ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During decommission of a customer-facing web service, you discover several API keys still grant backend access for integration partners. Under the organization's EOL policy, which action best satisfies the credential removal requirement before servers are powered down?
Disable network routes to the backend so the keys can no longer reach their targets, leaving them in place for audit purposes.
Encrypt the existing keys at rest and move them to long-term archives with limited administrative access.
Generate new stronger API keys and send them to partners marked as inactive until re-enablement is needed.
Revoke every remaining API key and delete their records from configuration repositories and partner portals.
Credential removal requires eliminating any means by which the retired application or third parties could continue to authenticate. The most effective way is to revoke the existing API keys and delete associated records so they can no longer be used anywhere. Merely rotating, archiving, or blocking network routes leaves credentials in existence and therefore violates the policy goal of fully deactivating or removing them.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are API keys and how are they used?
Open an interactive chat with Bash
Why is revoking API keys more secure than archiving or disabling routes?
Open an interactive chat with Bash
What is an EOL (End-of-Life) policy and why does it include credential removal?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .