CompTIA Security+ (SY0-501) — Question 498
An organization is building a new customer services team, and the manager needs to keep the team focused on customer issues and minimize distractions. The users have a specific set of tools installed, which they must use to perform their duties. Other tools are not permitted for compliance and tracking purposes. Team members have access to the Internet for product lookups and to research customer issues. Which of the following should a security engineer employ to fulfill the requirements for the manager?
Answer options
- A. Install a web application firewall.
- B. Install HIPS on the team's workstations.
- C. Implement containerization on the workstations.
- D. Configure whitelisting for the team.
Correct answer: C
Explanation
Containerization on the workstations ensures that only approved applications are used, creating a controlled environment that minimizes distractions and maintains compliance. The other options, such as a web application firewall or HIPS, do not specifically address the need to restrict applications and focus the team on their tasks. Whitelisting could help but is less comprehensive than containerization in managing application use.