ISC2 Certified Cloud Security Professional (CCSP) Practice Question

Your organization stores sensitive design documents in a cloud collaboration suite that allows users to synchronize files to their laptops and mobile devices. Security policy states that:

  • Only employees in the Engineering group may open the documents.
  • If an employee leaves the company, their access must be revoked even for copies already downloaded.
  • Security administrators need an audit trail that shows who opened, printed, or attempted to copy the content.

Which control should you implement to satisfy all three requirements with the least operational overhead?

  • Enable cloud-based Information Rights Management (IRM) to apply persistent usage policies and revoke access centrally.

  • Deploy an enterprise Data Loss Prevention (DLP) solution to monitor and block unauthorized file transfers.

  • Digitally sign the documents so that only signed files are considered official copies.

  • Rely on server-side encryption at rest for the collaboration platform's storage buckets.

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Data Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot