An organization deploys MDM-managed Android devices to field staff. The IT policy specifies a maximum screen lock timeout of 30 seconds. Staff complain the timeout is too aggressive during active work sessions and request it be raised to 10 minutes.
Which security risk directly increases if the screen lock timeout is raised from 30 seconds to 10 minutes in this scenario?
- A.The device stops reporting its compliance posture to the MDM server during the extended idle window leaving the enrollment record stale for up to ten minutes at a stretch
- B.Each additional minute of unlocked idle time raises the number of PIN guesses the lock screen will accept before it trips the wipe-after-ten-failures counter on the work profile
- C.Hardware-backed Keystore keys become exportable to userspace once the screen has stayed unlocked past the five-minute mark making the longer timeout a direct key-extraction risk
- D.An unattended unlocked device is accessible to a physical threat actor for up to 10 minutes without credential entry
Why D is correct