CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 220


A help desk has been contacted regarding a lost business mobile device. The FIRST course of action should be to:

Show Answer
Correct Answer: B

When a help desk is contacted about a lost business mobile device, the first course of action should be to verify the user's identity through a challenge response system. This ensures that the person who is reporting the loss is indeed the legitimate owner of the device. Without confirming the identity of the caller, further actions like attempting to locate the device could lead to disclosing sensitive information to an unauthorized party, potentially resulting in privacy violations or other security issues.

Discussion

5 comments
Sign in to comment
botherder88Option: B
Feb 14, 2023

Should be B.. Without validating the identity of the caller, identifying the supposedly lost phone can lead to disclosing location of another person to the caller, which can lead to privacy violation too

blues_leeOption: B
Jan 25, 2024

Should be B

akosigengenOption: B
Mar 2, 2024

I believe B is the correct answer.

SwallowsOption: D
Apr 9, 2024

MDM should be in place since it is a business device.

SwallowsOption: D
Jun 2, 2024

While verifying the user's identity through a challenge response system (option B) is important for security purposes, it may not be the most urgent action to take in this situation. The priority should be to locate the lost device to prevent any potential security breaches or data loss. Once the device is located or if it cannot be located remotely, then verifying the user's identity and taking further security measures would be appropriate.