ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
A development team is designing a mobile health application that will accept patient data through a REST API. Because the information is classified as "Restricted Health Data," the solution architect must define a control that satisfies data-classification requirements specifically for the generation/creation phase. Which control BEST meets this objective?
Automatically attach a "Restricted Health Data" label and corresponding metadata to every new record before it is written to any queue or log.
Compress all JSON payloads containing patient information to minimize the amount of data exposed on the wire.
Capture and store raw network packets of each submission for later forensic analysis in a segregated repository.
Defer applying any classification until the data is loaded into the analytics data warehouse after validation.
Data-classification guidance states that sensitive information should be labeled and associated with its classification level as soon as it is created or captured so the appropriate protections can follow the data throughout its lifecycle. Automatically applying a "Restricted Health Data" tag and related metadata to each newly submitted record ensures the data is recognized as sensitive before any further processing, transmission, or storage. Merely compressing payloads, retaining raw packets, or postponing classification until warehouse ingestion does not fulfill the requirement to secure the data at the moment of creation.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
Why is data classification important in the generation or creation phase?
Open an interactive chat with Bash
What is a REST API, and how does it relate to data protection?
Open an interactive chat with Bash
What metadata is typically included with data classification labels?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Requirements
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .