Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 312-50 Topic 10 Question 92 Discussion

Actual exam question for Eccouncil's 312-50 exam
Question #: 92
Topic #: 10
[All 312-50 Questions]

As a cybersecurity analyst for SecureNet, you are performing a security assessment of a new mobile payment application. One of your primary concerns is the secure storage of customer data on the device. The application

stores sensitive information such as credit card details and personal identification numbers (PINs) on the device. Which of the following measures would best ensure the security of this data?

Show Suggested Answer Hide Answer
Suggested Answer: B

Encrypting all sensitive data stored on the device is the best measure to ensure the security of this data, because it protects the data from unauthorized access or disclosure, even if the device is lost, stolen, or compromised. Encryption is a process of transforming data into an unreadable format using a secret key or algorithm. Only authorized parties who have the correct key or algorithm can decrypt and access the data. Encryption can be applied to data at rest, such as files or databases, or data in transit, such as network traffic or messages. Encryption can prevent attackers from stealing or tampering with the customer data stored on the device, such as credit card details and PINs, which can cause financial or identity fraud.

The other options are not as effective or sufficient as encryption for securing the customer data stored on the device. Implementing biometric authentication for app access may provide an additional layer of security, but it does not protect the data from being accessed by other means, such as malware, physical access, or backup extraction. Enabling GPS tracking for all devices using the app may help locate the device in case of loss or theft, but it does not prevent the data from being accessed by unauthorized parties, and it may also pose privacy risks. Regularly updating the app to the latest version may help fix bugs or vulnerabilities, but it does not guarantee the security of the data, especially if the app does not use encryption or other security features. Reference:

Securely Storing Data | Security.org

Data Storage Security: 5 Best Practices to Secure Your Data

M9: Insecure Data Storage | OWASP Foundation


Contribute your Thoughts:

Ora
7 days ago
Regular updates are important, but they won't do much good if the data is just sitting there unprotected. Encryption is the winner here, hands down.
upvoted 0 times
...
Dudley
9 days ago
Haha, GPS tracking? What is this, a spy movie? Encrypt the data, folks! Keeps the bad guys out and the good guys safe.
upvoted 0 times
...
Dylan
12 days ago
I also believe that option B is the most secure choice. It's crucial to keep customer data safe.
upvoted 0 times
...
Nicholle
17 days ago
I agree with German. Encrypting the data will protect it from unauthorized access.
upvoted 0 times
...
Catherin
17 days ago
Biometric authentication is great, but it doesn't protect the data if it's stored in plain text. Encryption is the way to go, no doubt about it.
upvoted 0 times
Teddy
3 days ago
User 1: Biometric authentication is great, but it doesn't protect the data if it's stored in plain text.
upvoted 0 times
...
...
German
20 days ago
I think option B) Encrypt all sensitive data stored on the device would be the best measure.
upvoted 0 times
...
Val
22 days ago
Definitely option B. Encryption is the way to go for securing sensitive data on the device. The other options don't really address the core issue here.
upvoted 0 times
...

Save Cancel