CompTIA Security+ SY0-601 – Question323

A retail store has a business requirement to deploy a kiosk computer in an open area. The kiosk computer's
operating system has been hardened and tested. A security engineer is concerned that someone could use
removable media to install a rootkit. Which of the following should the security engineer configure to BEST
protect the kiosk computer?


A.
Measured boot
B. Boot attestation
C. UEFI
D. EDR

Correct Answer: B

Explanation:

Reference: https://docs.vmware.com/en/VMware-Pulse-IoT-Center/2.0.2/iotc-user-…
5A3F-4B70-9753-556EDF955426.html#:~:text=Boot%20attestation%20is%20a%20secure,every%20time%
20the%20gateway%20boots