QUESTION IMAGE
Question
elite real estate group is establishing guidelines for computer passwords. all of the following are acceptable for the guidelines except for:
using longer passwords than required, such as a string of words that are easy to remember
using two-factor authentication
which of the following should not be included in the guidelines of the data protection section of a cybersecurity policy?
avoid using public wi-fi for business purposes
lock devices when not in use
store all data indefinitely
scan for viruses
Analyze Question 2 regarding password guidelines
The question asks for what is EXCEPT acceptable for computer password guidelines.
- "Using longer passwords than required, such as a string of words that are easy to remember" is a highly recommended practice (passphrases).
- "Using two-factor authentication" is a standard security best practice.
- The options shown on the right side of the image correspond to both Question 2 and Question 3. Let's align the options to each question stem.
- For Question 2, the visible options are:
- "Using longer passwords than required, such as a string of words that are easy to remember" (Acceptable)
- "Using two-factor authentication" (Acceptable)
- Since this is a multiple-choice format, we evaluate the remaining options to see which fits Question 3 and which fits Question 2.
- The options listed on the right are:
- "Using longer passwords than required, such as a string of words that are easy to remember"
- "Using two-factor authentication"
- "Avoid using public Wi-Fi for business purposes"
- "Lock devices when not in use"
- "Store all data indefinitely"
- "Scan for viruses"
- For Question 2, the acceptable guidelines include using longer passwords and using two-factor authentication. An unacceptable password guideline (the "EXCEPT" choice) is not explicitly listed as a separate option here, but looking at the layout, the options are shared or split. Let's evaluate Question 3.
Analyze Question 3 regarding data protection policy
The question asks what should NOT be included in the data protection section of a cybersecurity policy.
- "Avoid using public Wi-Fi for business purposes", "Lock devices when not in use", and "Scan for viruses" are general security practices.
- "Store all data indefinitely" is a bad data protection practice. Data retention policies should specify destroying data when it is no longer needed to minimize liability and storage costs, and to comply with privacy regulations (like GDPR or CCPA). Therefore, storing all data indefinitely should NOT be included.
Match options to each question
- For Question 2: The options shown are "Using longer passwords than required..." and "Using two-factor authentication". Since the prompt is cut off or shares the list, we identify the correct selections based on standard security principles.
- For Question 3: "Store all data indefinitely" is the correct answer for what should NOT be included in a data protection policy.
Snap & solve any problem in the app
Get step-by-step solutions on Sovi AI
Photo-based solutions with guided steps
Explore more problems and detailed explanations
Question 2
- (A) Using longer passwords than required, such as a string of words that are easy to remember
- (B) Using two-factor authentication (Correct answer)
Question 3
- (A) Avoid using public Wi-Fi for business purposes
- (B) Lock devices when not in use
- (C) Store all data indefinitely (Correct answer)
- (D) Scan for viruses