🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

You are building an event-driven workload on AWS where a Lambda function publishes JSON messages to an Amazon SNS topic and downstream services read them from SQS. Consumers must confirm each message's origin and integrity, but confidentiality is unnecessary. The solution should introduce minimal latency and avoid the overhead of managing a PKI. Which method satisfies these goals?

  • Encrypt each message with an AWS KMS customer managed key and require consumers to decrypt it before processing.

  • Add an HMAC value computed with SHA-256 and a shared secret stored in AWS Secrets Manager; have each consumer recompute and compare the HMAC on receipt.

  • Sign each message using an RSA private key in AWS CloudHSM and distribute the corresponding public certificate to all consumers.

  • Rely on TLS encryption automatically applied to traffic between Lambda, SNS, and SQS to guarantee message integrity and origin authentication.

ISC2 Systems Security Certified Practitioner (SSCP)
Cryptography
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot