A security architect must mitigate the risks from what is suspected to be an exposed, private cryptographic key. Which of the following is the BEST step to take?
A.
Revoke the certificate.
B.
Inform all the users of the certificate.
C.
Contact the company's Chief Information Security Officer.
D.
Disable the website using the suspected certificate.
o If a private cryptographic key is suspected of being exposed, immediately informing the company's Chief Information Security Officer (CISO) is crucial. The CISO can then assess the situation, determine the scope of the potential breach, and initiate the appropriate response measures, including revoking the certificate associated with the key, notifying affected users, and taking steps to secure any vulnerable systems.
o Revoke the certificate: While revoking the certificate is a necessary step after the exposure, it should not be the first action. Revoking a certificate without informing users or taking other security measures could leave systems vulnerable until the revocation information propagates through the network.
This is a tough one - It can take over 24 hours for the Revocation to become effective, meanwhile you need a new cert. You can alert the CA direction and be done with it. BUT it should be the CISO's job to do that.... ugh
When a private cryptographic key is suspected to be exposed, the immediate and most critical action to take is to revoke the associated certificate. This ensures that the compromised key can no longer be used for secure communications, preventing potential security breaches.
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.CAS-004 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Steel16
2 months, 1 week agoe4af987
1 year, 1 month agoe4af987
1 year, 1 month agoHereToStudy
7 months, 3 weeks ago32d799a
1 year, 6 months agoCXSSP
1 year, 7 months ago