220-1102 exam dumps

220-1102 practice question 520 of 828

A+ Core 2. Associate level, CompTIA. Free question with the correct answer and a full explanation.

220-1102 Question 520

Single answerProfile security requirements

A company allows sales staff to use personally owned smartphones to access corporate email and a CRM app. Several employees have reported that family members sometimes borrow their phones at home. Management wants to reduce the risk of unauthorized access to company data without buying new devices. Which of the following is the BEST way to meet this profile security requirement?

  1. A

    Create a separate work profile on each phone and require a screen lock for that profile

  2. B

    Disable the phones' cameras so users cannot take pictures of company information

  3. C

    Require employees to share one generic company account for the CRM app

  4. D

    Install a mobile hotspot app so business traffic is isolated from personal traffic

Show answer and explanation

Correct answer: A

Explanation

The best answer is to create a separate work profile and protect it with a screen lock. In BYOD environments, profile security focuses on separating corporate data from personal use and limiting unauthorized access when a device is shared or lost. This aligns with common enterprise mobility management and mobile device management best practices, including containerization, work profiles, and enforcing device authentication such as PINs, passwords, or biometrics. CompTIA A+ Core 2 expects candidates to recognize that profile/account separation is a practical way to secure business data on shared or personally owned devices. Shared accounts, unrelated hardware restrictions, or network changes do not address the profile-level access control problem.

  • A. Correct.

    Correct. A separate work profile is a standard mobile device security control for BYOD environments. It separates business apps and data from personal apps and data, helping prevent casual access by family members or other unauthorized users. Requiring a screen lock for the device or protected work profile aligns with profile security best practices and supports corporate data separation without needing new hardware.

  • B. Incorrect.

    Incorrect. Disabling cameras may be appropriate in some high-security environments, but it does not address the core problem in this scenario: unauthorized access to corporate email and CRM data by other people using the phone. Camera controls are not a substitute for profile separation and access control.

  • C. Incorrect.

    Incorrect. Sharing a generic account reduces accountability and weakens security. Best practice is to use unique user identities so access can be controlled, audited, and revoked per employee. A shared account would make unauthorized access harder to trace and would not protect data from family members using the phone.

  • D. Incorrect.

    Incorrect. A mobile hotspot app changes network connectivity, not user/profile isolation. Isolating business traffic from personal traffic at the network level does not prevent someone holding the phone from opening corporate apps if they are already signed in. This option does not meet the profile security requirement described.

Timed practice exam

Take a 220-1102 practice test under exam conditions

90 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam