🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your organization collects disk images from compromised Amazon EC2 instances and uploads them to a dedicated Amazon S3 bucket for later forensic analysis. To maintain a defensible chain of custody, security policy requires that evidence objects remain immutable and undeletable for at least 90 days, while still being immediately accessible for investigators. Which approach best meets these requirements?

  • Enable S3 Versioning on the bucket and add a lifecycle rule that permanently deletes previous versions after 90 days.

  • Enable S3 Object Lock in Compliance mode on the evidence bucket and configure a 90-day retention period.

  • Encrypt evidence objects with AWS KMS and enable server access logging on the bucket to prevent modification.

  • Store the evidence files in an Amazon S3 Glacier vault and apply a 90-day Vault Lock policy to enforce retention.

ISC2 Systems Security Certified Practitioner (SSCP)
Incident Response and Recovery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot