🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 9 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

During an incident investigation, a security analyst creates an encrypted Amazon EBS snapshot of a compromised EC2 instance and writes the details to the team's evidence log. The snapshot will later be exported to an S3 bucket for offline analysis by a different team. Which information must be recorded each time the snapshot changes custody to preserve a legally defensible chain-of-custody record?

  • The AWS Region and S3 bucket name to which the snapshot export is written.

  • The AWS KMS key ID used to encrypt the snapshot when it is copied or downloaded.

  • The full name and signature (or validated digital equivalent) of the individual assuming responsibility, along with the precise date and time of the transfer.

  • The SHA-256 hash of the snapshot's manifest file generated immediately after the export completes.

ISC2 Systems Security Certified Practitioner (SSCP)
Incident Response and Recovery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot