A security administrator needs to protect sensitive data stored on company laptops by ensuring that storage drives automatically encrypt all data at rest at the hardware layer without relying on the host operating system. Which of the following technologies best fulfills this requirement?
- Self-Encrypting Drive (SED)Answer
- BHardware Security Module (HSM)
- CTokenization
- DAsymmetric public key encryption
Answer
Self-Encrypting Drive (SED)
Self-Encrypting Drives (SEDs) contain an integrated cryptographic processor directly on the storage controller that handles encryption and decryption automatically. Because the crypto operations occur on the drive hardware itself, encryption functions transparently and independently of the host operating system.
Step-by-Step Solution
Key Concept
Hardware-Based Storage Encryption (SED)
Estimated Time:1m 0s