Exam CISA All QuestionsBrowse all questions from this exam
Question 280

End users have been demanding the ability to use their own devices for work, but want to keep personal information out of corporate control. Which of the following would be MOST effective at reducing the risk of security incidents while satisfying end user requirements?

    Correct Answer: A

    Encrypting corporate data on the devices ensures that sensitive organizational information is protected without interfering with the personal data of the end user. This approach effectively reduces the risk of security incidents, as encrypting data helps if the device is lost or stolen, making unauthorized access to corporate data much more difficult. While an acceptable use policy is important for setting user guidelines, it does not directly mitigate security risks as effectively as encrypting the data does.

Discussion
007GeorgeoOption: A

It's A

saado9Option: A

A. Encrypt corporate data on the devices.

3008Option: D

d is answer

3008

the most effective solution to mitigate security risks while still satisfying user requirements is to encrypt corporate data on the devices. This solution ensures that the organization's sensitive information is protected, and personal data on the device remains under the user's control. sorry , answer is A, encrypt.

SwallowsOption: A

While implementing an acceptable use policy (option D) is also important for defining rules and guidelines regarding the use of personal devices for work, it may not directly address the security concerns associated with the coexistence of personal and corporate data on the same device. Encrypting corporate data provides a more robust and targeted solution to mitigate the risk of security incidents while respecting end user preferences for data privacy.