Courseiva
Operational Procedures →mediumMultiple Choice

220-1102 Operational Procedures Practice Question

A technician is supporting a clinic workstation. The immediate goal is to reduce shoulder-surfing and information exposure. Which tool, control, or procedure is the best fit?

⚠ Common exam trap

Candidates often confuse administrative controls like user management (Local Users and Groups) with physical controls, overlooking that shoulder-surfing is a visual/physical threat, not a logical access one.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

privacy screen and clean desk practice

A privacy screen limits the viewing angle so that only the person directly in front of the monitor can see the display, directly reducing shoulder-surfing. A clean desk practice ensures that sensitive documents are not left in plain sight, minimizing information exposure. Together, they form a physical security control that addresses the immediate goal without relying on software or system changes.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    privacy screen and clean desk practice

    Why this is correct

    A privacy screen limits the viewing angle of the monitor to reduce shoulder surfing, and a clean desk policy ensures that patient charts, sticky notes, or printed reports are not left exposed. Together these directly mitigate the immediate risk of unauthorized visual data disclosure in a busy clinic, which is a physical security control rather than a software-based fix.

  • ✗

    Event Viewer

    Why it's wrong here

    Event Viewer is a Windows diagnostic tool that records application, security, and system logs; it is valuable for troubleshooting past errors or auditing login attempts, but it does nothing to prevent real-time visual exposure of patient data. Using Event Viewer would be a reactive, forensic step after a privacy incident is suspected, not a proactive measure to reduce the immediate risk at the workstation.

  • ✗

    System Restore

    Why it's wrong here

    System Restore rolls back the Windows operating system to a prior restore point, reverting registry, drivers, and system files. This can help undo a problematic software change or driver conflict, but it has no effect on the physical environment, monitor visibility, or desk cleanliness, so it cannot reduce the stated privacy/clean-desk risk at all.

  • ✗

    Local Users and Groups

    Why it's wrong here

    Local Users and Groups (lusrmgr.msc) is used to create, modify, or remove local user accounts and assign group memberships, which regulates who can log on to the workstation. While controlling user access is a security measure, it does not address visual privacy or clutter on or around the desk, and it does not reduce the immediate threat of shoulder surfing or exposed documents in a clinic setting.

About these practice questions

One of 925 original 220-1102 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.