Soru

Zorluk: Çok zorMobile Application Support and Security Settings

A clinical hospital network allows nursing staff to access electronic health records (EHR) through specialized mobile applications on personal smartphones under a Bring Your Own Device (BYOD) framework. The compliance team mandates that sensitive patient data within the app must be prevented from transferring to personal local storage, copying to personal messaging tools, or backing up to unapproved personal cloud services. Additionally, if an employee separates from the organization, IT must remotely purge corporate health data without affecting personal photographs, personal apps, or private settings. Which security and application management strategy should the administration implement?

  1. Deploy Mobile Application Management (MAM) policies with containerization and execute selective wipes upon employee departure.Cevap
  2. B
    Enforce full Mobile Device Management (MDM) profile supervision and trigger a remote device factory reset upon employee departure.
  3. C
    Configure email and app data synchronization using POP3 over port 110 with enforced SSL/TLS wrapper transport.
  4. D
    Filter cloud synchronization traffic at the perimeter firewall by binding corporate user accounts to their device International Mobile Equipment Identity (IMEI).

Cevap

Deploy Mobile Application Management (MAM) policies with containerization and execute selective wipes upon employee departure.
Mobile Application Management (MAM) using containerization creates a secure, encrypted sandbox environment for corporate apps and data on employee-owned (BYOD) devices. This isolates enterprise data from personal applications, prevents data leakage (such as copying data to personal clipboards or unapproved cloud storage), and permits administrators to perform a selective wipe—deleting corporate app data upon offboarding without touching personal photos, apps, or settings.

Adım Adım Çözüm

1
Identify the deployment scope and privacy requirements.
The devices are personal smartphones (BYOD), meaning IT management controls must be restricted strictly to corporate data without inspecting or altering personal data.
BYOD policies require a clear boundary between corporate enterprise data and personal user data.
2
Determine the application security and data leakage protection mechanism.
Mobile Application Management (MAM) with containerization creates an encrypted logical partition around enterprise software, blocking clipboard transfers, external cloud sync, and unapproved local saving.
Containerization enforces application-level security policies independently of the underlying personal mobile operating system.
3
Select the appropriate data removal action for offboarding.
A selective wipe targets and deletes only the encrypted container and associated corporate data, leaving personal files completely intact.
Selective wiping fulfills compliance requirements while respecting employee device privacy.

Anahtar Kavram

Mobile Application Management (MAM) vs Mobile Device Management (MDM) in BYOD environments
Bu soruyu puanla