🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 8 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

A hospital must send nightly CSV files containing patient Social Security numbers from its data center to an external research partner over the Internet. The data must be encrypted in transit, its integrity verifiable, and both endpoints must mutually authenticate. A site-to-site VPN is forbidden, and the solution must need only one firewall rule and allow fully automated batch transfers. Which approach best meets these requirements?

  • Transfer the files using SFTP over SSH with public-key authentication configured for both the hospital and the research partner, allowing traffic only on TCP port 22.

  • Use FTPS in explicit mode, relying on the partner's X.509 server certificate and authenticating the hospital with a user name and password.

  • Send the files as encrypted email attachments using SMTP with STARTTLS and DKIM signing between the domains.

  • Upload the files via an HTTPS POST to a partner web endpoint protected by TLS 1.2 and an API token in the request header.

ISC2 Systems Security Certified Practitioner (SSCP)
Cryptography
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot