An IT technician is configuring security policies for personal mobile devices enrolled in a company's Bring Your Own Device (BYOD) program. Enterprise policy mandates that corporate email and proprietary business applications must be encrypted and isolated from personal data, and administrators must be able to remove corporate data if an employee leaves. However, the policy strictly prohibits accessing, managing, or erasing any personal files on the employee-owned devices. Which of the following administrative controls BEST satisfies these security requirements?
- Deploy Mobile Application Management (MAM) policies to enforce containerization and selective wipe capability.Cevap
- BEnroll all devices in Mobile Device Management (MDM) with full device encryption and remote full-wipe privileges.
- CReconfigure the mobile email client sync protocol to use unencrypted POP3 over port 993 to isolate account settings.
- DRestrict application access by registering each device's International Mobile Subscriber Identity (IMSI) with the app repository.
Cevap
Deploy Mobile Application Management (MAM) policies to enforce containerization and selective wipe capability.
Mobile Application Management (MAM) focuses on controlling specific corporate applications and data storage rather than taking over the full device operating system. Through containerization, business data is encrypted separately from personal content, and administrators can perform a selective wipe to remove only corporate files and access permissions.
Adım Adım Çözüm
Anahtar Kavram
Mobile Application Management (MAM) containerization and selective wipe in BYOD environments