🔥 3-day streak
ISACA CDPSE — Certified Data Privacy Solutions Engineer22 / 147
Question 22 of 147
A privacy engineer is hardening a mobile banking app that transmits personal financial data to backend APIs over TLS. During a threat assessment, the team identifies that attackers on compromised or corporate-proxied networks could present fraudulent certificates trusted by the device's OS trust store, enabling interception of personal data. Which technical control most directly mitigates this specific interception risk at the mobile endpoint?
Reviewed for accuracy · Report an issueNext question