Securing Finance Data with Offshore Teams via VDI
A company is utilizing an offshore team to help support the finance department. The company wants to keep the data secure by keeping it on a company device but does not want to provide equipment to the offshore team. Which of the following should the company implement to meet this requirement?
Community Votes
100% of anonymous learners picked answer A. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
This question tests the distinction between endpoint management and infrastructure virtualization; the trap is choosing MDM or VPN, which do not inherently prevent data storage on unmanaged devices.
VDI (Virtual Desktop Infrastructure) enables secure remote access to centralized data without distributing physical hardware, making it ideal for offshore support teams handling sensitive finance information.
Candidates often select VPN because it secures the connection, but a VPN does not restrict where data resides or ensure the endpoint device meets security policies.
Community Discussion (5 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Virtual Desktop Infrastructure (VDI) is the correct solution because it centralizes data processing and storage on company-controlled servers. The offshore team accesses only a virtualized display of the desktop, meaning no sensitive finance data is stored on their local devices. This satisfies the requirement to keep data secure on company assets while allowing the use of non-company equipment.Why the Other Options Are Wrong
MDM (Mobile Device Management) manages endpoints but requires the device itself to be compliant; if the offshore team uses personal or unmanaged devices, MDM cannot fully enforce data containment without significant friction or device ownership. A VPN secures the network tunnel but does not prevent data from being cached locally on the user's machine. VPC (Virtual Private Cloud) is a networking construct in cloud environments and does not address endpoint security or data residency on client devices.Community Comment Notes
Community consensus strongly favors VDI, with multiple users noting that it allows access to virtualized environments without providing physical equipment. One commenter emphasized that VDI keeps data "secure on company devices" by centralizing control, while another contrasted it against VPC, noting VDI is more appropriate for this specific data security scenario.Exam Strategy
When a scenario involves keeping data off user devices while allowing remote access, always consider Virtual Desktop Infrastructure (VDI) or Citrix first. It is the primary technology for enforcing data residency policies when you cannot control the endpoint hardware.
Frequently Asked Questions
Why isn't MDM the right choice here?
MDM manages devices but doesn't inherently keep data off them. If the device is unowned, enforcing strict data containment is harder than with VDI.
Does a VPN keep data secure on company devices?
No, a VPN only encrypts the connection. Data can still be downloaded or cached locally on the user's device during the session.