200-201 exam dumps

200-201 practice question 324 of 405

Cisco Cybersecurity Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-201 Question 324

Select 3

A company has recently implemented a Mobile Device Management (MDM) solution to secure corporate data on employee devices. During an audit, it was discovered that some devices remain non-compliant with corporate security policies despite being enrolled in the MDM system. Which actions should the cybersecurity team take to ensure compliance?

  1. A

    Enforce device encryption through the MDM policy settings.

  2. B

    Manually install security updates on non-compliant devices.

  3. C

    Require multi-factor authentication (MFA) for accessing corporate resources.

  4. D

    Apply geofencing rules to restrict access based on device location.

  5. E

    Wipe corporate data from devices that fail to meet compliance requirements.

Show answer and explanation

Correct answers: A, C, E

Explanation

To address compliance issues with an MDM system, organizations should enforce security policies such as device encryption and MFA to protect corporate data. If devices remain non-compliant, measures like wiping corporate data ensure sensitive information is not exposed. Manual updates and geofencing, while useful in other contexts, do not directly address the root compliance concerns.

  • A. Correct.

    Enforcing device encryption ensures that data on mobile devices is protected in case of loss or theft, which is a standard MDM compliance measure.

  • B. Incorrect.

    Manually installing security updates is not a scalable or practical solution for ensuring compliance across multiple devices.

  • C. Correct.

    Requiring multi-factor authentication (MFA) adds an additional layer of security, ensuring that only authorized users can access corporate data.

  • D. Incorrect.

    Geofencing can enhance security but is not directly related to addressing compliance issues discovered in the audit.

  • E. Correct.

    Wiping corporate data from non-compliant devices is a standard enforcement action to protect sensitive information when compliance cannot be assured.

Timed practice exam

Take a 200-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam