🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 13 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

You are the SSCP on call for an AWS-hosted SaaS workload. A senior developer asks you to make an unencrypted RDS snapshot of a tenant's production database and share it to their personal account so they can debug a feature before tomorrow's release. The tenant's contract and internal policy both prohibit disclosure without written approval. According to the (ISC)² Code of Ethics canons, what is the most appropriate first action?

  • Anonymize sensitive columns in the snapshot, then send it to the developer as a compromise.

  • Refuse to share the snapshot and promptly escalate the request through the company's compliance or management channel.

  • Encrypt the snapshot and share it only with the developer's personal AWS account to limit exposure.

  • Comply because faster debugging improves system availability for all tenants.

ISC2 Systems Security Certified Practitioner (SSCP)
Security Concepts and Practices
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot