โ† All Installing and Configuring Windows Server 2012 Exam Flashcard Decks

Regulatory Frameworks & Compliance Flashcards

7 cards from real Installing and Configuring Windows Server 2012 Exam practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Regulatory Frameworks & Compliance flashcards as text
  1. Your organization must comply with HIPAA. Which Windows Server 2012 feature best helps enforce data encryption for Protected Health Information (PHI) stored on disk?

    Answer: BitLocker Drive Encryption

    BitLocker Drive Encryption provides full-volume encryption, protecting PHI on disk even if the physical drive is removed.

  2. Under PCI DSS, you must restrict access to cardholder data on a need-to-know basis. Which Windows Server 2012 component is the PRIMARY tool for implementing this?

    Answer: Role-Based Access Control (RBAC) via Active Directory

    RBAC through Active Directory allows assigning permissions based on job roles, directly meeting PCI DSS least-privilege requirements.

  3. A FISMA audit requires you to document all changes to security settings on domain controllers. Which Windows Server 2012 feature should you enable?

    Answer: Advanced Audit Policy Configuration

    Advanced Audit Policy Configuration provides granular event logging for security changes, satisfying FISMA change-tracking requirements.

  4. SOX compliance requires separation of duties between server administrators and those who can approve changes. How does Windows Server 2012 support this?

    Answer: By creating separate AD groups with distinct delegated permissions

    Separate AD groups with delegated permissions enforce separation of duties so no single user controls both implementation and approval.

  5. Which Windows Server 2012 tool generates a report showing how current security settings compare against a predefined security template?

    Answer: Security Configuration and Analysis snap-in

    The Security Configuration and Analysis snap-in compares current settings against a saved template and highlights discrepancies.

  6. GLBA requires financial institutions to protect customer data in transit. Which protocol should you enforce on Windows Server 2012 IIS to meet this requirement?

    Answer: TLS (HTTPS) on port 443

    TLS/HTTPS encrypts data in transit, which is required by GLBA to protect non-public personal financial information.

  7. A compliance officer requires that failed login attempts be recorded for all servers. Where in Windows Server 2012 Group Policy do you configure this?

    Answer: Computer Configuration > Windows Settings > Security Settings > Local Policies > Audit Policy

    Audit Policy under Local Policies controls logon auditing, enabling logging of failed authentication attempts.