exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 86 discussion

Actual exam question from CompTIA's CS0-002
Question #: 86
Topic #: 1
[All CS0-002 Questions]

An organization wants to ensure the privacy of the data that is on its systems. Full disk encryption and DLP are already in use. Which of the following is the BEST option?

  • A. Require all remote employees to sign an NDA.
  • B. Enforce geofencing to limit data accessibility.
  • C. Require users to change their passwords more frequently.
  • D. Update the AUP to restrict data sharing.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Henry88
Highly Voted 2 years, 4 months ago
Why do so many of these questions have such conflicting answers? I am more confused now than ever before since I started studying for CYSA 5 months ago. Maybe I shouldn't even bother.
upvoted 13 times
kill_chain
2 years ago
did you end up writing?
upvoted 3 times
...
...
RobV
Most Recent 1 year, 6 months ago
Selected Answer: B
B. Enforce geofencing to limit data accessibility. Reasoning: Geofencing allows the organization to define geographical boundaries where data can be accessed, adding an extra layer of control. It complements existing security measures by restricting access based on the physical location of the user or device. This measure is particularly effective for remote employees or devices accessing sensitive data.
upvoted 1 times
...
dickchappy
1 year, 7 months ago
Selected Answer: B
It's crazy to me that people are saying NDA and AUP when those are DETERRENTS, they do not actually prevent anything. Geofencing is the correct answer.
upvoted 1 times
...
AbdallaAM
1 year, 8 months ago
Selected Answer: D
D. Update the AUP (Acceptable Use Policy) to restrict data sharing. Modifying the AUP to clearly define and restrict data sharing practices, coupled with ongoing user training and awareness programs, helps in establishing organizational norms and expectations regarding data privacy. It can regulate how data should be handled, shared, and processed by the employees, providing a policy framework that supports the technical measures (like DLP and encryption) in place.
upvoted 1 times
...
kumax
1 year, 9 months ago
Selected Answer: D
ChatGPT: go for Acceptable Use Pllicy AUP covers more than geofencing.
upvoted 1 times
5H4K1R
1 year, 7 months ago
ChatGPT: B. Enforce geofencing to limit data accessibility. Explanation: Geofencing is a technology that uses GPS or RFID to create a virtual geographic boundary. By implementing geofencing, an organization can restrict access to sensitive data based on the physical location of the user or device. This additional layer of security complements full disk encryption and DLP (Data Loss Prevention) measures. It helps ensure that data can only be accessed from specific geographical locations, adding an extra dimension to data protection.
upvoted 1 times
...
...
Big_Dre
1 year, 10 months ago
Selected Answer: B
perimeter security or geo fencing is the only possible next step.
upvoted 1 times
...
kyky
2 years ago
Selected Answer: D
D. Update the AUP to restrict data sharing.
upvoted 2 times
kyky
2 years ago
While full disk encryption and DLP (Data Loss Prevention) are already in use, they provide protection against data loss or leakage. However, updating the AUP adds an additional layer of policy-based control specifically targeting data sharing, thus enhancing the organization's data privacy measures
upvoted 2 times
...
...
nedeajob12
2 years, 2 months ago
Selected Answer: D
the BEST option to ensure the privacy of data on an organization's systems that already have full disk encryption and DLP in use is to update the Acceptable Use Policy (AUP) to restrict data sharing.
upvoted 3 times
...
Al75diablo
2 years, 3 months ago
DLP and Encryption are sound technical controls that ensure data protection (which would include the Privacy). As mentioned below they are looking for a Managerial control, which would point to "Company Policy" - AUP: This would cover the organisation with sharing of information due to the consequences that will be imposed (even legal). Answer should be D in my opinion
upvoted 1 times
...
tatianna
2 years, 3 months ago
B. Enforce geofencing to limit data accessibility would be the BEST option to ensure the privacy of the data that is on the organization's systems. Geofencing technology can help restrict access to sensitive data from outside certain geographic locations, which can help prevent unauthorized access to the data. This is a strong control that can help prevent both accidental and intentional unauthorized access to sensitive data, and it is often used in combination with other security measures like full disk encryption and DLP. While NDAs, password policies, and AUPs can help protect data privacy in certain circumstances, they are not as effective at preventing unauthorized access as geofencing.
upvoted 2 times
...
2Fish
2 years, 3 months ago
Selected Answer: B
B. geofencing can restrict access to data based on the geographic location of the user or device, helping to prevent unauthorized access or data leakage. It is the best option to complement the existing security measures and ensure data privacy.
upvoted 2 times
2Fish
2 years, 3 months ago
Changing my answer to D. After more research and reading the comments, D does seem to be what this question is looking for.
upvoted 2 times
...
...
JoInn
2 years, 4 months ago
Selected Answer: A
This question is making it pretty clear that they are after managerial controls, since technicals are in place and seems to be working fine. A is clearly the correct answer.
upvoted 2 times
...
jleonard_ddc
2 years, 4 months ago
Selected Answer: B
Privacy of data is a concern of who is accessing it. NDA's are more of a legal protection against the data itself being exposed by people who already have access. Geofencing would further help limit who can access it.
upvoted 1 times
...
talosDevbot
2 years, 4 months ago
Selected Answer: D
I would go with D, because of the keyword "privacy" in the question. If it asked how to ensure the SECURITY, then I would pick B
upvoted 2 times
...
absabs
2 years, 4 months ago
Selected Answer: D
A and C not necessarily. i am confusing B and D, but D is most correct i think.
upvoted 2 times
...
10cccordrazine
2 years, 4 months ago
Selected Answer: D
I think it's D. Exam guide book, privacy is about the control the user has over who their data is shared with. A is weird because only references remote workers. B could help, but you already have DLP, and doesn't relate as much to privacy as D, I feel.
upvoted 3 times
...
AaronS1990
2 years, 4 months ago
Selected Answer: B
B is the only one that will actually ensure that people can't do it. Signing an NDA for example is simply them saying they won't disclose information, it doesn't actually seal their lips
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...