Cisco Certified Support Technician (CCST) CybersecurityEndpoint SecurityEasy

A remote employee reports that their company-issued laptop was stolen from their car. The company's primary concern is preventing unauthorized access to the sensitive data stored on the laptop's hard drive. Which endpoint security control is most crucial in mitigating this risk?

  1. AFull Disk Encryption (FDE)
  2. BEndpoint Detection and Response (EDR)
  3. CAntivirus/Anti-malware software
  4. DHost-based firewall
Show answer & explanation

Correct answer: A. Full Disk Encryption (FDE)

Full Disk Encryption (FDE) renders the data on a lost or stolen device unreadable to anyone without the correct decryption key, making it the most crucial control for protecting data on a physically compromised device.

Why the other options are wrong

  • B. EDR monitors for threats during operation but cannot protect data on a stolen, offline device.
  • C. Antivirus protects against malware, not physical theft and unauthorized data access.
  • D. A host-based firewall protects against network-based attacks, not data on a stolen, unpowered device.

Full Disk Encryption (FDE)

A security method that encrypts all data on a hard drive, protecting it from unauthorized access if the device is lost or stolen.

  • Encrypts the entire storage volume.
  • Requires a key or password to decrypt and access data.
  • Protects data at rest on the device.

Memory trick: FDE is the unbreakable lock on your laptop's secrets.

More Endpoint Security questions