FC0-U71 Security Practice Question
A help desk technician is reviewing security practices with a new employee who works remotely. Which TWO of the following actions BEST reduce the risk of a malware infection on the employee's workstation? (Choose two.)
⚠ Common exam trap
The trap here is choosing convenience-oriented actions like disabling updates or the firewall, which feel like performance or simplicity wins but actually remove defenses against malware.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Keep the operating system and installed applications updated with security patches.
Keeping the operating system and applications patched closes vulnerabilities that malware exploits, while updated endpoint protection detects and blocks malicious code. Together they form a layered preventive defense for a remote workstation. Disabling updates, reusing passwords, and turning off the firewall all weaken security and do nothing to reduce malware risk, so only the patching and endpoint protection practices qualify.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Use the same strong password across all work accounts for easier memorization.
Why it's wrong here
Password reuse means one breached site can expose every account, and it does nothing to stop malware from executing on the workstation. Credential hygiene addresses unauthorized access, not infection vectors like malicious downloads. This practice actually increases risk through credential stuffing, and it fails to address the malware scenario described. Unique passwords or a password manager would be the appropriate guidance instead.
- ✗
Turn off the firewall to improve network performance while working remotely.
Why it's wrong here
Disabling the host firewall removes a barrier that blocks unauthorized inbound connections and can restrict suspicious outbound traffic. Performance gains, if any, are negligible compared with the loss of protection, especially on untrusted networks like public Wi-Fi. This action increases the attack surface and contradicts the goal of reducing malware risk, since firewalls help contain threats that attempt to communicate outbound.
- ✓
Keep the operating system and installed applications updated with security patches.
Why this is correct
Patches close known vulnerabilities that malware exploits to gain a foothold, so timely updates directly reduce infection risk. Operating system and application updates are a foundational preventive control recommended in every security baseline. For a remote worker without corporate network protections nearby, keeping the endpoint patched is especially important because the device is the last line of defense against exploits delivered through email, downloads, or malicious websites.
- ✓
Install and regularly update reputable antivirus or endpoint protection software.
Why this is correct
Antivirus and endpoint protection software detects, blocks, and removes known malicious code using signatures and behavioral analysis. Keeping it updated ensures the tool recognizes current threats rather than only older samples. For a remote employee, this provides a critical layer that can stop malware before it executes or spreads, complementing patching by catching threats that arrive through downloads, attachments, or drive-by web content.
- ✗
Disable automatic updates so the employee controls when changes are applied.
Why it's wrong here
Disabling automatic updates leaves known vulnerabilities unpatched, which is the opposite of reducing malware risk. Attackers actively scan for unpatched systems, so manual and delayed updates increase exposure. While controlled patch testing has merit in managed environments, disabling updates entirely on a remote workstation removes a key defense and makes the device an easier target for exploit kits and worms.
Go deeper
Related to this question
About these practice questions
This FC0-U71 question is part of Courseiva's 988-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.