CompTIA CASP+ (CAS-003) — Question 146

An organization wants to allow its employees to receive corporate email on their own smartphones. A security analyst is reviewing the following information contained within the file system of an employee's smartphone:
[1]

Taxreturn.tax -
paystub.pdf
employeesinfo.xls

SoccerSchedule.doc -

RecruitmentPlan.xls -
Based on the above findings, which of the following should the organization implement to prevent further exposure? (Choose two.)

Answer options

Correct answer: A, D

Explanation

Remote wiping allows the organization to erase data from the device if it is lost or compromised, protecting sensitive information. Containerization separates corporate data from personal data, adding a layer of security. The other options, such as side loading, rooting, and jailbreaking, can weaken security and increase exposure to risks, while VPN and geofencing serve different purposes unrelated to immediate data protection.