ISC2 Certified Cloud Security Professional (CCSP) Practice Question

Your organization must give external auditors access to sensitive financial reports stored in a cloud-hosted collaboration platform. Audit contracts require that the files remain readable for 30 days, after which the auditors' ability to open any local copies must automatically cease-even if those copies have been moved outside the provider's environment. Which security control is best suited to satisfy this requirement?

  • Server-side encryption with customer-managed keys (SSE-CMK) on the cloud storage bucket

  • Host-based data loss prevention (DLP) agent configured for keyword matching

  • Enterprise digital rights management (IRM/EDRM) with certificate-based licensing

  • Secure file transfer via SFTP using SSH key authentication

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Data Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot