100-160 exam dumps

100-160 practice question 138 of 265

Cisco Certified Support Technician (CCST) Cybersecurity. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-160 Question 138

Select 2

A healthcare organization is implementing a Bring Your Own Device (BYOD) policy for its employees. To ensure compliance with HIPAA regulations, which of the following measures should be implemented? (Select two.)

  1. A

    Ensure all devices accessing sensitive data have full-disk encryption enabled.

  2. B

    Deploy a Mobile Device Management (MDM) solution to enforce device configuration policies.

  3. C

    Allow employees to install any applications they choose on their devices.

  4. D

    Disable automatic software updates to prevent compatibility issues with medical systems.

  5. E

    Require regular backups of all devices to a secure, encrypted storage location.

Show answer and explanation

Correct answers: A, B

Explanation

HIPAA requires organizations to implement safeguards that protect sensitive health information. Enabling device encryption and deploying an MDM solution are critical steps in ensuring that BYOD devices comply with these regulations. These measures mitigate the risks of unauthorized access and ensure that devices adhere to the organization's security policies.

  • A. Correct.

    Full-disk encryption ensures that sensitive data stored on devices is protected against unauthorized access, which is critical for HIPAA compliance.

  • B. Correct.

    An MDM solution allows the organization to enforce security policies, such as device configuration management and encryption, ensuring compliance with HIPAA regulations.

  • C. Incorrect.

    Allowing employees to install any applications without restriction poses a security risk and could lead to non-compliance with HIPAA due to potential data leakage or malware threats.

  • D. Incorrect.

    Disabling automatic software updates increases the risk of vulnerabilities being exploited, which is contrary to HIPAA's requirement for maintaining secure systems.

  • E. Incorrect.

    While regular backups are a good practice, HIPAA specifically focuses on protecting sensitive health information rather than backing up personal devices in a BYOD setup.

Timed practice exam

Take a 100-160 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam