A systems administrator is configuring security controls for field technicians who use corporate-issued mobile endpoints to monitor isolated embedded SCADA controllers at remote infrastructure sites. The mobile devices access enterprise cloud resources via cellular networks while concurrently communicating with the embedded IoT devices over local wireless links. Which TWO of the following security configurations should the administrator implement to best protect both the mobile endpoints and the embedded systems?
- Enforce mobile application management (MAM) containerization to isolate enterprise data from local network interface traffic.Cevap
- Mandate cryptographically signed firmware verification and disable unneeded physical and wireless ports on the embedded controllers.Cevap
- CConfigure an automated policy to initiate a full factory remote wipe after three consecutive failed passcode attempts on the mobile endpoints.
- DEstablish local Wi-Fi connectivity for the embedded controllers using WPA2-Personal with TKIP encryption to ensure legacy hardware compatibility.
Cevap
Enforcing MAM containerization on mobile endpoints and mandating cryptographically signed firmware with disabled unneeded ports on embedded controllers.
Mobile application management (MAM) containerization ensures corporate data remains isolated in an encrypted sandbox on mobile devices, protecting sensitive enterprise information when communicating over local short-range links. Simultaneously, embedded IoT devices require attack surface reduction—achieved by shutting down unnecessary physical/wireless ports—and protection against malicious firmware updates via cryptographically signed firmware enforcement.
Adım Adım Çözüm
Anahtar Kavram
Mobile App Containerization and Embedded System Hardening Controls
Tahmini Süre:3m 0s