ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 43 - SY0-701 discussion

Report
Export

A security engineer is implementing FDE for all laptops in an organization. Which of the following are the most important for the engineer to consider as part of the planning process? (Select two).

A.
Key escrow
Answers
A.
Key escrow
B.
TPM presence
Answers
B.
TPM presence
C.
Digital signatures
Answers
C.
Digital signatures
D.
Data tokenization
Answers
D.
Data tokenization
E.
Public key management
Answers
E.
Public key management
F.
Certificate authority linking
Answers
F.
Certificate authority linking
Suggested answer: A, B

Explanation:

Key escrowis a method of storing encryption keys in a secure location, such as a trusted third party or a hardware security module (HSM). Key escrow is important for FDE because it allows the recovery of encrypted data in case of lost or forgotten passwords, device theft, or hardware failure. Key escrow also enables authorized access to encrypted data for legal or forensic purposes.

TPM presenceis a feature of some laptops that have a dedicated chip for storing encryption keys and other security information. TPM presence is important for FDE because it enhances the security and performance of encryption by generating and protecting the keys within the chip, rather than relying on software or external devices. TPM presence also enables features such as secure boot, remote attestation, and device authentication.

asked 02/10/2024
Kimon Pope
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first