Question

Difficulty: MediumWindows Security Settings and User Account Control

An IT support technician is hardening security on a company workstation running Windows 11 Pro. To mitigate the risk of ransomware, the technician needs to configure a setting that prevents untrusted applications from modifying files stored in standard user folders such as Documents, Pictures, and Desktop. Which feature within the Windows Security app should the technician enable to fulfill this requirement?

  1. Controlled folder accessAnswer
  2. B
    Core isolation / Memory integrity
  3. C
    SmartScreen for apps and files
  4. D
    User Account Control (UAC) file virtualization

Answer

Controlled folder access is the Windows Security feature designed to block unauthorized or untrusted applications from modifying files in protected user directories.
Controlled folder access is a feature within Windows Security under Virus & threat protection designed to protect key folders (Documents, Pictures, Desktop, etc.) from unauthorized modifications by untrusted software, effectively mitigating ransomware threats.

Step-by-Step Solution

1
Identify the primary administrative security requirement.
The requirement is to prevent unauthorized applications (such as ransomware) from modifying or encrypting files in user data folders.
Ransomware targets user directories to encrypt personal files and demand payment for recovery.
2
Evaluate Windows Security app features against the security requirement.
Controlled folder access in Windows Security explicitly protects specified user directories by allowing only whitelisted or trusted applications to make file changes.
It acts as a directory-level shield against unauthorized modifications.

Key Concept

Windows Security Ransomware Protection Settings
Estimated Time:1m 0s
Rate this question