ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your team plans to release a large data set of mobile-app usage events to external researchers. Business leadership insists the published file must be truly anonymous, meaning no party-including your organization-can reliably link the records back to specific users, even when combined with auxiliary data. Which anonymization technique best satisfies this requirement?
Inject calibrated statistical noise using differential privacy before releasing the data set
Replace user identifiers with randomly generated reversible tokens stored in a secure mapping table
Remove names and redact the last two octets of any IP addresses in the records
Hash each user identifier with SHA-256 and publish the hashes
Differential privacy adds carefully calculated statistical noise to query results or data values so the contribution of any single individual is indistinguishable, even to those who possess other knowledge or the original source data. Because no lookup table or direct identifier survives-and re-identification risk is mathematically bounded-it meets the requirement for irreversible, organization-agnostic anonymity. Tokenization keeps a secret mapping that internal staff could use to reverse the process. Simple hashing may be vulnerable to dictionary or frequency attacks, especially against small or predictable input spaces. Truncating or redacting fields reduces precision but may still allow linkage attacks that combine quasi-identifiers, so it does not guarantee anonymity.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is differential privacy?
Open an interactive chat with Bash
Why is differential privacy better than tokenization for anonymity?
Open an interactive chat with Bash
How does differential privacy limit attacks using auxiliary data?
Open an interactive chat with Bash
What is differential privacy?
Open an interactive chat with Bash
How does differential privacy compare to hashing for anonymization?
Open an interactive chat with Bash
Why is tokenization not suitable for true anonymity?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Requirements
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .