A healthcare organization issues mobile devices to field staff for viewing patient records and accessing corporate email. To comply with data privacy regulations, the IT security team must restrict the installation of unapproved software and ensure mobile email application data is encrypted in transit. Which TWO of the following configurations or administrative controls should the technician implement?
- Enforce mobile application management policies to prohibit app sideloading and restrict installation to the corporate app repository.Answer
- Configure mobile email clients to use IMAPS over SSL/TLS port 993 for secure incoming mail synchronization.Answer
- CRegister the SIM card IMSI number on the mail server to validate encrypted email transport handshakes.
- DConfigure POP3 over port 110 to enable multi-device folder and read-status synchronization across mobile endpoints.
Answer
The technician should enforce mobile application management policies to prohibit app sideloading while restricting installations to a corporate repository, and configure mobile email clients to use IMAPS over SSL/TLS port 993 for secure incoming mail synchronization.
Enforcing application management policies prevents users from sideloading potentially harmful third-party applications outside approved enterprise software catalogs. Additionally, using IMAPS on secure port 993 ensures that incoming corporate email traffic is encrypted with SSL/TLS in transit, fulfilling data privacy requirements.
Step-by-Step Solution
Key Concept
Mobile Application Security and Encrypted Synchronization Protocols
Estimated Time:1m 30s