ISC2 CISSP Practice Question

An organization operates a classified research network that is air-gapped from the Internet. Engineers occasionally request to connect USB flash drives to transfer configuration files. Which of the following is the BEST control to mitigate the security risks posed by portable USB storage devices in this highly sensitive environment?

  • Permit engineers to use personal USB drives after they sign an acceptable-use agreement acknowledging the risks.

  • Require users to run an antivirus scan on their USB drive and lift all restrictions if no malware is detected.

  • Implement USB port control that blocks all unauthorized devices and allow only organization-supplied, encrypted, whitelisted drives under a formal approval process.

  • Allow any USB device to be connected as long as endpoint antivirus and EDR software are kept up to date.

ISC2 CISSP
Identity and Access Management (IAM)
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot