exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 12 discussion

Actual exam question from Isaca's CISM
Question #: 12
Topic #: 1
[All CISM Questions]

Which of the following is the MOST important consideration in a bring your own device (BYOD) program to protect company data in the event of a loss?

  • A. The ability to remotely locate devices
  • B. The ability to centrally manage devices
  • C. The ability to restrict unapproved applications
  • D. The ability to classify types of devices
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mfourati
Highly Voted 2 years, 6 months ago
The ability to centrally manage devices, allows to locate the device and secure it's content immediately (wipe or encrypt data...)
upvoted 8 times
...
PizCISM
Most Recent 6 days, 1 hour ago
Selected Answer: B
It's a tricky thing with BYOD, but you must be capable of remote wiping a device if it is "lost" because it's not a company device. This trade off becomes complicated in terms of liability and wiping someone's personal info from their device. What if a rogue IT person maliciously wipes a device? For those advocating for A - locating a device tells you where it is, but it doesn't secure the data on it. The data remains vulnerable until further action is taken. Hence, enterprise data security take priority over personal data loss.
upvoted 1 times
...
ntgc
9 months, 1 week ago
B is right because locating the device is not as important as ability to manage it remotely when it is lost.
upvoted 2 times
...
Viperhunter
9 months, 1 week ago
Selected Answer: B
Centrally managing devices in a BYOD program allows the organization to enforce security policies, apply updates, monitor compliance, and take action in case of a security incident. This includes the ability to remotely wipe or disable devices to prevent unauthorized access to company data in the event of a loss or theft. While the ability to remotely locate devices (option A), the ability to restrict unapproved applications (option C), and the ability to classify types of devices (option D) are also important considerations, central management provides a comprehensive and proactive approach to maintaining control over devices and ensuring the security of company data on those devices.
upvoted 2 times
...
JanBas
1 year, 2 months ago
it says in the "event of a data loss". should not it be the ability to remote wipe?
upvoted 4 times
Noragretz
5 months, 1 week ago
Which falls under the ability to centrally manage. B
upvoted 1 times
...
...
Soleandheel
1 year, 7 months ago
B. The ability to centrally manage devices......that's were tools like MDM (Mobile Device Management) or VDI (Virtual Desktop Infrastructure) come to play.
upvoted 1 times
...
boyladdudeman
1 year, 7 months ago
Selected Answer: D
You cannot centrally manage employees personal devices. First and foremost you must classify, then provide guidance for each class.
upvoted 3 times
...
peelu
2 years ago
Selected Answer: B
B. The ability to centrally manage devices
upvoted 1 times
...
richck102
2 years, 1 month ago
B. The ability to centrally manage devices
upvoted 1 times
...
Monkey2173
2 years, 1 month ago
B cannot be the answer as it's unacceptable to control or manage a BYOD as it's a personal non-corporate device.
upvoted 4 times
...
YetiSpaghetti
2 years, 4 months ago
Selected Answer: B
Can't do A, C, and D effectively without B.
upvoted 3 times
...
Ziggybooboo
2 years, 6 months ago
Remote wipe in my opinion
upvoted 3 times
unassassinable
1 year, 11 months ago
And what exactly do you need in order to wipe a device from a remote location?
upvoted 4 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...