easyMultiple Choice
FC0-U71 A user wants to ensure data confidentiality Practice Question
A user wants to ensure data confidentiality. Which action is most appropriate?
⚠ Common exam trap
A common mix-up: candidates confuse authentication (changing a password) with confidentiality (encryption), assuming that restricting access alone is sufficient to keep data secret, but encryption is the only mechanism that protects data at rest from unauthorized viewing.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Encrypt files
Encrypting files using algorithms like AES-256 ensures that even if unauthorized users gain access to the data, they cannot read it without the decryption key. This directly addresses the goal of data confidentiality by transforming plaintext into ciphertext that is unreadable without the proper key.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Encrypt files
Why this is correct
Encryption renders file contents unreadable without the correct decryption key, so intercepted or stolen data cannot be interpreted. That directly enforces confidentiality, which the user explicitly wants, whereas hashing, backups or access logs address integrity, availability or accountability instead.
- ✗
Change password
Why it's wrong here
Changing a password strengthens authentication for one account but leaves the files themselves unprotected if they are copied, emailed or stored unencrypted. It is tempting because passwords guard access, and it would be correct when the requirement is credential hygiene or responding to a suspected account compromise.
- ✗
Share with everyone
Why it's wrong here
Sharing with everyone removes all access restriction, directly destroying confidentiality rather than protecting it. It is tempting because collaboration tools make broad sharing effortless, and sharing is the correct action when the goal is availability or transparency, not confidentiality.
- ✗
Delete files
Why it's wrong here
Deleting files removes the data entirely, which addresses availability and retention, not confidentiality; no unauthorised party gains access, but the owner loses the data. Deletion is the right action for secure disposal at end of life, not for keeping data confidential while in use.
Quick reference
Symmetric Encryption Algorithm Comparison
| Algorithm | Key Size | Block Size | Status | Notes |
|---|---|---|---|---|
| AES-128 | 128-bit | 128-bit | Current standard | NIST approved; WPA3, TLS |
| AES-256 | 256-bit | 128-bit | Current standard | Preferred for sensitive / govt data |
| 3DES | 112-bit effective | 64-bit | Deprecated (2023) | Replaced by AES |
| DES | 56-bit | 64-bit | Broken | Cracked in < 24 h; never deploy |
| ChaCha20 | 256-bit | Stream cipher | Current | TLS 1.3, WireGuard |
Go deeper
Related to this question
About these practice questions
One of 988 original FC0-U71 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.