220-1102 Question 505
Single answerConfiguration profilesA company uses a mobile device management (MDM) platform to manage employee-owned smartphones enrolled for email and Wi-Fi access. Several users report that after enrollment, their phones automatically receive the corporate email account settings, required Wi-Fi SSID, and a passcode policy without needing manual configuration. Which MDM feature is MOST likely being used to apply these settings consistently across all enrolled devices?
- A
A remote wipe policy
- B
A configuration profile
- C
A screen lock timeout
- D
An asset inventory report
Show answer and explanation
Correct answer: B
Explanation
The best answer is a configuration profile. In a real-world MDM deployment, configuration profiles are used to standardize settings across managed devices so users do not need to manually enter corporate email, wireless network, VPN, or security settings. This improves consistency, reduces setup errors, and helps enforce organizational policies on enrolled devices. For A+ Core 2, candidates should recognize that configuration profiles are the mechanism used to apply predefined settings to mobile devices in an enterprise environment. This aligns with common mobile management best practices used in platforms such as Microsoft Intune, VMware Workspace ONE, and Apple device management frameworks, where profiles are used to deliver and enforce device settings centrally.
- A. Incorrect.
A remote wipe policy is used to erase data from a managed device, typically when the device is lost, stolen, or being decommissioned. It does not automatically deploy email, Wi-Fi, and passcode settings to users' devices during enrollment. Someone might choose this because remote wipe is a common MDM capability, but it addresses device security after an incident rather than initial configuration.
- B. Correct.
A configuration profile is correct because it is used in MDM environments to push standardized settings to enrolled devices, such as email account configuration, Wi-Fi settings, VPN settings, certificates, and security requirements like passcodes. In this scenario, the automatic delivery of multiple device settings after enrollment is exactly what configuration profiles are designed to do.
- C. Incorrect.
A screen lock timeout is only a single device security setting, not a mechanism for deploying a full set of corporate configurations. While a timeout value could be included within a broader policy or profile, by itself it does not explain how email and Wi-Fi settings were provisioned automatically. This distractor reflects the misconception of confusing one enforced setting with the management method that delivers many settings together.
- D. Incorrect.
An asset inventory report provides administrative visibility into device hardware, software, and enrollment status. It helps with tracking and compliance, but it does not configure devices. A candidate might pick this if they associate MDM with centralized management generally, but reporting and configuration are different administrative functions.