A systems administrator is configuring Mobile Device Management (MDM) security controls across an enterprise fleet of smartphones and tablets. Match each mobile device security control on the left with its corresponding operational description on the right.
- ContainerizationIsolates corporate applications, sensitive data, and network connections from personal user data on BYOD endpoints.
- GeofencingTriggers security restrictions or device profile modifications based on the physical location of the endpoint.
- Selective WipeErases corporate profile data and enterprise applications from an endpoint without impacting personal files.
- Full Device Encryption (FDE)Protects all stored data at rest across the system storage by requiring hardware- or passcode-based cryptographic keys.
Answer
Containerization pairs with isolating enterprise applications and sensitive data from personal data. Geofencing pairs with triggering security restrictions based on the physical location of the endpoint. Selective Wipe pairs with erasing corporate profile data without impacting personal files. Full Device Encryption pairs with protecting stored data at rest across system storage.
The paired definitions accurately describe the key technical operational capabilities of MDM security mechanisms: Containerization isolates corporate environments on personal devices; Geofencing enforces policy dynamically based on location coordinates; Selective Wipe target-deletes corporate data only; and Full Device Encryption protects all underlying data at rest.
Step-by-Step Solution
Key Concept
Mobile Device Management (MDM) Controls and Security Measures