CompTIA A+ Core 2 (220-1202)SecurityHard

An employee's company-owned smartphone, which is fully encrypted and enrolled in an MDM platform, is reported lost. The device contains sensitive client data. Which action should the administrator take to best protect the data?

  1. AChange the employee's email password
  2. BRemotely lock the device with a new PIN
  3. CDisable the SIM card through the carrier
  4. DRemotely wipe the device
Show answer & explanation

Correct answer: D. Remotely wipe the device

Since the device is lost and cannot be physically recovered, a remote wipe permanently erases all data, ensuring sensitive information cannot be accessed even if the encryption or lock screen is eventually bypassed. Locking alone does not remove the risk of eventual access to stored data.

Why the other options are wrong

  • A. Changing the email password protects only email access, not locally stored client data.
  • B. Locking prevents casual access but does not eliminate risk if the lock is bypassed or the device is never recovered.
  • C. Disabling the SIM stops cellular service but does not protect data already stored on the device.

Remote Wipe

An MDM feature that remotely erases all data on a lost or stolen mobile device to prevent unauthorized access to sensitive information.

  • Best used when device recovery is unlikely
  • Works even without physical possession, via MDM connection
  • More thorough protection than remote lock alone

Memory trick: Lost forever? Wipe it clean, not just lock the screen.

More Security questions