ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During an architecture review for a self-service payment kiosk, you must identify components that form the Trusted Computing Base. Which component should you include because it is critical to enforcing the kiosk's overall security policy?
The external digital signage monitor connected via HDMI
The kernel-mode cryptographic library that validates the firmware's digital signature at boot time
The optional customer-facing video advertisement player executing in user space
The back-office inventory database server that later receives transaction logs
The kernel-mode cryptographic library executes with the highest privilege during the secure-boot sequence and is directly responsible for verifying that only trusted firmware is loaded. Because a compromise here would undermine every other protection, it must be part of the TCB. The user-space video player, external digital signage monitor, and back-office inventory database do not enforce the kiosk's security policy and operate outside the boot trust chain, so they are not considered part of the kiosk's TCB.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the Trusted Computing Base (TCB)?
Open an interactive chat with Bash
Why is the kernel-mode cryptographic library crucial to the TCB?
Open an interactive chat with Bash
What are examples of components excluded from the TCB?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Architecture and Design
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .