2.7 Given a scenario, apply workstation security options and hardening techniques.
Objective 2.7 sits in Security, which carries 28% of the A+ Core 2 exam. The questions below are original, written from the official objective title above, and each explanation cites the CompTIA page it rests on.
Objective title verbatim from the official objectives. CompTIA exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
A technician wants to enable BitLocker with the strongest available protection, including verification that the system has not been tampered with while offline. Which hardware component provides this capability?
The concept
BitLocker provides its highest level of assurance when paired with a Trusted Platform Module, which checks that the boot process has not been altered while the device was offline.
Why this answer
The TPM performs the preboot integrity check that BitLocker relies on for maximum protection, so it is the correct hardware component.
- Correct: the TPM is the hardware root of trust BitLocker uses for preboot integrity verification.
- BA hard disk controller manages storage I/O and has no role in verifying boot integrity for BitLocker.
- CA graphics processing unit handles rendering workloads and is unrelated to BitLocker's integrity checks.
- DA RAID controller manages disk arrays and does not provide the cryptographic root of trust BitLocker needs.
Now you: objective 2.7 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 2
An office workstation stores confidential files in a folder used by only one department. The technician needs to grant that department's group read and modify access without exposing the folder to other staff. Which NTFS feature accomplishes this?
Sample question 2 of 2
A device without a TPM needs BitLocker enabled. Which authentication method should the technician select to avoid exposing the system to brute-force attacks against the boot credential?
Full A+ Core 2 question bank coming
We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.
Read the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.
More objectives in Security
- 2.2 2.2 Given a scenario, configure and apply basic Microsoft Windows OS security settings.
- 2.4 2.4 Summarize types of malware and tools/methods for detection, removal, and prevention.
- 2.5 2.5 Compare and contrast common social engineering attacks, threats, and vulnerabilities.
- 2.6 2.6 Given a scenario, implement procedures for basic small office/home office (SOHO) malware removal.
- 2.11 2.11 Given a scenario, configure relevant security settings in a browser.