ISC2 Certified Cloud Security Professional (CCSP) Practice Question
Your company stores regulated financial records in a multi-tenant cloud object storage bucket. A court issues a preservation order that requires several specific objects to remain intact and undeleted until the litigation ends. You want to meet this legal hold requirement while allowing normal lifecycle policies and deletion schedules to continue for all other data in the bucket and without impacting other tenants. Which action BEST meets the order with the least operational disruption?
Suspend all lifecycle and deletion policies configured for the bucket until the legal action is resolved.
Apply the cloud provider's WORM retention or object-level legal hold on the identified objects within the bucket.
Encrypt the targeted objects with a customer-managed key and rotate the key quarterly to prevent access.
Copy the specified objects to on-premises storage for safekeeping and delete them from the cloud bucket.
Using the provider's object-level write-once-read-many (WORM) or legal-hold feature places an immutable flag on only the identified objects. This prevents their alteration or deletion for the duration of the hold but allows existing lifecycle rules to keep running on other objects in the same bucket, avoiding a blanket suspension that could increase costs or violate internal retention policies. Copying the data on-premises and deleting it from the cloud violates the order; merely suspending lifecycle policies halts deletion for all objects, creating unnecessary impact; encrypting and rotating keys does not stop deletion or modification and therefore does not satisfy a legal hold.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is WORM and how does it work in a cloud storage context?
Open an interactive chat with Bash
What is a legal hold and how is it applied in cloud environments?
Open an interactive chat with Bash
Why is encrypting objects with customer-managed keys insufficient for meeting legal hold requirements?
Open an interactive chat with Bash
ISC2 Certified Cloud Security Professional (CCSP)
Cloud Data Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .