Performance Based Question 07

Scenario: You are an Information Security Engineer for a large enterprise. You have been tasked with hardening the smartphone of the Chief Executive Officer (CEO). The CEO does not comply with corporate policies and has refused to use Mobile Device Management (MDM) solutions. Your job is to harden and secure the CEO's phone using manual changes and configurations. If you are unable to secure parts of the phone, you must document the issue for compliance reasons.

Information: The following screenshots show various menus on the CEO's phone.

Question 1 of 5

What would you recommend regarding the phone's patch levels?

Question 2 of 5

The CISO has asked you whether the CEO's phone is currently configured to permit sideloading. What do you advise?

Question 3 of 5

The CEO is willing to use most security features as long as they are not too annoying. What would you recommend?

Question 4 of 5

The CISO has asked whether the phone's authentication configuration currently constitutes Two-Factor Authentication (2FA). What do you advise?

Question 5 of 5

What other general advice would you document?