Why Desktop Virtualization Strengthens Access Control in Healthcare
Which of the following is the best reason for a health organization to use desktop virtualization to implement stronger access control to systems containing patient records?
Community Votes
100% of anonymous learners picked answer C. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
Tests the distinction between primary access control mechanisms and secondary administrative benefits when evaluating virtualization deployments.
Desktop virtualization enforces stricter access control by centralizing data and restricting endpoint capabilities to role-specific functions. While many candidates favor audit benefits, the core privacy mechanism lies in minimizing system exposure through least-privilege design.
Selecting C because VDI simplifies auditing, but the question explicitly targets access control implementation, making restricted OS capabilities the accurate technical choice.
Community Discussion (3 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Desktop virtualization (VDI) centralizes processing and storage on secure servers while thinning out the endpoint. By configuring the virtual desktop image to expose only role-specific applications and blocking unnecessary OS-level functions, organizations directly enforce least-privilege access control. This aligns with privacy-by-design principles that minimize data exposure and restrict user capabilities to only what is strictly necessary for handling patient records.Why the Other Options Are Wrong
Option B describes network monitoring, which is a detective control unrelated to the structural access enforcement provided by VDI. Option C highlights improved data integrity and streamlined audits, which are valid secondary benefits of centralized management but do not directly address the question’s focus on implementing stronger access control. Option D contradicts security fundamentals, as unlimited functionalities would increase the attack surface and violate privacy mandates.Community Comment Notes
While 100% of voters selected C, experienced practitioners note that exam questions often test precise terminology matching. Comment [2] correctly identifies that restricting environmental capabilities is the direct mechanism for access control, whereas C confuses operational efficiency with access governance. Aligning answers with the exact control type requested prevents costly traps.Official Reference
Exam Strategy
Always map the control type in the question stem (access, detection, prevention) to the option’s primary function. Prioritize architectural restrictions over operational efficiencies when virtualization or cloud platforms are mentioned.
Related Analysis
Practice All CDPSE Questions
Access 229 questions with complete answers and detailed explanations.
View Full CDPSE Practice Test →