Exam CISA All QuestionsBrowse all questions from this exam
Question 220

A help desk has been contacted regarding a lost business mobile device. The FIRST course of action should be to:

    Correct Answer: B

    When a help desk is contacted about a lost business mobile device, the first course of action should be to verify the user's identity through a challenge response system. This ensures that the person who is reporting the loss is indeed the legitimate owner of the device. Without confirming the identity of the caller, further actions like attempting to locate the device could lead to disclosing sensitive information to an unauthorized party, potentially resulting in privacy violations or other security issues.

Discussion
botherder88Option: B

Should be B.. Without validating the identity of the caller, identifying the supposedly lost phone can lead to disclosing location of another person to the caller, which can lead to privacy violation too

SwallowsOption: D

While verifying the user's identity through a challenge response system (option B) is important for security purposes, it may not be the most urgent action to take in this situation. The priority should be to locate the lost device to prevent any potential security breaches or data loss. Once the device is located or if it cannot be located remotely, then verifying the user's identity and taking further security measures would be appropriate.

SwallowsOption: D

MDM should be in place since it is a business device.

akosigengenOption: B

I believe B is the correct answer.

blues_leeOption: B

Should be B