SY0-701 exam dumps

SY0-701 practice question 105 of 490

Security+. Associate level, CompTIA. Free question with the correct answer and a full explanation.

SY0-701 Question 105

Single answerMobile device: Side loading , Jailbreaking

A security administrator is investigating why a company-owned smartphone was able to install a file-sharing app that is not in the approved enterprise app catalog. The device also stopped reporting compliance status to the organization's mobile device management (MDM) platform shortly afterward. The user admits to following online instructions to gain access to additional apps and then manually installing the application package. Which action BEST explains what happened?

  1. A

    The user jailbroke or rooted the device and then sideloaded an unapproved app, bypassing normal app-store and MDM controls

  2. B

    The device automatically installed the app through near-field communication (NFC) pairing with another phone

  3. C

    The user enrolled the device in a different Wi-Fi network, which disabled the built-in application allowlist

  4. D

    The app was installed through a standard operating system update process that temporarily hides it from the MDM console

Show answer and explanation

Correct answer: A

Explanation

This question tests the practical difference and relationship between jailbreaking/rooting and sideloading. Jailbreaking (commonly associated with iOS) or rooting (commonly associated with Android) removes manufacturer or OS restrictions, often allowing elevated access and disabling security protections that enterprises rely on. Sideloading is the installation of apps from outside an official app store or approved enterprise app source. In real environments, these behaviors increase the risk of malware, policy bypass, data leakage, and loss of management visibility.

From a Security+ perspective, the best answer is the one that connects both actions in sequence: the device was modified to bypass restrictions, and then an unapproved app was manually installed. Enterprise best practices typically include using MDM/UEM solutions to detect rooted or jailbroken devices, block noncompliant devices from accessing corporate resources, restrict app installation sources, and enforce approved app catalogs. These practices align with vendor and industry guidance from major mobile platform providers and enterprise mobility management documentation, which warn that rooted/jailbroken devices undermine platform trust and that sideloading increases exposure to unvetted software.

  • A. Correct.

    Correct. The scenario describes two related issues: the user 'followed online instructions to gain access to additional apps' and then manually installed an application package. That strongly indicates jailbreaking on iOS or rooting on Android, followed by sideloading. Jailbreaking/rooting removes or weakens vendor security restrictions, and sideloading installs apps from outside the official store or managed enterprise catalog. These actions can also interfere with MDM compliance checks or trigger the device to fall out of a trusted state.

  • B. Incorrect.

    Incorrect. NFC can be used for limited data exchange or pairing, but it does not normally result in silent installation of a full mobile application package in a managed enterprise scenario. This option is plausible because users may associate wireless proximity features with file transfer, but it does not fit the details about intentionally gaining access to additional apps and manually installing a package.

  • C. Incorrect.

    Incorrect. Changing Wi-Fi networks does not disable mobile OS application allowlisting or remove MDM enforcement by itself. Network changes can affect connectivity to management systems, but they do not explain the user's admission that they used online instructions to gain access to unapproved apps and manually installed an app package.

  • D. Incorrect.

    Incorrect. Standard operating system updates come from the device vendor or carrier and are not a method for installing a random unapproved file-sharing app outside the enterprise catalog. Also, an OS update would not typically 'hide' an app from MDM; instead, the MDM should continue reporting device state unless the device has been altered, disconnected, or rendered noncompliant.

Timed practice exam

Take a SY0-701 practice test under exam conditions

90 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam