Courseiva
mediumMultiple ChoiceObjective-mapped

BYOD Data Protection: Why Remote Wipe Is Most Important for Lost Devices

An organization allows employees to use personal smartphones to access corporate email and data. Which control is MOST important to protect corporate data if a device is lost or stolen?

Quick Answer

Remote wipe capability is the most important control for a lost or stolen BYOD device because it's the only option among the alternatives that can act after the device is already out of the organization's physical control, directly removing the corporate data rather than merely trying to keep an attacker from reaching it in the first place. Device encryption protects data at rest, but that protection only holds while the device stays locked; if the device is unlocked when lost, or an attacker eventually bypasses the lock, encryption alone does nothing further to stop data exposure. Strong passwords raise the difficulty of unauthorized access, but they aren't unbreakable, since they can potentially be defeated through brute-force guessing or social engineering, and once bypassed, all the data on the device is exposed with no further layer of defense. A screen lock timeout only buys a small delay before the device locks itself; it doesn't prevent extraction of data once someone has gained access, and it does nothing at all if the device was already unlocked at the moment it was lost. Remote wipe is different because it doesn't try to prevent access; it responds to the loss event itself by actively erasing the corporate data from the device, regardless of whether the device is locked, unlocked, or already compromised. When a question asks for the MOST important control specifically for a lost-or-stolen scenario, prioritize the control that acts after the loss occurs over controls that only work as long as the device stays in the user's possession.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Implement remote wipe capability

Remote wipe allows an organization to erase corporate data from a lost or stolen device, directly mitigating data exposure. Option A (device encryption) protects data at rest but does not help if the device is unlocked or if the attacker gains access through other means. Option B (strong passwords) can be bypassed via brute-force or social engineering, and once the device is unlocked, data is exposed. Option D (screen lock timeout) only delays access; it does not prevent data extraction once the device is unlocked. Therefore, remote wipe is the most important control for responding to a lost or stolen device.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Require device encryption

    Why it's wrong here

    Encryption protects data at rest but if device is unlocked, data is accessible.

  • Require strong passwords with complexity requirements

    Why it's wrong here

    Helps prevent unauthorized access but does not allow immediate data deletion.

  • Implement remote wipe capability

    Why this is correct

    Allows administrator to erase corporate data remotely when device is lost.

  • Enforce a screen lock timeout of 1 minute

    Why it's wrong here

    Slows casual access but can be bypassed.

About these practice questions

This SSCP question is part of Courseiva's 920-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

Same concept, more angles

1 more way this is tested on SSCP

These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.

Variation 1. A BYOD policy allows personal devices to access corporate email. What is the best control to enforce device encryption and remote wipe?

hard
  • A.Network Access Control (NAC)
  • B.Mobile Device Management (MDM) profile
  • C.Containerization app
  • D.Mandatory VPN connection

Why B: Mobile Device Management (MDM) can enforce encryption and remote wipe policies. VPN encrypts data in transit but not the device. Containerization isolates corporate data but may not enforce full device encryption. NAC controls network access, not device settings.

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SSCP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SSCP exam.