Courseiva
easyMultiple Choice

FC0-U71 A user wants to ensure data confidentiality Practice Question

A user wants to ensure data confidentiality. Which action is most appropriate?

⚠ Common exam trap

A common mix-up: candidates confuse authentication (changing a password) with confidentiality (encryption), assuming that restricting access alone is sufficient to keep data secret, but encryption is the only mechanism that protects data at rest from unauthorized viewing.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Encrypt files

Encrypting files using algorithms like AES-256 ensures that even if unauthorized users gain access to the data, they cannot read it without the decryption key. This directly addresses the goal of data confidentiality by transforming plaintext into ciphertext that is unreadable without the proper key.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Encrypt files

    Why this is correct

    Encryption renders file contents unreadable without the correct decryption key, so intercepted or stolen data cannot be interpreted. That directly enforces confidentiality, which the user explicitly wants, whereas hashing, backups or access logs address integrity, availability or accountability instead.

  • ✗

    Change password

    Why it's wrong here

    Changing a password strengthens authentication for one account but leaves the files themselves unprotected if they are copied, emailed or stored unencrypted. It is tempting because passwords guard access, and it would be correct when the requirement is credential hygiene or responding to a suspected account compromise.

  • ✗

    Share with everyone

    Why it's wrong here

    Sharing with everyone removes all access restriction, directly destroying confidentiality rather than protecting it. It is tempting because collaboration tools make broad sharing effortless, and sharing is the correct action when the goal is availability or transparency, not confidentiality.

  • ✗

    Delete files

    Why it's wrong here

    Deleting files removes the data entirely, which addresses availability and retention, not confidentiality; no unauthorised party gains access, but the owner loses the data. Deletion is the right action for secure disposal at end of life, not for keeping data confidential while in use.

Quick reference

Symmetric Encryption Algorithm Comparison

AlgorithmKey SizeBlock SizeStatusNotes
AES-128128-bit128-bitCurrent standardNIST approved; WPA3, TLS
AES-256256-bit128-bitCurrent standardPreferred for sensitive / govt data
3DES112-bit effective64-bitDeprecated (2023)Replaced by AES
DES56-bit64-bitBrokenCracked in < 24 h; never deploy
ChaCha20256-bitStream cipherCurrentTLS 1.3, WireGuard

About these practice questions

One of 988 original FC0-U71 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.