exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 266 discussion

Actual exam question from ISC's CISSP
Question #: 266
Topic #: 1
[All CISSP Questions]

Management has decided that a core application will be used on personal cellular phones. As an implementation requirement, regularly scheduled analysis of the security posture needs to be conducted. Management has also directed that continuous monitoring be implemented. Which of the following is required to accomplish management's directive?

  • A. Routine reports generated by the user's cellular phone provider that detail security events
  • B. Strict integration of application management, configuration management (CM), and phone management
  • C. Management application installed on user phones that tracks all application events and cellular traffic
  • D. Enterprise-level security information and event management (SIEM) dashboard that provides full visibility of cellular phone activity
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CuteRabbit168
Highly Voted 11 months, 1 week ago
Selected Answer: B
Question refers to MDM. Correct answer should be B. Answer C - tracking cellular traffic would be a major privacy concern.
upvoted 7 times
...
kobegraham
Most Recent 1 month, 3 weeks ago
Selected Answer: D
I choose D over B because B doesn't directly provide continuous monitoring or security posture analysis.
upvoted 1 times
...
RVoigt
6 months ago
Selected Answer: B
CISSP Official Study Guide pg 414 - "Application control or application management is a device-management solution that limits which applications can be installed onto a device. It can also be used to force specific applications to be installed or to enforce the settings of certain applications in order to support a security baseline or maintain other forms of compliance. Using application control can often reduce exposure to malicious applications by limiting the user's ability to install apps that come from unknown sources or that offer non-work- related features. This mechanism is often implemented by an MDM. Without application control, users could theoretically install malicious code, run data stealing software, operate apps that reveal location data, or not install business-necessary applications."
upvoted 4 times
jackdryan
3 months, 1 week ago
B is correct
upvoted 1 times
...
...
Rollingalx
6 months, 1 week ago
Option B may be relevant to the management of the application, configuration and phone, but it does not address the security monitoring and analysis requirements outlined in the question.
upvoted 4 times
...
Jamati
9 months, 2 weeks ago
Selected Answer: B
By process of elimination, C and D are excluded due to employee rights to Privacy. A just makes no sense.
upvoted 3 times
...
franbarpro
10 months ago
These are personal cellular phones - why would you do "C"? What if you are watching porn? Or doing anything you don't want anyone to see! (Privacy)
upvoted 4 times
...
Nickname53796
10 months, 1 week ago
Selected Answer: C
Mobile application management (MAM) is similar to an MDM but focuses only on app management rather than managing the entire mobile device.
upvoted 3 times
Nickname53796
10 months, 1 week ago
B - I meant B
upvoted 2 times
...
...
kptest12
10 months, 1 week ago
https://blog.cdemi.io/never-accept-an-mdm-policy-on-your-personal-phone/ If its MDM implementation they C is the answer
upvoted 1 times
...
OROR
10 months, 2 weeks ago
You cannot use MDM for personal phone it is illegal. the answer is C
upvoted 1 times
Nickolos
10 months, 2 weeks ago
No it isn't.
upvoted 4 times
...
...
Cww1
11 months, 1 week ago
the question is referring to MDM software, given answer is correct
upvoted 1 times
Cww1
11 months ago
Changing to B
upvoted 3 times
...
...
DERCHEF2009
11 months, 1 week ago
Selected Answer: B
It says personal cellphone. Somit must be B
upvoted 3 times
...
stickerbush1970
11 months, 2 weeks ago
Selected Answer: D
I am swaying towards D on this.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago