🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 8 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your company issues Windows 10 laptops to traveling staff. Policy requires that if a computer is lost, its contents must remain unreadable, and the help-desk must be able to retrieve or revoke the decryption key without destroying the drive. The solution should rely on hardware already built into most enterprise laptops, minimize user interaction at boot, and integrate with Active Directory for key escrow. Which implementation best meets these requirements?

  • Deploy third-party file-level encryption software and instruct users to manually encrypt sensitive files before travel.

  • Enable BitLocker full disk encryption using the laptop's TPM as the key protector and back up recovery keys to Active Directory.

  • Set BIOS power-on passwords and disable external boot media in firmware settings.

  • Encrypt each user's profile with Encrypting File System (EFS) and store the EFS recovery certificates on a network share.

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot