ISC2 Certified Cloud Security Professional (CCSP) Practice Question
Your organization must give external auditors access to sensitive financial reports stored in a cloud-hosted collaboration platform. Audit contracts require that the files remain readable for 30 days, after which the auditors' ability to open any local copies must automatically cease-even if those copies have been moved outside the provider's environment. Which security control is best suited to satisfy this requirement?
Enterprise digital rights management (IRM/EDRM) with certificate-based licensing
Secure file transfer via SFTP using SSH key authentication
Server-side encryption with customer-managed keys (SSE-CMK) on the cloud storage bucket
Host-based data loss prevention (DLP) agent configured for keyword matching
The requirement is to keep data protected wherever it goes, allow time-limited offline access, and let the owner revoke that access later. Enterprise or information rights management (IRM/EDRM) encrypts each file and binds a short-lived use license to the recipient's X.509 certificate. When the license expires or the certificate is revoked, the protected file cannot be opened, even if it was already downloaded. Storage-level encryption, host-based DLP, and secure transport protect data only in specific locations or in transit; they do not persistently control access to copies once they leave the cloud repository.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Enterprise Digital Rights Management (EDRM)?
Open an interactive chat with Bash
How do X.509 certificates work with EDRM?
Open an interactive chat with Bash
Why are other controls like SSE-CMK or DLP not suitable in this scenario?
Open an interactive chat with Bash
ISC2 Certified Cloud Security Professional (CCSP)
Cloud Data Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .