The Chief Information Security Officer wants to prevent exfiltration of sensitive information from employee cell phones when using public USB power charging stations. Which of the following would be the BEST solution to implement?
The question is talking about PUBLIC USB power charging stations, the CISO cannot for sure place USB data blocker on all publich USB ports in the world !
The CISO also can't disable employees cell phones ports, as these are usually personal properties.
USB OTG is obviously playing the oppostie of what's required if used.
DLP is the answer, and it can be implemented as following:
1. Create a User Group based on AD - (You will need to have a Directory Connection configured)
2. Create a policy that detects the data AND includes a rule for the User Group. - This way it will ONLY work for those users
3. Test to make sure the policy works for ONLY those users.
4. Create a Response rule that BLOCK Endpoint AND only applies to USB
5. Apply this new Response Rule to the Policy (Response Rule Tab)
That's correct, he can't place data blockers on all public USB ports, but you can get them as portable peripherals that users can carry around with them, they're only small and can just sit on the end of the charging cable.
The question is about enforcement when dealing with sensitive information. What if user accidentally plugs in without data blocker? Go with DLP to be sure.
A USB data blocker can prevent someone from writing any data to a
USB drive. Some USB data blockers will also prevent systems from
reading data from a USB or other removable device.
Organizations recognize that removable media can be an attack vector,
so it’s common for an organization to include security policy statements to
prohibit the use of USB flash drives and other removable media. Some
technical policies block the use of USB drives completely. A USB data
blocker prevents users from writing any data to a USB drive. Some USB
data blockers will also prevent systems from reading data from a USB or
other removable device. This prevents malware from being delivered via
removable media
DLP solutions monitor and control data transfers within an organization’s network and are more focused on preventing data leaks through various channels, such as email, cloud storage, or removable devices.
A USB data blocker, also known as a "USB condom" or "USB pass-through device," is a hardware device that prevents data transfer over USB connections while allowing the device to charge. It does this by physically blocking the data pins on the USB cable, only allowing power transfer between the device and the charging station. By using a USB data blocker, employees can safely charge their cell phones at public USB power charging stations without worrying about data exfiltration or potential malware infections through the USB port.
The other options are not suitable for the scenario described:
A. DLP (Data Loss Prevention) is a broader security measure used to prevent unauthorized data exfiltration or leakage, but it typically operates at the software or network level and may not directly address the USB charging station issue.
A USB data blocker, also known as a USB condom or charging blocker, is a small device that allows a device to be charged using a USB charging cable but blocks data transfer between the device and the USB port. When connected to a public USB charging station, it prevents any potential data exfiltration or unauthorized access to sensitive information from the connected device.
From a Security standpoint, a data blocker is much more secure as it physically takes away the data pins this is the "best" method as although DLP might give slight convenience if you forgot your cable, there are still ways around it
The right answer for this question is A. The question ask for the best solution and the best solution is to deploy a DLP software on each employee cell phone. It is a way much cheaper to do than buy a piece of hardware( USB Data Blocker) for each employee.
Secondly, if the employee failed or forgot to use the USB Data Blocker at Airport or coffee shops.............It becomes an ineffective solution. But the DLP software either Endpoint DLP or Network DLP works without human interference to prevent Data Loss. The correct Answer is A and it`s the BEST solution according to the question. Thank you
B. USB Data Blocker.
an employee could carry a USB data blocker device with them to use at public USB power charging stations. A USB data blocker is a small device that plugs into the USB port and blocks the data transfer pins, while allowing the power pins to connect, so the device can be charged without any data being transferred. This would prevent any potential data exfiltration from the employee's device while it is being charged at a public charging station.
Answer is B.
A USB data blocker, also known as a “USB condom” (really, no kidding!), is a device that allows you to plug into USB charging ports including charging kiosks, and USB ports on gadgets owned by other people.
The main purpose of using one is to eliminate the risk of infecting your phone or tablet with malware, and even prevent hackers to install/execute any malicious code to access your data.
Espero no causar molestias por dejar opinios en español, sin duda a muchos les servira.
La respuesta correcta es la B, la guía oficial habla de bloqueadores de datos USB como la mitigación contra el robo de datos cuando un dispositvo es conectado en un cargador público.
This section is not available anymore. Please use the main Exam Page.SY0-601 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Blake89
Highly Voted 2 years, 4 months agoDapsie
1 year agogobybill
1 year agoFQ
Highly Voted 2 years, 8 months agoarrowphoto7604493ahmed
2 years, 1 month agoBlake89
2 years, 4 months agoNBE
2 years, 3 months agoDittoBrando
1 year, 2 months agoJakalan7
2 years, 8 months agoExamTopicsDiscussor
2 years, 7 months ago[Removed]
2 years, 3 months agoExamPasser420
2 years agogobybill
Most Recent 1 year agoLordJaraxxus
1 year, 2 months agoComPCertOn
1 year, 7 months agochaddaddy
1 year, 7 months agofgfj
1 year, 8 months agoProtract8593
1 year, 10 months agoApplebeesWaiter1122
1 year, 10 months agoPythetic
2 years, 1 month agoarrowphoto7604493ahmed
2 years, 1 month agoattesco
2 years, 2 months agoprincajen
2 years, 2 months agoOmi0204
2 years, 2 months agoApplebeesWaiter1122
2 years, 2 months agoAlwaysRunning
2 years, 2 months agoramesh2022
2 years, 3 months ago