Detective laptops must bind full-disk encryption keys to evidence of platform integrity before unlocking. Which capability best supports that design?
Select an answer to reveal the explanation.
Short Explanation
Think of the TPM as a tiny sealed vault on the motherboard that only opens the disk key if the laptop still looks like itself. Sticky notes and shared spreadsheets are the opposite of that idea.
Full Explanation
A Trusted Platform Module provides hardware-backed key storage and can seal secrets to platform measurements so keys release only when boot integrity meets expectations. That capability supports binding full-disk encryption to platform integrity on investigative endpoints. Software sticky notes, disabled Secure Boot, and shared spreadsheets undermine key protection.