200-201 Question 324
Select 3A company has recently implemented a Mobile Device Management (MDM) solution to secure corporate data on employee devices. During an audit, it was discovered that some devices remain non-compliant with corporate security policies despite being enrolled in the MDM system. Which actions should the cybersecurity team take to ensure compliance?
- A
Enforce device encryption through the MDM policy settings.
- B
Manually install security updates on non-compliant devices.
- C
Require multi-factor authentication (MFA) for accessing corporate resources.
- D
Apply geofencing rules to restrict access based on device location.
- E
Wipe corporate data from devices that fail to meet compliance requirements.
Show answer and explanation
Correct answers: A, C, E
Explanation
To address compliance issues with an MDM system, organizations should enforce security policies such as device encryption and MFA to protect corporate data. If devices remain non-compliant, measures like wiping corporate data ensure sensitive information is not exposed. Manual updates and geofencing, while useful in other contexts, do not directly address the root compliance concerns.
- A. Correct.
Enforcing device encryption ensures that data on mobile devices is protected in case of loss or theft, which is a standard MDM compliance measure.
- B. Incorrect.
Manually installing security updates is not a scalable or practical solution for ensuring compliance across multiple devices.
- C. Correct.
Requiring multi-factor authentication (MFA) adds an additional layer of security, ensuring that only authorized users can access corporate data.
- D. Incorrect.
Geofencing can enhance security but is not directly related to addressing compliance issues discovered in the audit.
- E. Correct.
Wiping corporate data from non-compliant devices is a standard enforcement action to protect sensitive information when compliance cannot be assured.