
EC-CouncilCertified Chief Information Security Officer
Domain 4Objective 6
Encryption CCISO Practice Questions (Page 2)
Part of the Information Security Core Competencies domain, which makes up ~33% of our current practice bank. EC-Council does not publish an official question count, but from its 150-minute exam (~60–100 total, ~20–33 in this domain), expect 3–4 from this objective — we provide 54 practice questions to prepare you well beyond it. (estimate)
54questions here
11free pages
10concepts
Questions 6–10
- 6
A software company publishes a SHA-256 hash of its installer on its website. A user downloads the installer and computes its SHA-256 hash, but it does not match the published hash. What does this indicate?
Select an answer first - 7
A company's web application uses TLS certificates issued by an internal CA. Recently, a security audit found that the CA's private key was exposed. The CISO must decide the immediate remediation step to protect users. What should be done first?
Select an answer first - 8
Which of the following best describes symmetric encryption?
Select an answer first - 9
Which of the following is a best practice for the secure storage of cryptographic keys?
Select an answer first - 10
A company is designing a secure messaging system for internal communications. The system must support end-to-end encryption, allow multiple recipients to read the same message, and minimize the number of keys each user must manage. Which cryptographic approach should the company choose?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCISO” is a trademark of its owner, used for identification only.