New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CISA Exam - Topic 3 Question 108 Discussion

Actual exam question for Isaca's CISA exam
Question #: 108
Topic #: 3
[All CISA Questions]

Which of the following provides the BE ST method for maintaining the security of corporate applications pushed to employee-owned mobile devices?

Show Suggested Answer Hide Answer
Suggested Answer: B

The best method for maintaining the security of corporate applications pushed to employee-owned mobile devices is implementing mobile device management (MDM). MDM is a software solution that allows an organization to remotely manage, configure, and secure the mobile devices that access its network and data. MDM can help protect corporate applications on employee-owned devices by:

Enforcing security policies and settings, such as encryption, password, firewall, antivirus, and VPN.

Controlling the installation, update, and removal of corporate applications and data.

Separating corporate and personal data and applications on the device using containers or profiles.

Monitoring and auditing the device's compliance status, activity, and location.

Performing remote actions, such as lock, wipe, backup, or restore, in case of loss, theft, or compromise.

MDM can provide a comprehensive and centralized approach to maintain the security of corporate applications on employee-owned devices, regardless of the device type, platform, or ownership. MDM can also help the organization comply with regulatory and industry standards for data protection and privacy.

Enabling remote data destruction capabilities is a useful feature for maintaining the security of corporate applications on employee-owned devices, but it is not the best method by itself. Remote data destruction allows the organization to erase the corporate data and applications from the device in case of loss, theft, or compromise. However, this feature does not prevent unauthorized access or misuse of the corporate data and applications before they are destroyed. Remote data destruction is usually part of an MDM solution.

Disabling unnecessary network connectivity options is a good practice for maintaining the security of corporate applications on employee-owned devices,but it is not the best method by itself. Network connectivity options, such as Wi-Fi, Bluetooth, NFC, or USB, can expose the device to potential attacks or data leakage. Disabling these options when they are not needed can reduce the attack surface and improve battery life. However, this practice does not address other security risks or requirements for the corporate applications on the device. Disabling network connectivity options can also be part of an MDM solution.

Requiring security awareness training for mobile users is an important measure for maintaining the security of corporate applications on employee-owned devices, but it is not the best method by itself. Security awareness training can educate the users about the potential threats and best practices for using their devices securely. It can also help foster a culture of security and responsibility among the users. However, security awareness training cannot guarantee that the users will follow the security policies and guidelines consistently and correctly. Security awareness training should be complemented by technical controls, such as MDM.


Protecting Corporate Data on Mobile Devices for All Companies1

Mobile Device Security: Corporate-Owned Personally-Enabled (COPE)23

Contribute your Thoughts:

0/2000 characters
Lezlie
10 hours ago
Totally agree, MDM covers a lot of ground!
upvoted 0 times
...
Cristy
6 days ago
I think B is the best option, MDM is crucial.
upvoted 0 times
...
Devorah
11 days ago
Agreed, MDM is the way to go. Can't trust those employees to keep their devices secure on their own.
upvoted 0 times
...
Brittni
16 days ago
Remote data destruction (A) is a bit extreme. MDM allows you to manage devices without nuking all the data.
upvoted 0 times
...
Artie
21 days ago
I'd go with D) Requiring security awareness training for mobile users. Educating employees is key to preventing security breaches.
upvoted 0 times
...
Corazon
26 days ago
Disabling unnecessary network connectivity options (C) is also a good idea, but MDM provides more comprehensive security controls.
upvoted 0 times
...
Leigha
1 month ago
I recall that security awareness training is important, but it seems more like a supplementary measure rather than the best method for direct app security.
upvoted 0 times
...
Shawana
1 month ago
I practiced a question similar to this where MDM was highlighted as a key solution, but I wonder if there are scenarios where other options might be better.
upvoted 0 times
...
Beata
1 month ago
I feel like enabling remote data destruction could be really important too, especially if a device gets lost.
upvoted 0 times
...
Ora
2 months ago
I think I remember that mobile device management (MDM) is crucial for securing corporate apps on personal devices, but I'm not entirely sure if it's the best method.
upvoted 0 times
...
Nichelle
2 months ago
I'm a bit confused on this one. I'll need to review my notes on mobile device security before deciding.
upvoted 0 times
...
Alyce
2 months ago
B seems like the most comprehensive solution to me. Enabling remote data destruction and disabling connectivity are good, but MDM can do all that plus more.
upvoted 0 times
...
Becky
2 months ago
I'm leaning towards D. Security awareness training is key to getting employees to actually follow security best practices on their devices.
upvoted 0 times
...
Hassie
2 months ago
B) Implementing mobile device management (MDM) is the best option to maintain corporate app security on employee-owned devices.
upvoted 0 times
...
Rosalind
3 months ago
Haha, I'd just tell employees to leave their personal devices at home. Problem solved!
upvoted 0 times
...
Noelia
3 months ago
Hmm, I'm not sure. I'd need to think more about the pros and cons of each approach. Disabling network connectivity could also be a good security measure.
upvoted 0 times
...
Dalene
3 months ago
I think B is the best option here. MDM can help manage and secure those employee-owned devices.
upvoted 0 times
Catherin
2 months ago
I agree, MDM is essential for security.
upvoted 0 times
...
Earlean
3 months ago
It’s the best way to manage risks.
upvoted 0 times
...
...

Save Cancel