SK0-005 security-disaster-recovery Practice Question
A server administrator is responsible for protecting sensitive data. The backup process copies files to a network share daily. Which of the following should the administrator do to BEST ensure the confidentiality of the backup data both during transfer and at rest?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Encrypt the backup files before transfer using a tool like GPG, and store them encrypted.
Encrypting the backup files before transfer (Option B) ensures data confidentiality during transit and while stored on the backup server. Option A provides network segmentation but no encryption. Option C encrypts only the transfer, not the data at rest. Option D is a physical security measure and does not encrypt the data.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Configure the network share with SMB encryption only.
Why it's wrong here
SMB encryption secures data in transit, but the files remain unencrypted at rest on the backup server.
- ✗
Use a dedicated NIC for backup traffic on an isolated VLAN.
Why it's wrong here
Isolating traffic does not provide encryption; data remains in cleartext during transfer and at rest.
- ✗
Place the backup server in a physically locked cage with restricted access.
Why it's wrong here
Physical access controls do not encrypt the data; an attacker with network access could still intercept or read the files.
- ✓
Encrypt the backup files before transfer using a tool like GPG, and store them encrypted.
Why this is correct
Pre-transfer encryption protects data confidentiality both in transit and at rest on the backup media.
Go deeper
Related to this question
Learn chapter
Network Configuration and Connectivity
Key term
Security
Security in IT is the practice of protecting systems, networks, and data from unauthorized access, damage, or theft.
Key term
Process
In IT service management, a process is a structured set of activities designed to accomplish a specific objective, such as managing incidents or changes, by transforming inputs into defined outputs.
About these practice questions
One of 185 original SK0-005 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed July 2026 · checked against the official CompTIA exam blueprint
This SK0-005 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SK0-005 exam.