🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 12 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your organization is deploying 20,000 environmental sensors worldwide that will publish telemetry to an AWS IoT Core endpoint over the public Internet. Security requires that each sensor prove its identity without shared secrets, enable fine-grained authorization through individual IoT policies, and allow rapid revocation if a unit is stolen. Which approach best satisfies these requirements?

  • Require every sensor to connect through a site-to-site IPSec VPN that authenticates with a shared pre-shared key before accessing IoT Core.

  • Generate a single API key in Amazon API Gateway, flash it into every sensor, and invoke a Lambda function that forwards the data to IoT Core.

  • Embed an IAM user access key and secret in every sensor's firmware and use SigV4-signed MQTT requests to authenticate to IoT Core.

  • Provision an individual X.509 certificate for each sensor, register the certificate in AWS IoT Core, and attach a sensor-specific IoT policy granting publish permissions.

ISC2 Systems Security Certified Practitioner (SSCP)
Access Controls
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot