CompTIA A+ Core 2 (220-1202)SecurityEasy

A technician is setting up a new Windows 11 workstation for a user who will be handling sensitive financial data. The company policy dictates that all data on local drives must be encrypted to protect against unauthorized access if the device is lost or stolen. Which security feature should the technician enable to meet this requirement?

  1. ABitLocker
  2. BUser Account Control (UAC)
  3. CWindows Firewall
  4. DWindows Defender
Show answer & explanation

Correct answer: A. BitLocker

BitLocker is Windows' full disk encryption feature designed to protect data on drives by encrypting them, making the data unreadable to unauthorized users if the device is compromised.

Why the other options are wrong

  • B. UAC helps prevent unauthorized changes to the system but does not encrypt data.
  • C. Windows Firewall controls network traffic and does not encrypt local drive data.
  • D. Windows Defender is an anti-malware solution, not a disk encryption tool.

BitLocker

BitLocker is a full disk encryption feature included with Microsoft Windows that protects data by encrypting entire volumes.

  • Encrypts entire hard drives or removable drives.
  • Requires a Trusted Platform Module (TPM) for optimal security, but can be used without it.
  • Protects data against unauthorized access if the device is lost, stolen, or improperly decommissioned.

Memory trick: BitLocker locks your bits for better data protection.

More Security questions