Acknowledge the inherent risks of bringing a work laptop to DEFCON and propose a layered security strategy covering pre-trip hardening, during-trip precautions, and post-trip remediation. Emphasize minimizing data exposure and assuming the device will be compromised, while balancing productivity needs.
Pro tip: Mention that you would request a loaner laptop or use a virtual desktop infrastructure (VDI) to avoid bringing sensitive data at all—this shows you prioritize security over convenience and understand Meta's scale.
Back up all data, wipe the laptop, and reinstall a clean OS with full disk encryption. Remove all sensitive data and install only necessary software.
Enable strong authentication (e.g., biometrics, long passphrase), disable unused ports and services, and ensure automatic updates are on. Use a privacy screen and tamper-evident seals.
Keep the laptop physically secure (e.g., in a locked bag, never leave unattended). Avoid connecting to untrusted networks; use a VPN and a personal hotspot if needed. Disable Wi-Fi/Bluetooth when not in use.
Upon return, assume the device is compromised: change all passwords, run a full malware scan, and reimage the laptop before reconnecting to corporate networks.
AI-generated suggestions, not part of the candidate's original notes. May be inaccurate — verify before relying on them.