220-1102 Operational Procedures Practice Question
A technician is supporting a clinic workstation. The immediate goal is to reduce shoulder-surfing and information exposure. Which tool, control, or procedure is the best fit?
⚠ Common exam trap
Candidates often confuse administrative controls like user management (Local Users and Groups) with physical controls, overlooking that shoulder-surfing is a visual/physical threat, not a logical access one.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
privacy screen and clean desk practice
A privacy screen limits the viewing angle so that only the person directly in front of the monitor can see the display, directly reducing shoulder-surfing. A clean desk practice ensures that sensitive documents are not left in plain sight, minimizing information exposure. Together, they form a physical security control that addresses the immediate goal without relying on software or system changes.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
privacy screen and clean desk practice
Why this is correct
A privacy screen limits the viewing angle of the monitor to reduce shoulder surfing, and a clean desk policy ensures that patient charts, sticky notes, or printed reports are not left exposed. Together these directly mitigate the immediate risk of unauthorized visual data disclosure in a busy clinic, which is a physical security control rather than a software-based fix.
- ✗
Event Viewer
Why it's wrong here
Event Viewer is a Windows diagnostic tool that records application, security, and system logs; it is valuable for troubleshooting past errors or auditing login attempts, but it does nothing to prevent real-time visual exposure of patient data. Using Event Viewer would be a reactive, forensic step after a privacy incident is suspected, not a proactive measure to reduce the immediate risk at the workstation.
- ✗
System Restore
Why it's wrong here
System Restore rolls back the Windows operating system to a prior restore point, reverting registry, drivers, and system files. This can help undo a problematic software change or driver conflict, but it has no effect on the physical environment, monitor visibility, or desk cleanliness, so it cannot reduce the stated privacy/clean-desk risk at all.
- ✗
Local Users and Groups
Why it's wrong here
Local Users and Groups (lusrmgr.msc) is used to create, modify, or remove local user accounts and assign group memberships, which regulates who can log on to the workstation. While controlling user access is a security measure, it does not address visual privacy or clutter on or around the desk, and it does not reduce the immediate threat of shoulder surfing or exposed documents in a clinic setting.
Go deeper
Related to this question
Learn chapter
SOHO Router Security Configuration
Key term
Security control
A security control is a safeguard or countermeasure designed to protect the confidentiality, integrity, and availability of information systems and data.
Key term
Security
Security in IT is the practice of protecting systems, networks, and data from unauthorized access, damage, or theft.
About these practice questions
One of 925 original 220-1102 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.