ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your team must guarantee that virtualized workloads can prove to a compliance auditor that their boot process loaded only authorized code, even after a power cycle. Which reusable trusted computing technology should be integrated into the design to store the measurements and sign an attestation that the platform is in a trusted state?
Trusted Platform Module with PCR-based measurement and signing capabilities
CPU Advanced Encryption Standard New Instructions (AES-NI)
External hardware security module (HSM) for key management
A Trusted Platform Module (TPM) contains Platform Configuration Registers (PCRs) that record cryptographic hashes of each stage of the boot process and can sign those measurements with an asymmetric key, enabling remote parties to verify that only approved code executed. UEFI Secure Boot enforces signature checks at boot but does not provide signed attestation data. A hardware security module focuses on protecting application keys and lacks built-in platform measurement registers, while AES-NI is merely an instruction set that accelerates symmetric encryption and offers no attestation capability.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a Trusted Platform Module (TPM)?
Open an interactive chat with Bash
How do Platform Configuration Registers (PCRs) in a TPM work?
Open an interactive chat with Bash
Why is UEFI Secure Boot not sufficient for attestation?
Open an interactive chat with Bash
How do Platform Configuration Registers (PCRs) in a TPM work?
Open an interactive chat with Bash
Why doesn't UEFI Secure Boot provide signed attestation data?
Open an interactive chat with Bash
What is the main difference between TPM and a hardware security module (HSM)?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Architecture and Design
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .