ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

During your build pipeline you automatically sign a Windows kernel-mode driver with an Authenticode certificate. You want users to be able to verify the signature even after the certificate's validity period has ended. Which additional step should you add to the signing process to best meet this goal?

  • Compress the driver binary with a newer SHA-256 hash algorithm before signing.

  • Encrypt the driver package with the same private key used for signing.

  • Request a trusted timestamp from a Time Stamping Authority when generating the signature.

  • Publish the signer's public certificate to an internal LDAP directory after release.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Concepts
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot