, 8 months ago
I will go with C
upvoted 1 times
...
...
Ariel235788
3 years, 2 months ago
Wouldnt Port Security be considered Technical rather than Preventative? The question itself says 'encrypt data at rest as a preventative' why wouldnt encrypt data in transit be considered a preventative??
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago