🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 10 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your healthcare startup hosts its application on AWS and is signing with a cloud-based analytics vendor that will receive protected health information (PHI) from an S3 bucket. Corporate policy and HIPAA require that all PHI be irreversibly deleted within 30 days after contract termination. When negotiating the provider's Service Level Agreement (SLA), which component is most critical to ensure this compliance objective is met?

  • A clause defining maximum 30-day data retention and secure destruction timelines for customer data

  • A requirement for the provider to maintain a 4-hour RTO and 15-minute RPO for its platform

  • A 99.9% monthly uptime percentage with associated service-credit penalties

  • A commitment to supply customers with quarterly SOC 2 Type II audit reports

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot